
Authentic NSE6_FWB-6.0 Dumps - Free PDF Questions to Pass
Guaranteed Accomplishment with Newest Nov-2021 FREE NSE6_FWB-6.0
NEW QUESTION 18
You've configured an authentication rule with delegation enabled on FortiWeb.
Whathappens when a user tries to access the web application?
- A. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully
- B. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app
- C. ForitWeb redirects the user tothe web app's authentication page
- D. FortiWeb replies with a HTTP challenge of behalf of the server, theif the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app
Answer: B
NEW QUESTION 19
How does your FortiWeb configuration differ if the FortiWeb is upstream of the SNAT device instead of downstream of the SNAT device?
- A. FortiWeb must be set for Transparent Mode
- B. You must enable "Add" X-Forwarded-For: instead of the "Use" X-Forwarded-For: option.
- C. No special configuration required
- D. You must enable the "Use" X-Forwarded-For: option.
Answer: D
NEW QUESTION 20
When generating a protection configuration from an auto learning report what critical step must you dobefore generating the final protection configuration?
- A. Restart the FortiWeb to clear the caches
- B. Activate the report to create t profile
- C. Take the FortiWeb offline to apply the profile
- D. Drill down in the report to correct any false positives.
Answer: D
NEW QUESTION 21
How does an ADOM differ from a VDOM?
- A. ADOMs improve performance by offloading some functions.
- B. ADOMs only affect specific functions, and do not provide full separation like VDOMs do.
- C. Allows you to have 1 administrator for multiple tenants
- D. ADOMs do not have virtual networking
Answer: C
NEW QUESTION 22
When viewing the attack logs on your FortiWeb, which IP Address is shown for the client when using XFF Header rules?
- A. FortiWeb's IP
- B. FortiGate's local IP
- C. FortiGate's public IP
- D. Client's real IP
Answer: D
NEW QUESTION 23
What can an administrator do if a client has been incorrectly Period Blocked?
- A. Manually release the IP from thetemporary Blacklist
- B. Nothing, it is not possible to override a Period Block
- C. Disconnect the client from the network
- D. Force a new IP address to the client.
Answer: A
NEW QUESTION 24
What capability can FortiWeb add to your Web App that your Web App may or may not already have?
- A. SSL Inspection
- B. Automatic backup and recovery
- C. HTTP/HTML Form Authentication
- D. High Availability
Answer: A
NEW QUESTION 25
In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?
- A. Non-matching traffic is rerouted to FortiGate
- B. Non-matching traffic is allowed
- C. non-Matching traffic is held in buffer
- D. Non-matching traffic is Denied
Answer: D
NEW QUESTION 26
Under which circumstances does FortiWeb use its own certificates? (Choose Two)
- A. Secondary HTTPS connection to server where FortiWeb acts as a client
- B. HTTPS access to GUI
- C. HTTPS to clients
- D. HTTPS to FortiGate
Answer: A,B
NEW QUESTION 27
You are configuring FortiAnalyzer to store logs from FortiWeb.
Which is true?
- A. To store logs from FortiWeb6.0, on FortiAnalyzer, you must select "FrotiWeb 5.4".
- B. You mustenable ADOMs on FortiAnalyzer.
- C. FortiAnalyzer will store antivirus and DLP archives from FortiWeb.
- D. FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.
Answer: B
NEW QUESTION 28
Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?
- A. Poison Cookie detection
- B. Session Management
- C. Brute Force blocking
- D. Sensitive info masking
Answer: B
NEW QUESTION 29
- A. It also forwards requests for web app B to the virtual serverfor policy
- B. The server policy applies the same protection profile to all its protected web apps.
- C. To achieve HTTP content routing, you must chain policies: the first policy accepts all traffic, and forwards requests for web app A to the virtual server for policy
- D. Static or policy-based routes are not required.
- E. Policy A and Policy B apply their app-specific protection profiles, and then distribute that app's traffic among all members of the server farm.
- F. You must put the single web server into a server pool in order to use it with HTTP content routing.
Answer: C,E
NEW QUESTION 30
......
NSE6_FWB-6.0 Braindumps PDF, Fortinet NSE6_FWB-6.0 Exam Cram: https://www.itexamreview.com/NSE6_FWB-6.0-exam-dumps.html
