[Sep-2021] NSE6_FWB-6.0 Dumps Full Questions - Fortinet Certification Exam Study Guide [Q15-Q40]

Share

[Sep-2021] NSE6_FWB-6.0 Dumps Full Questions - Fortinet Certification Exam Study Guide

Exam Questions and Answers for  NSE6_FWB-6.0 Study Guide

NEW QUESTION 15
How does offloadingcompression to FortiWeb benefit your network?

  • A. reduces file size on the client's storage
  • B. free up resources on the database server
  • C. free up resources on the FortiGate
  • D. Free up resources on the web server

Answer: D

 

NEW QUESTION 16
Under what circumstances would youwant to use the temporary uncompress feature of FortiWeb?

  • A. In the case of compression being done on the FortiWeb, to inspect the content of the compressed file
  • B. In the case of the file being a .MP3 music file
  • C. In the case of the file being an .MP4 video
  • D. In the case of compression being done on the web server, to inspect the content of the compressed file.

Answer: D

 

NEW QUESTION 17
In which operation mode(s) can FortiWeb modify HTTP packets? (Choose two.)

  • A. Transparent Inspection
  • B. Reverse proxy
  • C. Offlineprotection
  • D. True transparent proxy

Answer: B

 

NEW QUESTION 18
Under which circumstances does FortiWeb use its own certificates? (Choose Two)

  • A. HTTPS to FortiGate
  • B. Secondary HTTPS connection to server where FortiWeb acts as a client
  • C. HTTPS access to GUI
  • D. HTTPS to clients

Answer: B,C

 

NEW QUESTION 19
What benefit does Auto Learning provide?

  • A. Automatically builds rules sets
  • B. FortiWeb scans all traffic without taking action and makes recommendations on rules
  • C. Automatically blocks all detected threats
  • D. Automatically identifies and blocks suspicious IPs

Answer: A

 

NEW QUESTION 20
What can an administrator do if a client has been incorrectly Period Blocked?

  • A. Nothing, it is not possible to override a Period Block
  • B. Manually release the IP from thetemporary Blacklist
  • C. Force a new IP address to the client.
  • D. Disconnect the client from the network

Answer: B

 

NEW QUESTION 21
Which implementation is bestsuited for a deployment that must meet compliance criteria?

  • A. SSL Inspection with FortiWeb in Transparency mode
  • B. SSL Offloading with FortiWeb inTransparency Mode
  • C. SSL Inspection with FrotiWeb in Reverse Proxy mode
  • D. SSL Offloading with FortiWeb in reverse proxy mode

Answer: C

 

NEW QUESTION 22
What other consideration must you take into account when configuring Defacement protection

  • A. Configure the FortiGate to perform Anti-Defacement as well
  • B. Also incorporate a FortiADC into your network
  • C. None. FortiWeb completely secures the site against defacement attacks
  • D. Use FortiWeb to block SQL Injections and keep regular backups of the Database

Answer: A

 

NEW QUESTION 23
What role does FortiWeb play in ensuring PCI DSScompliance?

  • A. Provide ability to securely process cash transactions
  • B. Provides credit card processing capabilities
  • C. PCI specifically requires a WAF
  • D. Provides load balancing between multiple web servers

Answer: B

 

NEW QUESTION 24
You are configuring FortiAnalyzer to store logs from FortiWeb.
Which is true?

  • A. You mustenable ADOMs on FortiAnalyzer.
  • B. To store logs from FortiWeb6.0, on FortiAnalyzer, you must select "FrotiWeb 5.4".
  • C. FortiAnalyzer will store antivirus and DLP archives from FortiWeb.
  • D. FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.

Answer: A

 

NEW QUESTION 25
How does an ADOM differ from a VDOM?

  • A. Allows you to have 1 administrator for multiple tenants
  • B. ADOMs do not have virtual networking
  • C. ADOMs only affect specific functions, and do not provide full separation like VDOMs do.
  • D. ADOMs improve performance by offloading some functions.

Answer: A

 

NEW QUESTION 26
In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

  • A. Non-matching traffic is Denied
  • B. Non-matching traffic is rerouted to FortiGate
  • C. Non-matching traffic is allowed
  • D. non-Matching traffic is held in buffer

Answer: A

 

NEW QUESTION 27
......

Fortinet NSE 6 - FortiWeb 6.0 Free Update With 100% Exam Passing Guarantee: https://www.actualpdf.com/NSE6_FWB-6.0_exam-dumps.html