Fortinet NSE6_FWB-6.4 Practice Test - Questions Answers, Page 6
List of questions
Related questions
What benefit does Auto Learning provide?
A.
Automatically identifies and blocks suspicious IPs
B.
FortiWeb scans all traffic without taking action and makes recommendations on rules
C.
Automatically builds rules sets
D.
Automatically blocks all detected threats
You are configuring FortiAnalyzer to store logs from FortiWeb.
Which is true?
A.
FortiAnalyzer will store antivirus and DLP archives from FortiWeb.
B.
You must enable ADOMs on FortiAnalyzer.
C.
To store logs from FortiWeb 6.4, on FortiAnalyzer, you must select ''FrotiWeb 6.1''.
D.
FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.
Which of the following would be a reason for implementing rewrites?
A.
Page has been moved to a new URL
B.
Page has been moved to a new IP address
C.
Replace vulnerable functions.
D.
Send connection to secure channel
A client is trying to start a session from a page that should normally be accessible only after they have logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)
A.
Reply with a ''403 Forbidden'' HTTP error
B.
Allow the page access, but log the violation
C.
Automatically redirect the client to the login page
D.
Display an access policy message, then allow the client to continue, redirecting them to their requested page
E.
Prompt the client to authenticate
Which is true about HTTPS on FortiWeb? (Choose three.)
A.
For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.
B.
After enabling HSTS, redirects to HTTPS are no longer necessary.
C.
In true transparent mode, the TLS session terminator is a protected web server.
D.
Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
E.
In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
Which of the following is true about Local User Accounts?
A.
Must be assigned regardless of any other authentication
B.
Can be used for Single Sign On
C.
Can be used for site publishing
D.
Best suited for large environments with many users
Question