[Nov 08, 2021] NSE6_FWB-6.1 Test Prep Training Practice Exam Questions Practice Tests [Q16-Q38]

Share

[Nov 08, 2021] NSE6_FWB-6.1 Test Prep Training Practice Exam Questions Practice Tests

Exam Questions Answers Braindumps NSE6_FWB-6.1 Exam Dumps PDF Questions

NEW QUESTION 16
You are using HTTP content routing on FortiWeb. You want requests for web application A to be forwarded to a cluster of web servers, which all host the same web application. You want requests for web application B to be forwarded to a different, single web server.
Which statement about this solution is true?

  • A. The server policy applies the same protection profile to all of its protected web applications.
  • B. You must put the single web server in to a server pool, in order to use it with HTTP content routing.
  • C. Static or policy-based routes are not required.
  • D. You must chain policies so that requests for web application A go to the virtual server for policy A, and requests for web application B go to the virtual server for policy B.

Answer: C

 

NEW QUESTION 17
Which regex expression is the correct format for redirecting the URL http://www.example.com?

  • A. www\example\com
  • B. www\.example\.com
  • C. www/.example/.com
  • D. www.example.com

Answer: D

Explanation:
\1://www.company.com/\2/\3

 

NEW QUESTION 18
Refer to the exhibit.

FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)

  • A. Manually update the geo-location IP addresses for Japan.
  • B. Configure the IP address as a blacklisted IP address.
  • C. If the IP address is configured as a geo reputation exception, remove it.
  • D. If the IP address is configured as an IP reputation exception, remove it.

Answer: A,B

Explanation:
IP reputation leverages many techniques for accurate, early, and frequently updated identification of compromised and malicious clients so you can block attackers before they target your servers.
IP blacklisting is a method used to filter out illegitimate or malicious IP addresses from accessing your networks. Blacklists are lists containing ranges of or individual IP addresses that you want to block.
Reference:
https://www.imperva.com/learn/application-security/ip-blacklist/

 

NEW QUESTION 19
What is one of the key benefits of the FortiGuard IP reputation feature?

  • A. It maintains a list of public IPs with a bad reputation for participating in attacks.
  • B. It is updated once per year.
  • C. It provides a document of IP addresses that are suspect, so that administrators can manually update their blacklists.
  • D. It maintains a list of private IP addresses.

Answer: A

Explanation:
FortiGuard IP Reputation service assigns a poor reputation, including virus-infected clients and malicious spiders/crawlers.

 

NEW QUESTION 20
Refer to the exhibits.


FortiWeb is configured in reverse proxy mode and it is deployed downstream to FortiGate. Based on the configuration shown in the exhibits, which of the following statements is true?

  • A. FortiGate should forward web traffic to virtual server IP address.
  • B. The configuration is incorrect. FortiWeb should always be located upstream to FortiGate.
  • C. FortiGate should forward web traffic to the server pool IP addresses.
  • D. You must disable the Preserve Client IP setting on FotriGate for this configuration to work.

Answer: A

 

NEW QUESTION 21
Which two statements about the anti-defacement feature on FortiWeb are true? (Choose two.)

  • A. Anti-defacement downloads a copy of your website to RAM, in order to restore a clean image, if it detects defacement.
  • B. FortiWeb will only check to see if there are changes on the web server; it will not download the whole file each time.
  • C. Anti-defacement can redirect users to a backup web server, if it detects a change.
  • D. Anti-defacement does not make a backup copy of your databases.

Answer: B,D

Explanation:
Anti-defacement backs up web pages only, not databases.
If it detects any file changes, the FortiWeb appliance will download a new backup revision.

 

NEW QUESTION 22
When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?

  • A. If you are an enterprise whose computers all trust your active directory or other CA server
  • B. If you are a small business or home office
  • C. If you are an enterprise whose resources do not need security
  • D. If you are an enterprise whose employees use only mobile devices

Answer: C

Explanation:
This can include SSL/TLS certificates, code signing certificates, and S/MIME certificates. The reason why they're considered different from traditional certificate-authority signed certificates is that they're created, issued, and signed by the company or developer who is responsible for the website or software being signed. This is why self-signed certificates are considered unsafe for public-facing websites and applications.

 

NEW QUESTION 23
Review the following configuration:

What is the expected result of this configuration setting?

  • A. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
  • B. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.
  • C. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
  • D. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.

Answer: D

 

NEW QUESTION 24
Which statement about local user accounts is true?

  • A. They are best suited for large environments with many users.
  • B. They cannot be used for site publishing.
  • C. They must be assigned, regardless of any other authentication.
  • D. They can be used for SSO.

Answer: D

Explanation:
You can configure the Remedy Single Sign-On server to authenticate TrueSight Capacity Optimization users as local users.

 

NEW QUESTION 25
Refer to the exhibit.

There is only one administrator account configured on FortiWeb. What must an administrator do to restrict any brute force attacks that attempt to gain access to the FortiWeb management GUI?

  • A. Delete the built-in administrator user and create a new one.
  • B. Configure IPv4 Trusted Host # 3 with a specific IP address.
  • C. The configuration changes must be made on the upstream device.
  • D. Change the Access Profile to Read_Only.

Answer: A

 

NEW QUESTION 26
Which three statements about HTTPS on FortiWeb are true? (Choose three.)

  • A. In transparent inspection mode, you select the certificate that FortiWeb presents in the server pool, not in the server policy.
  • B. In true transparent mode, the TLS session terminator is a protected web server.
  • C. After enabling HSTS, redirects to HTTPS are never needed.
  • D. For SNI, you select the certificate that FortiWeb presents in the server pool, not in the server policy.
  • E. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to offer only TLS 1.2.

Answer: A,B,D

 

NEW QUESTION 27
What can an administrator do if a client has been incorrectly period blocked?

  • A. Force a new IP address to the client.
  • B. Manually release the ID address from the temporary blacklist.
  • C. Nothing, it is not possible to override a period block.
  • D. Disconnect the client from the network.

Answer: B

Explanation:
Block Period
Enter the number of seconds that you want to block the requests. The valid range is 1-3,600 seconds. The default value is 60 seconds.
This option only takes effect when you choose Period Block in Action.
Note: That's a temporary blacklist so you can manually release them from the blacklist.

 

NEW QUESTION 28
......

Download Free Fortinet NSE6_FWB-6.1 Real Exam Questions: https://www.itexamdownload.com/NSE6_FWB-6.1-valid-questions.html

NSE6_FWB-6.1 Exam Dumps, NSE6_FWB-6.1 Practice Test Questions: https://drive.google.com/open?id=1RuUlAopXOMdxVWFsRHDDxDI5zWZBN5ia