[Aug-2022] NSE6_FWB-6.4 Free PDF from ExamBoosts [Q19-Q39]

Share

Aug-2022 Latest ExamBoosts NSE6_FWB-6.4 Exam Dumps with PDF and Exam Engine Free Updated Today!

Following are some new NSE6_FWB-6.4 Real Exam Questions!

NEW QUESTION 19
Under which circumstances does FortiWeb use its own certificates? (Choose Two)

  • A. Secondary HTTPS connection to server where FortiWeb acts as a client
  • B. HTTPS access to GUI
  • C. HTTPS to FortiGate
  • D. HTTPS to clients

Answer: A,B

 

NEW QUESTION 20
In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

  • A. Non-matching traffic is rerouted to FortiGate
  • B. Non-matching traffic is allowed
  • C. Non-matching traffic is Denied
  • D. non-Matching traffic is held in buffer

Answer: C

 

NEW QUESTION 21
What role does FortiWeb play in ensuring PCI DSS compliance?

  • A. It provides the ability to securely process cash transactions.
  • B. It provides credit card processing capabilities.
  • C. It provides the required SQL server protection.
  • D. It provides the WAF required by PCI.

Answer: D

 

NEW QUESTION 22
Refer to the exhibit.

Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)

  • A. Traffic that passes between port5 and port6 will be inspected.
  • B. Traffic will be interrupted between port3 and port4.
  • C. Traffic will pass between port5 and port6 uninspected.
  • D. All traffic will be interrupted.

Answer: B,C

 

NEW QUESTION 23
FortiWeb offers the same load balancing algorithms as FortiGate.
Which two Layer 7 switch methods does FortiWeb also offer? (Choose two.)

  • A. Round robin
  • B. HTTP content routes
  • C. HTTP user-based round robin
  • D. HTTP session-based round robin

Answer: A,B

 

NEW QUESTION 24
A client is trying to start a session from a page that would normally be accessible only after the client has logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

  • A. Prompt the client to authenticate
  • B. Redirect the client to the login page
  • C. Display an access policy message, then allow the client to continue
  • D. Allow the page access, but log the violation
  • E. Reply with a 403 Forbidden HTTP error

Answer: B,D,E

 

NEW QUESTION 25
In which scenario might you want to use the compression feature on FortiWeb?

  • A. When you are offering a music streaming service
  • B. When you are serving many corporate road warriors using 4G tablets and phones
  • C. Never, since most traffic today is already highly compressed
  • D. When you want to reduce buffering of video streams

Answer: B

Explanation:
Explanation
https://training.fortinet.com/course/view.php?id=3363
When might you want to use the compression feature on FortiWeb? When you are serving many road warriors who are using 4G tablets and phones

 

NEW QUESTION 26
Which statement about local user accounts is true?

  • A. They cannot be used for site publishing.
  • B. They can be used for SSO.
  • C. They are best suited for large environments with many users.
  • D. They must be assigned, regardless of any other authentication.

Answer: A

 

NEW QUESTION 27
Which
regex expression is the correct format for redirecting the URL http://www.example.com?

  • A. www\.example\.com
  • B. www\example\com
  • C. www/.example/.com
  • D. www.example.com

Answer: D

Explanation:
Explanation
\1://www.company.com/\2/\3

 

NEW QUESTION 28
How does an ADOM differ from a VDOM?

  • A. ADOMs improve performance by offloading some functions.
  • B. ADOMs only affect specific functions, and do not provide full separation like VDOMs do.
  • C. Allows you to have 1 administrator for multiple tenants
  • D. ADOMs do not have virtual networking

Answer: D

 

NEW QUESTION 29
What benefit does Auto Learning provide?

  • A. Automatically blocks all detected threats
  • B. Automatically builds rules sets
  • C. FortiWeb scans all traffic without taking action and makes recommendations on rules
  • D. Automatically identifies and blocks suspicious IPs

Answer: B

 

NEW QUESTION 30
You are using HTTP content routing on FortiWeb. You want requests for web application A to be forwarded to a cluster of web servers, which all host the same web application. You want requests for web application B to be forwarded to a different, single web server.
Which statement about this solution is true?

  • A. You must chain policies so that requests for web application A go to the virtual server for policy A, and requests for web application B go to the virtual server for policy B.
  • B. You must put the single web server in to a server pool, in order to use it with HTTP content routing.
  • C. The server policy applies the same protection profile to all of its protected web applications.
  • D. Static or policy-based routes are not required.

Answer: D

 

NEW QUESTION 31
What other consideration must you take into account when configuring Defacement protection

  • A. Configure the FortiGate to perform Anti-Defacement as well
  • B. Use FortiWeb to block SQL Injections and keep regular backups of the Database
  • C. None. FortiWeb completely secures the site against defacement attacks
  • D. Also incorporate a FortiADC into your network

Answer: B

 

NEW QUESTION 32
Which operation mode does not require additional configuration in order to allow FTP traffic to your web server?

  • A. Transparent Inspection
  • B. Offline Protection
  • C. Reverse-Proxy
  • D. True Transparent Proxy

Answer: A

 

NEW QUESTION 33
An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 private network LAN. You need to protect the web application from denial of service attacks that use request floods.
What FortiWeb feature should you configure?

  • A. Configure FortiWeb to use "X-Forwarded-For:" headers to find each client's private network IP, and to block attacks using that.
  • B. Enable SYN cookies.
  • C. Enable "Shared IP" and configure the separate rate limits for requests from NATted source IPs.
  • D. Configure a server policy that matches requests from shared Internet connections.

Answer: B

 

NEW QUESTION 34
What must you do with your FortiWeb logs to ensure PCI DSS compliance?

  • A. Enable masking of sensitive data
  • B. Store in an off-site location
  • C. Erase them every two weeks
  • D. Compress them into a .zip file format

Answer: A

 

NEW QUESTION 35
A client is trying to start a session from a page that should normally be accessible only after they have logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

  • A. Prompt the client to authenticate
  • B. Display an access policy message, then allow the client to continue, redirecting them to their requested page
  • C. Reply with a "403 Forbidden" HTTP error
  • D. Automatically redirect the client to the login page
  • E. Allow the page access, but log the violation

Answer: C,D,E

 

NEW QUESTION 36
In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)

  • A. Transparent Inspection
  • B. Reverse proxy
  • C. Offline protection
  • D. True transparent proxy

Answer: B,D

 

NEW QUESTION 37
The FortiWeb machine learning (ML) feature is a two-phase analysis mechanism.
Which two functions does the first layer perform? (Choose two.)

  • A. Determines whether an anomaly is a real attack or just a benign anomaly that should be ignored
  • B. Determines whether traffic is an anomaly, based on observed application traffic over time
  • C. Determines if a detected threat is a false-positive or not
  • D. Builds a threat model behind every parameter and HTTP method

Answer: B,D

Explanation:
Explanation
The first layer uses the Hidden Markov Model (HMM) and monitors access to the application and collects data to build a mathematical model behind every parameter and HTTP method.

 

NEW QUESTION 38
Which algorithm is used to build mathematical models for bot detection?

  • A. HCM
  • B. HMM
  • C. SVM
  • D. SVN

Answer: C

Explanation:
Explanation
FortiWeb uses SVM (Support Vector Machine) algorithm to build up the bot detection model

 

NEW QUESTION 39
......


Resources From:

  1. 2022 Latest ExamBoosts NSE6_FWB-6.4 Exam Dumps (PDF & Exam Engine) Free Share: https://www.examboosts.com/Fortinet/NSE6_FWB-6.4-practice-exam-dumps.html
  2. 2022 Latest ExamBoosts NSE6_FWB-6.4 PDF and NSE6_FWB-6.4 Exam Dumps Free Share: https://drive.google.com/open?id=1m_-K9MLYvM3lHt4aZpFQ9WhFeo-MBRpH

Free Resources from ExamBoosts, We Devoted to Helping You 100% Pass All Exams!