Winter Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Fortinet NSE6_FWB-6.4 Questions Answers

Fortinet NSE 6 - FortiWeb 6.4 Questions and Answers

Question 5

Which implementation is best suited for a deployment that must meet compliance criteria?

Options:

A.

SSL Inspection with FortiWeb in Transparency mode

B.

SSL Offloading with FortiWeb in reverse proxy mode

C.

SSL Inspection with FrotiWeb in Reverse Proxy mode

D.

SSL Offloading with FortiWeb in Transparency Mode

Question 6

You are deploying FortiWeb 6.4 in an Amazon Web Services cloud. Which 2 lines of this initial setup via CLI are incorrect? (Choose two.)

Options:

A.

6

B.

9

C.

3

D.

2

Question 7

Refer to the exhibit.

FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.

What can the administrator do to solve this problem? (Choose two.)

Options:

A.

Manually update the geo-location IP addresses for Japan.

B.

If the IP address is configured as a geo reputation exception, remove it.

C.

Configure the IP address as a blacklisted IP address.

D.

If the IP address is configured as an IP reputation exception, remove it.

Question 8

In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

Options:

A.

Non-matching traffic is allowed

B.

non-Matching traffic is held in buffer

C.

Non-matching traffic is Denied

D.

Non-matching traffic is rerouted to FortiGate