Online Questions - Valid Practice To your NSE6_FWB-6.0 Exam (Updated 30 Questions) [Q12-Q29]

Share

Online Questions - Valid Practice To your NSE6_FWB-6.0 Exam (Updated 30 Questions)

Practice To NSE6_FWB-6.0 - Remarkable Practice On your Fortinet NSE 6 - FortiWeb 6.0 Exam

NEW QUESTION 12
What other consideration must you take into account when configuring Defacement protection

  • A. Use FortiWeb to block SQL Injections and keep regular backups of the Database
  • B. Configure the FortiGate to perform Anti-Defacement as well
  • C. Also incorporate a FortiADC into your network
  • D. None. FortiWeb completely secures the site against defacement attacks

Answer: B

 

NEW QUESTION 13
A client is trying tostart a session from a page that should normally be accessible only after they have logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

  • A. Display an access policy message, then allow the client to continue, redirecting them to their requested page
  • B. Reply with a "403 Forbidden" HTTP error
  • C. Automatically redirect the client to the login page
  • D. Prompt the client to authenticate
  • E. Allow the page access, but log the violation

Answer: B,C,E

 

NEW QUESTION 14
You've configured an authentication rule with delegation enabled on FortiWeb.
Whathappens when a user tries to access the web application?

  • A. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully
  • B. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app
  • C. ForitWeb redirects the user tothe web app's authentication page
  • D. FortiWeb replies with a HTTP challenge of behalf of the server, theif the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app

Answer: B

 

NEW QUESTION 15

  • A. It also forwards requests for web app B to the virtual serverfor policy
  • B. The server policy applies the same protection profile to all its protected web apps.
  • C. To achieve HTTP content routing, you must chain policies: the first policy accepts all traffic, and forwards requests for web app A to the virtual server for policy
  • D. Static or policy-based routes are not required.
  • E. Policy A and Policy B apply their app-specific protection profiles, and then distribute that app's traffic among all members of the server farm.
  • F. You must put the single web server into a server pool in order to use it with HTTP content routing.

Answer: C,E

 

NEW QUESTION 16
What capability can FortiWeb add to your Web App that your Web App may or may not already have?

  • A. SSL Inspection
  • B. Automatic backup and recovery
  • C. HTTP/HTML Form Authentication
  • D. High Availability

Answer: A

 

NEW QUESTION 17
Which of the followingwould be a reason for implementing rewrites?

  • A. Replace vulnerable functions.
  • B. Page has been moved to a new IP address
  • C. Page has been moved to a new URL
  • D. Send connection to secure channel

Answer: C

 

NEW QUESTION 18
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?

  • A. Poison Cookie detection
  • B. Session Management
  • C. Brute Force blocking
  • D. Sensitive info masking

Answer: B

 

NEW QUESTION 19
How does offloadingcompression to FortiWeb benefit your network?

  • A. Free up resources on the web server
  • B. free up resources on the database server
  • C. reduces file size on the client's storage
  • D. free up resources on the FortiGate

Answer: A

 

NEW QUESTION 20
You are configuring FortiAnalyzer to store logs from FortiWeb.
Which is true?

  • A. To store logs from FortiWeb6.0, on FortiAnalyzer, you must select "FrotiWeb 5.4".
  • B. You mustenable ADOMs on FortiAnalyzer.
  • C. FortiAnalyzer will store antivirus and DLP archives from FortiWeb.
  • D. FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.

Answer: B

 

NEW QUESTION 21
Which is true about HTTPS on FortiWeb? (Choose three.)

  • A. After enabling HSTS, redirects to HTTPS are no longer necessary.
  • B. In true transparent mode, the TLS session terminator is a protected web server.
  • C. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
  • D. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
  • E. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.

Answer: B,C,E

 

NEW QUESTION 22
In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)

  • A. Offlineprotection
  • B. True transparent proxy
  • C. Reverse proxy
  • D. Transparent Inspection

Answer: C

 

NEW QUESTION 23
When viewing the attack logs on your FortiWeb, which IP Address is shown for the client when using XFF Header rules?

  • A. FortiWeb's IP
  • B. FortiGate's local IP
  • C. FortiGate's public IP
  • D. Client's real IP

Answer: D

 

NEW QUESTION 24
......

True NSE6_FWB-6.0 Exam Extraordinary Practice For the Exam: https://www.surepassexams.com/NSE6_FWB-6.0-exam-bootcamp.html