Fortinet NSE5_FWB_AD-8.0 Exam Overview:
| Certification Vendor: | Fortinet |
|---|---|
| Exam Name: | Fortinet NSE 5 - FortiWeb 8.0 Administrator |
| Exam Number: | NSE5_FWB_AD-8.0 |
| Passing Score: | Pass / Fail |
| Exam Price: | $200 USD |
| Related Certifications: | Fortinet Certified Professional (FCP) - Cloud Security |
| Exam Duration: | 75 minutes |
| Available Languages: | English |
| Exam Format: | Multiple choice, Scenario-based questions, Simulation, Drag and drop |
| Real Exam Qty: | 35-40 |
| Recommended Training: | FortiWeb 8.0 Administrator Training (Fortinet Official) Fortinet Certified Professional - Cloud Security Path |
| Exam Registration: | Pearson VUE Fortinet Exams Fortinet Training and Certification Portal |
| Sample Questions: | Fortinet NSE5_FWB_AD-8.0 Sample Questions |
| Exam Way: | Pearson VUE testing center or online proctored exam |
| Pre Condition: | Recommended: ~3 years networking experience, ~1 year security experience, and hands-on experience with FortiWeb administration |
| Official Syllabus URL: | https://www.fortinet.com/training-certification |
Fortinet NSE5_FWB_AD-8.0 Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| Topic 1: Compliance and Troubleshooting | - Troubleshooting deployment and traffic flow issues - Web vulnerability scanning and remediation - Log analysis and reporting |
| Topic 2: Application Delivery and Optimization | - DoS protection configuration - Caching and compression - Load balancing and server pools - Logging, monitoring, and FortiAI integration |
| Topic 3: Deployment and Configuration | - SSL inspection, SSL offloading, and high availability (HA) - FortiWeb deployment modes and architecture - Initial setup and system administration - Server objects, virtual servers, and policies |
| Topic 4: Web Application and API Security with Bot Mitigation | - OWASP Top 10 mitigation - Bot detection and mitigation strategies - Web application firewall policies and protection profiles - API discovery and API protection |
Fortinet NSE 5 - FortiWeb 8.0 Administrator Sample Questions:
Question 1
While reviewing FortiWeb logs, you notice a suspicious login request that failed authentication.
You suspect it may be part of an injection attack targeting the login form. Which input pattern is an example of a typical SQL injection attempt that could bypass authentication checks?
A. <sql>select(ALL USERS);</sql>
B. '||(SELECT password FROM users WHERE role='admin')||'
C. <script>document.location='/steal?cookie='+document.cookie</script>
D. SELECT username FROM accounts WHERE username='admin';-- ' AND password='password';
Question 2
Which statement best describes the purpose of FortiWeb's "combination access control" rules?
A. They merge SSL certificates from multiple vendors into one chain.
B. They combine HA cluster members into a single logical unit.
C. They merge server pools from separate virtual servers.
D. They combine multiple individual match conditions (such as source IP, geography, and HTTP header) into a single rule to make more precise access decisions.
Question 3
You have configured parameter validation, file security, and machine learning (ML) anomaly detection for a web form, but some server-side request forgery tests are still succeeding. You need to advise the team on what to prioritize next to improve SSRF protection without compromising other parts of the application. Which recommendation would best strengthen FortiWeb's ability to block remaining SSRF attempts?
A. Apply HTTPS inspection at the transport layer, which FortiWeb does not use to block SSRF.
B. Offload all server-side request forgery (SSRF) protection to FortiGate and remove FortiWeb from the API flow.
C. Review and refine input validation logic, as SSRF may be exploiting backend behavior or bypassing weak filters.
D. Disable ML anomaly detection and rely solely on parameter inspection.
Question 4
An administrator is troubleshooting why FortiWeb is not decrypting HTTPS traffic for inspection in reverse proxy mode. What is the most likely missing configuration?
A. A DNS resolver setting
B. A local certificate and private key bound to the virtual server for SSL offloading
C. An HA heartbeat interface
D. A static route to the internet
Question 5
You recently deployed two FortiWeb devices in an active-active (A-A) high availability (HA) cluster.
During routine maintenance, you want to confirm that the cluster is synchronizing the correct configuration areas and that both FortiWeb devices behave consistently in production.
As the FortiWeb administrator, which two configuration areas should you examine to verify that HA synchronization is functioning correctly? (Choose two.)
A. Review policy configurations, including server policies and protection profiles, to confirm they match across the cluster.
B. Review inspection and mitigation log files to determine if they are being replicated across both FortiWeb devices.
C. Verify whether firmware images and upgrade history are synchronized between the FortiWeb devices.
D. Check the network configuration on both FortiWeb devices-such as interfaces and static routes-to ensure they are aligned.
Solutions:
| Question 1 Answer: D | Question 2 Answer: D | Question 3 Answer: C | Question 4 Answer: B | Question 5 Answer: A,D |
We're so confident of our products that we provide no hassle product exchange.


By Giselle

