[Sep-2021] NSE6_FWB-6.1 Pre-Exam Practice Tests | Exam Questions and Answers for NSE 6 Network Security Specialist Study Guide
Fortinet NSE 6 - FortiWeb 6.1 Certification Sample Questions
NEW QUESTION 16
In which scenario might you want to use the compression feature on FortiWeb?
- A. When you are serving many corporate road warriors using 4G tablets and phones
- B. Never, since most traffic today is already highly compressed
- C. When you want to reduce buffering of video streams
- D. When you are offering a music streaming service
Answer: B
Explanation:
FortiWeb might expend resources compressing responses that have already been compressed by the server.
NEW QUESTION 17
Refer to the exhibit.
Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator has already verified that the current model is accurate.
What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?
- A. Change Model Type to Strict
- B. Enable Bot Confirmation
- C. Disable Dynamically Update Model
- D. Change Action under Action Settings to Alert
Answer: B
Explanation:
Bot Confirmation
If the number of anomalies from a user has reached the Anomaly Count, the system executes Bot Confirmation before taking actions.
The Bot Confirmation is to confirm if the user is indeed a bot. The system sends RBE (Real Browser Enforcement) JavaScript or CAPTCHA to the client to double check if it's a real bot.
NEW QUESTION 18
Which regex expression is the correct format for redirecting the URL http://www.example.com?
- A. www\.example\.com
- B. www.example.com
- C. www/.example/.com
- D. www\example\com
Answer: B
Explanation:
\1://www.company.com/\2/\3
NEW QUESTION 19
Which three statements about HTTPS on FortiWeb are true? (Choose three.)
- A. In true transparent mode, the TLS session terminator is a protected web server.
- B. In transparent inspection mode, you select the certificate that FortiWeb presents in the server pool, not in the server policy.
- C. For SNI, you select the certificate that FortiWeb presents in the server pool, not in the server policy.
- D. After enabling HSTS, redirects to HTTPS are never needed.
- E. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to offer only TLS 1.2.
Answer: A,B,C
NEW QUESTION 20
When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?
- A. If you are a small business or home office
- B. If you are an enterprise whose resources do not need security
- C. If you are an enterprise whose employees use only mobile devices
- D. If you are an enterprise whose computers all trust your active directory or other CA server
Answer: B
Explanation:
This can include SSL/TLS certificates, code signing certificates, and S/MIME certificates. The reason why they're considered different from traditional certificate-authority signed certificates is that they're created, issued, and signed by the company or developer who is responsible for the website or software being signed. This is why self-signed certificates are considered unsafe for public-facing websites and applications.
NEW QUESTION 21
When FortiWeb triggers a redirect action, which two HTTP codes does it send to the client to inform the browser of the new URL? (Choose two.)
- A. 0
- B. 1
- C. 2
- D. 3
Answer: A,B
NEW QUESTION 22
A client is trying to start a session from a page that would normally be accessible only after the client has logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)
- A. Allow the page access, but log the violation
- B. Display an access policy message, then allow the client to continue
- C. Reply with a 403 Forbidden HTTP error
- D. Redirect the client to the login page
- E. Prompt the client to authenticate
Answer: A,C,D
NEW QUESTION 23
True transparent proxy mode is best suited for use in which type of environment?
- A. Flexible environments where you can easily change the IP addressing scheme
- B. New networks where infrastructure is not yet defined
- C. Environments where you cannot change the IP addressing scheme
- D. Small office to home office environments
Answer: C
Explanation:
Does not require changes to the IP address scheme of the network. Requests are destined for a web server and not the FortiWeb appliance. This operation mode supports the same feature set as True Transparent Proxy mode.
NEW QUESTION 24
Refer to the exhibit.
Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
- A. Traffic will pass between port5 and port6 uninspected.
- B. All traffic will be interrupted.
- C. Traffic will be interrupted between port3 and port4.
- D. Traffic that passes between port5 and port6 will be inspected.
Answer: A,C
NEW QUESTION 25
What can an administrator do if a client has been incorrectly period blocked?
- A. Nothing, it is not possible to override a period block.
- B. Manually release the ID address from the temporary blacklist.
- C. Force a new IP address to the client.
- D. Disconnect the client from the network.
Answer: B
Explanation:
Block Period
Enter the number of seconds that you want to block the requests. The valid range is 1-3,600 seconds. The default value is 60 seconds.
This option only takes effect when you choose Period Block in Action.
Note: That's a temporary blacklist so you can manually release them from the blacklist.
NEW QUESTION 26
Refer to the exhibit.
There is only one administrator account configured on FortiWeb. What must an administrator do to restrict any brute force attacks that attempt to gain access to the FortiWeb management GUI?
- A. Change the Access Profile to Read_Only.
- B. Configure IPv4 Trusted Host # 3 with a specific IP address.
- C. The configuration changes must be made on the upstream device.
- D. Delete the built-in administrator user and create a new one.
Answer: D
NEW QUESTION 27
Review the following configuration:
What is the expected result of this configuration setting?
- A. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
- B. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
- C. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
- D. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.
Answer: C
NEW QUESTION 28
......
Fortinet Exam Practice Test To Gain Brilliante Result: https://www.passtestking.com/Fortinet/NSE6_FWB-6.1-practice-exam-dumps.html