[Oct 19, 2021] Get Free Updates Up to 365 days On Developing NSE6_FWB-6.1 Braindumps Best Quality Fortinet NSE6_FWB-6.1 Exam Questions NEW QUESTION 16 FortiWeb offers the same load balancing algorithms as FortiGate.Which two Layer 7 switch methods does FortiWeb also offer? (Choose two.) A. HTTP user-based round robin B. Round robin C. HTTP session-based round robin D. HTTP content routes Answer: B,D [...]

[Oct 19, 2021] Get Free Updates Up to 365 days On Developing NSE6_FWB-6.1 Braindumps [Q16-Q40]

Share

[Oct 19, 2021] Get Free Updates Up to 365 days On Developing NSE6_FWB-6.1 Braindumps

Best Quality Fortinet NSE6_FWB-6.1 Exam Questions

NEW QUESTION 16
FortiWeb offers the same load balancing algorithms as FortiGate.
Which two Layer 7 switch methods does FortiWeb also offer? (Choose two.)

  • A. HTTP user-based round robin
  • B. Round robin
  • C. HTTP session-based round robin
  • D. HTTP content routes

Answer: B,D

Explanation:
Reference:
http://fortinet.globalgate.com.ar/pdfs/FortiWeb/FortiWeb_DS.pdf

 

NEW QUESTION 17
In which scenario might you want to use the compression feature on FortiWeb?

  • A. When you are serving many corporate road warriors using 4G tablets and phones
  • B. Never, since most traffic today is already highly compressed
  • C. When you want to reduce buffering of video streams
  • D. When you are offering a music streaming service

Answer: B

Explanation:
FortiWeb might expend resources compressing responses that have already been compressed by the server.

 

NEW QUESTION 18
Which regex expression is the correct format for redirecting the URL http://www.example.com?

  • A. www\.example\.com
  • B. www.example.com
  • C. www/.example/.com
  • D. www\example\com

Answer: B

Explanation:
\1://www.company.com/\2/\3

 

NEW QUESTION 19
Review the following configuration:

What is the expected result of this configuration setting?

  • A. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
  • B. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
  • C. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
  • D. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.

Answer: C

 

NEW QUESTION 20
Refer to the exhibits.


FortiWeb is configured in reverse proxy mode and it is deployed downstream to FortiGate. Based on the configuration shown in the exhibits, which of the following statements is true?

  • A. FortiGate should forward web traffic to virtual server IP address.
  • B. FortiGate should forward web traffic to the server pool IP addresses.
  • C. The configuration is incorrect. FortiWeb should always be located upstream to FortiGate.
  • D. You must disable the Preserve Client IP setting on FotriGate for this configuration to work.

Answer: A

 

NEW QUESTION 21
When FortiWeb triggers a redirect action, which two HTTP codes does it send to the client to inform the browser of the new URL? (Choose two.)

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A,B

 

NEW QUESTION 22
How does FortiWeb protect against defacement attacks?

  • A. It keeps a live duplicate of the database.
  • B. It keeps a complete backup of all files and the database.
  • C. It keeps hashes of files and periodically compares them to the server.
  • D. It keeps full copies of all files and directories.

Answer: C

Explanation:
The anti-defacement feature examines a web site's files for changes at specified time intervals. If it detects a change that could indicate a defacement attack, the FortiWeb appliance can notify you and quickly react by automatically restoring the web site contents to the previous backup.

 

NEW QUESTION 23
Refer to the exhibit.

FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)

  • A. Manually update the geo-location IP addresses for Japan.
  • B. If the IP address is configured as an IP reputation exception, remove it.
  • C. If the IP address is configured as a geo reputation exception, remove it.
  • D. Configure the IP address as a blacklisted IP address.

Answer: A,D

Explanation:
IP reputation leverages many techniques for accurate, early, and frequently updated identification of compromised and malicious clients so you can block attackers before they target your servers.
IP blacklisting is a method used to filter out illegitimate or malicious IP addresses from accessing your networks. Blacklists are lists containing ranges of or individual IP addresses that you want to block.
Reference:
https://www.imperva.com/learn/application-security/ip-blacklist/

 

NEW QUESTION 24
Which would be a reason to implement HTTP rewriting?

  • A. The original page has moved to a new IP address
  • B. To replace a vulnerable function in the requested URL
  • C. The original page has moved to a new URL
  • D. To send the request to secure channel

Answer: C

Explanation:
Create a new URL rewriting rule.

 

NEW QUESTION 25
Refer to the exhibit.

Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator has already verified that the current model is accurate.
What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?

  • A. Change Model Type to Strict
  • B. Enable Bot Confirmation
  • C. Disable Dynamically Update Model
  • D. Change Action under Action Settings to Alert

Answer: B

Explanation:
Bot Confirmation
If the number of anomalies from a user has reached the Anomaly Count, the system executes Bot Confirmation before taking actions.
The Bot Confirmation is to confirm if the user is indeed a bot. The system sends RBE (Real Browser Enforcement) JavaScript or CAPTCHA to the client to double check if it's a real bot.

 

NEW QUESTION 26
When viewing the attack logs on FortiWeb, which client IP address is shown when you are using XFF header rules?

  • A. FortiGate public IP
  • B. Client real IP
  • C. FortiWeb IP
  • D. FortiGate local IP

Answer: B

Explanation:
When an XFF header reaches Alteon from a client, Alteon removes all the content from the header and injects the client IP address. Alteon then forwards the header to the server.

 

NEW QUESTION 27
What must you do with your FortiWeb logs to ensure PCI DSS compliance?

  • A. Compress them into a .zip file format
  • B. Erase them every two weeks
  • C. Store in an off-site location
  • D. Enable masking of sensitive data

Answer: D

 

NEW QUESTION 28
......

Fortinet Exam Practice Test To Gain Brilliante Result: https://www.exam4free.com/NSE6_FWB-6.1-valid-dumps.html