Fortinet NSE 5 - FortiWeb 8.0 Administrator - NSE5_FWB_AD-8.0 模擬練習

You have configured parameter validation, file security, and machine learning (ML) anomaly detection for a web form, but some server-side request forgery tests are still succeeding. You need to advise the team on what to prioritize next to improve SSRF protection without compromising other parts of the application. Which recommendation would best strengthen FortiWeb's ability to block remaining SSRF attempts?

正解: C
解説: (PassTest メンバーにのみ表示されます)
Your security team is reviewing tools for artificial intelligence (AI) integration and wants to ensure no real user or IP data is exposed to third-party services. How does FortiAI meet this requirement better than traditional external AI tools?

正解: B
解説: (PassTest メンバーにのみ表示されます)
An administrator sees repeated requests probing for common vulnerable file paths such as "/wp- admin/" and "/.env" against a server that does not run WordPress or expose environment files.
Which FortiWeb feature is designed to detect this behavior pattern?

正解: B
解説: (PassTest メンバーにのみ表示されます)
Refer to the exhibit.

What is does the exhibit show?

正解: D
解説: (PassTest メンバーにのみ表示されます)
Your company hosts two different web applications: a shopping site and a blog. You want FortiWeb to apply different protection profiles and forwarding rules to each application. How should you configure FortiWeb to support this?

正解: B
解説: (PassTest メンバーにのみ表示されます)
An administrator is troubleshooting why FortiWeb is not decrypting HTTPS traffic for inspection in reverse proxy mode. What is the most likely missing configuration?

正解: C
解説: (PassTest メンバーにのみ表示されます)
Which two actions can FortiWeb take when an attack signature is matched, depending on the configured action? (Choose two.)

正解: A,D
解説: (PassTest メンバーにのみ表示されます)