Summer Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: s2p65

Easiest Solution 2 Pass Your Certification Exams

NSE6_FWB-6.4 Fortinet NSE 6 - FortiWeb 6.4 Free Practice Exam Questions (2025 Updated)

Prepare effectively for your Fortinet NSE6_FWB-6.4 Fortinet NSE 6 - FortiWeb 6.4 certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2025, ensuring you have the most current resources to build confidence and succeed on your first attempt.

Page: 1 / 1
Total 56 questions

What key factor must be considered when setting brute force rate limiting and blocking?

A.

A single client contacting multiple resources

B.

Multiple clients sharing a single Internet connection

C.

Multiple clients from geographically diverse locations

D.

Multiple clients connecting to multiple resources

Which algorithm is used to build mathematical models for bot detection?

A.

HCM

B.

SVN

C.

SVM

D.

HMM

Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?

A.

Sensitive info masking

B.

Poison Cookie detection

C.

Session Management

D.

Brute Force blocking

When generating a protection configuration from an auto learning report what critical step must you do before generating the final protection configuration?

A.

Restart the FortiWeb to clear the caches

B.

Drill down in the report to correct any false positives.

C.

Activate the report to create t profile

D.

Take the FortiWeb offline to apply the profile

Which implementation is best suited for a deployment that must meet compliance criteria?

A.

SSL Inspection with FortiWeb in Transparency mode

B.

SSL Offloading with FortiWeb in reverse proxy mode

C.

SSL Inspection with FrotiWeb in Reverse Proxy mode

D.

SSL Offloading with FortiWeb in Transparency Mode

You are using HTTP content routing on FortiWeb. Requests for web app A should be forwarded to a cluster of web servers which all host the same web app. Requests for web app B should be forwarded to a different, single web server.

Which is true about the solution?

A.

Static or policy-based routes are not required.

B.

To achieve HTTP content routing, you must chain policies: the first policy accepts all traffic, and forwards requests for web app A to the virtual server for policy A. It also forwards requests for web app B to the virtual server for policy B. Policy A and Policy B apply their app-specific protection profiles, and then distribute that app’s traffic among all members of the server farm.

C.

You must put the single web server into a server pool in order to use it with HTTP content routing.

D.

The server policy applies the same protection profile to all its protected web apps.

What capability can FortiWeb add to your Web App that your Web App may or may not already have?

A.

Automatic backup and recovery

B.

High Availability

C.

HTTP/HTML Form Authentication

D.

SSL Inspection

What benefit does Auto Learning provide?

A.

Automatically identifies and blocks suspicious IPs

B.

FortiWeb scans all traffic without taking action and makes recommendations on rules

C.

Automatically builds rules sets

D.

Automatically blocks all detected threats

Review the following configuration:

What is the expected result of this configuration setting?

A.

When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.

B.

When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.

C.

When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.

D.

When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.

What is one of the key benefits of the FortiGuard IP reputation feature?

A.

It maintains a list of private IP addresses.

B.

It provides a document of IP addresses that are suspect, so that administrators can manually update their blacklists.

C.

It is updated once per year.

D.

It maintains a list of public IPs with a bad reputation for participating in attacks.

Which operation mode does not require additional configuration in order to allow FTP traffic to your web server?

A.

Offline Protection

B.

Transparent Inspection

C.

True Transparent Proxy

D.

Reverse-Proxy

In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

A.

Non-matching traffic is allowed

B.

non-Matching traffic is held in buffer

C.

Non-matching traffic is Denied

D.

Non-matching traffic is rerouted to FortiGate

What other consideration must you take into account when configuring Defacement protection

A.

Use FortiWeb to block SQL Injections and keep regular backups of the Database

B.

Also incorporate a FortiADC into your network

C.

None. FortiWeb completely secures the site against defacement attacks

D.

Configure the FortiGate to perform Anti-Defacement as well

Which of the following is true about Local User Accounts?

A.

Must be assigned regardless of any other authentication

B.

Can be used for Single Sign On

C.

Can be used for site publishing

D.

Best suited for large environments with many users

True transparent proxy mode is best suited for use in which type of environment?

A.

New networks where infrastructure is not yet defined

B.

Flexible environments where you can easily change the IP addressing scheme

C.

Small office to home office environments

D.

Environments where you cannot change the IP addressing scheme

What role does FortiWeb play in ensuring PCI DSS compliance?

A.

PCI specifically requires a WAF

B.

Provides credit card processing capabilities

C.

Provide ability to securely process cash transactions

D.

Provides load balancing between multiple web servers

Page: 1 / 1
Total 56 questions
Copyright © 2014-2025 Solution2Pass. All Rights Reserved