Latest NSE6_FWB-6.0 Pass Guaranteed Exam Dumps with Accurate & Updated Questions [Q17-Q41]

Share

Latest NSE6_FWB-6.0 Pass Guaranteed Exam Dumps with Accurate & Updated Questions

NSE6_FWB-6.0 Exam Brain Dumps - Study Notes and Theory

NEW QUESTION 17
Which of the followingwould be a reason for implementing rewrites?

  • A. Replace vulnerable functions.
  • B. Page has been moved to a new URL
  • C. Page has been moved to a new IP address
  • D. Send connection to secure channel

Answer: B

 

NEW QUESTION 18
Which is true about HTTPS on FortiWeb? (Choose three.)

  • A. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
  • B. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
  • C. After enabling HSTS, redirects to HTTPS are no longer necessary.
  • D. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.
  • E. In true transparent mode, the TLS session terminator is a protected web server.

Answer: B,D,E

 

NEW QUESTION 19
You are deploying FortiWeb6.0 in an Amazon Web Services cloud. Which 2 lines of this initial setup via CLI are incorrect? (Choose two.)

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: B,D

 

NEW QUESTION 20
How does an ADOM differ from a VDOM?

  • A. ADOMs only affect specific functions, and do not provide full separation like VDOMs do.
  • B. ADOMs do not have virtual networking
  • C. ADOMs improve performance by offloading some functions.
  • D. Allows you to have 1 administrator for multiple tenants

Answer: D

 

NEW QUESTION 21
An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 privatenetwork LAN. You need to protect the web application from denial of service attacks that use request floods.
What FortiWeb feature should you configure?

  • A. Enable "Shared IP" and configure the separate rate limits for requests from NATted source IPs.
  • B. Enable SYN cookies.
  • C. Configure a server policy that matches requests from shared Internet connections.
  • D. Configure FortiWeb to use "X-Forwarded-For:" headers to find each client's private network IP, and to block attacks using that.

Answer: B

 

NEW QUESTION 22
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?

  • A. Sensitive info masking
  • B. Session Management
  • C. Poison Cookie detection
  • D. Brute Force blocking

Answer: B

 

NEW QUESTION 23
How does offloadingcompression to FortiWeb benefit your network?

  • A. free up resources on the FortiGate
  • B. reduces file size on the client's storage
  • C. free up resources on the database server
  • D. Free up resources on the web server

Answer: D

 

NEW QUESTION 24
What other consideration must you take into account when configuring Defacement protection

  • A. Also incorporate a FortiADC into your network
  • B. Configure the FortiGate to perform Anti-Defacement as well
  • C. Use FortiWeb to block SQL Injections and keep regular backups of the Database
  • D. None. FortiWeb completely secures the site against defacement attacks

Answer: B

 

NEW QUESTION 25
When generating a protection configuration from an auto learning report what critical step must you dobefore generating the final protection configuration?

  • A. Take the FortiWeb offline to apply the profile
  • B. Restart the FortiWeb to clear the caches
  • C. Activate the report to create t profile
  • D. Drill down in the report to correct any false positives.

Answer: D

 

NEW QUESTION 26
Which of the following is true about Local User Accounts?

  • A. Can be used for site publishing
  • B. Can be used for Single Sign On
  • C. Must be assigned regardless of any other authentication
  • D. Best suited for large environments with many users

Answer: C

 

NEW QUESTION 27
What capability can FortiWeb add to your Web App that your Web App may or may not already have?

  • A. High Availability
  • B. Automatic backup and recovery
  • C. SSL Inspection
  • D. HTTP/HTML Form Authentication

Answer: C

 

NEW QUESTION 28
You are configuring FortiAnalyzer to store logs from FortiWeb.
Which is true?

  • A. To store logs from FortiWeb6.0, on FortiAnalyzer, you must select "FrotiWeb 5.4".
  • B. FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.
  • C. FortiAnalyzer will store antivirus and DLP archives from FortiWeb.
  • D. You mustenable ADOMs on FortiAnalyzer.

Answer: D

 

NEW QUESTION 29
......

Pass Fortinet NSE6_FWB-6.0 Test Practice Test Questions Exam Dumps: https://www.prepawayexam.com/Fortinet/braindumps.NSE6_FWB-6.0.ete.file.html