Download Fortinet.NSE6_FWB-5.6.0.ActualTests.2018-11-09.16q.vcex

Download Exam

File Info

Exam FortiWeb 5.6.0 Specialist
Number NSE6_FWB-5.6.0
File Name Fortinet.NSE6_FWB-5.6.0.ActualTests.2018-11-09.16q.vcex
Size 21 KB
Posted Nov 09, 2018
Download Fortinet.NSE6_FWB-5.6.0.ActualTests.2018-11-09.16q.vcex

How to open VCEX & EXAM Files?

Files with VCEX & EXAM extensions can be opened by ProfExam Simulator.

Purchase

Coupon: MASTEREXAM
With discount: 20%






Demo Questions

Question 1

Which of the following would be a reason for implementing rewrites? 


  1. Page has been moved to a new URL
  2. Page has been moved to a new IP address
  3. Replace vulnerable functions.
  4. Send connection to secure channel
Correct answer: A



Question 2

A client is trying to start a session from a page that should normally be accessible only after they have logged in. 
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)


  1. Reply with a “403 Forbidden” HTTP error
  2. Allow the page access, but log the violation
  3. Automatically redirect the client to the login page
  4. Display an access policy message, then allow the client to continue, redirecting them to their requested page
  5. Prompt the client to authenticate
Correct answer: ABC
Explanation:



Question 3

Which is true about HTTPS on FortiWeb? (Choose three.)


  1. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.
  2. After enabling HSTS, redirects to HTTPS are no longer necessary.
  3. In true transparent mode, the TLS session terminator is a protected web server.
  4. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
  5. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
Correct answer: ACE



Question 4

Which of the following is true about Local User Accounts?


  1. Must be assigned regardless of any other authentication
  2. Can be used for Single Sign On
  3. Can be used for site publishing
  4. Best suited for large environments with many users
Correct answer: A



Question 5

In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)


  1. Transparent Inspection
  2. Offline protection
  3. True transparent proxy 
  4. Reverse proxy
Correct answer: D
Explanation:
Reference: http://help.fortinet.com/fweb/541/Content/FortiWeb/fortiweb-admin/planning_topology.htm
Reference: http://help.fortinet.com/fweb/541/Content/FortiWeb/fortiweb-admin/planning_topology.htm



Question 6

Under what circumstances would you want to use the temporary uncompress feature of FortiWeb?


  1. In the case of compression being done on the FortiWeb, to inspect the content of the compressed file
  2. In the case of the file being a .MP3 music file
  3. In the case of compression being done on the web server, to inspect the content of the compressed file.
  4. In the case of the file being an .MP4 video
Correct answer: C



Question 7

What is one of the key benefits of the FortiGuard IP Reputation feature?


  1. FortiGuard maintains a list of public IPs with a bad reputation for participating in attacks.
  2. It is updated once per year
  3. Provides a Document of IP addresses that are suspect, so that administrators can manually update their blacklists
  4. It maintains a list of private IP addresses
Correct answer: A
Explanation:



Question 8

You are deploying FortiWeb 5.6.0 in an Amazon Web Services cloud. Which 2 lines of this initial setup via CLI are incorrect? (Choose two.) 
  


  1. 6
  2. 9
  3. 3
  4. 2
Correct answer: AC



Question 9

How does offloading compression to FortiWeb benefit your network? 


  1. free up resources on the database server
  2. Free up resources on the web server
  3. reduces file size on the client’s storage
  4. free up resources on the FortiGate
Correct answer: B



Question 10

When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate’s Real Server configuration point at?


  1. Virtual Server IP on the FortiGate
  2. Server’s real IP
  3. FortiWeb’s real IP
  4. IP Address of the Virtual Server on the FortiWeb
Correct answer: A









CONNECT US

Facebook

Twitter

PROFEXAM WITH A 20% DISCOUNT

You can buy ProfExam with a 20% discount!



HOW TO OPEN VCEX FILES

Use ProfExam Simulator to open VCEX files