Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple70

Pass the Fortinet NSE 6 Network Security Specialist NSE6_FWB-6.4 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam NSE6_FWB-6.4 Premium Access

View all detail and faqs for the NSE6_FWB-6.4 exam


409 Students Passed

90% Average Score

95% Same Questions
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

What key factor must be considered when setting brute force rate limiting and blocking?

Options:

A.

A single client contacting multiple resources

B.

Multiple clients sharing a single Internet connection

C.

Multiple clients from geographically diverse locations

D.

Multiple clients connecting to multiple resources

Questions # 2:

What can an administrator do if a client has been incorrectly period blocked?

Options:

A.

Nothing, it is not possible to override a period block.

B.

Manually release the ID address from the temporary blacklist.

C.

Force a new IP address to the client.

D.

Disconnect the client from the network.

Questions # 3:

Which two statements about the anti-defacement feature on FortiWeb are true? (Choose two.)

Options:

A.

Anti-defacement can redirect users to a backup web server, if it detects a change.

B.

Anti-defacement downloads a copy of your website to RAM, in order to restore a clean image, if it detects defacement.

C.

FortiWeb will only check to see if there are changes on the web server; it will not download the whole file each time.

D.

Anti-defacement does not make a backup copy of your databases.

Questions # 4:

Refer to the exhibit.

Question # 4

FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.

What can the administrator do to solve this problem? (Choose two.)

Options:

A.

Manually update the geo-location IP addresses for Japan.

B.

If the IP address is configured as a geo reputation exception, remove it.

C.

Configure the IP address as a blacklisted IP address.

D.

If the IP address is configured as an IP reputation exception, remove it.

Questions # 5:

Which regex expression is the correct format for redirecting the URL http://www.example.com?

Options:

A.

www\.example\.com

B.

www.example.com

C.

www\example\com

D.

www/.example/.com

Questions # 6:

When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate’s Real Server configuration point at?

Options:

A.

Virtual Server IP on the FortiGate

B.

Server’s real IP

C.

FortiWeb’s real IP

D.

IP Address of the Virtual Server on the FortiWeb

Questions # 7:

You are configuring FortiAnalyzer to store logs from FortiWeb.

Which is true?

Options:

A.

FortiAnalyzer will store antivirus and DLP archives from FortiWeb.

B.

You must enable ADOMs on FortiAnalyzer.

C.

To store logs from FortiWeb 6.4, on FortiAnalyzer, you must select “FrotiWeb 6.1”.

D.

FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.

Questions # 8:

When viewing the attack logs on FortiWeb, which client IP address is shown when you are using XFF header rules?

Options:

A.

FortiGate public IP

B.

FortiWeb IP

C.

FortiGate local IP

D.

Client real IP

Questions # 9:

Refer to the exhibit.

Question # 9

Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator has already verified that the current model is accurate.

What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?

Options:

A.

Change Model Type to Strict

B.

Change Action under Action Settings to Alert

C.

Disable Dynamically Update Model

D.

Enable Bot Confirmation

Questions # 10:

What is one of the key benefits of the FortiGuard IP reputation feature?

Options:

A.

It maintains a list of private IP addresses.

B.

It provides a document of IP addresses that are suspect, so that administrators can manually update their blacklists.

C.

It is updated once per year.

D.

It maintains a list of public IPs with a bad reputation for participating in attacks.

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.