最新 [2024年01月12日]NSE6_FWB-6.4試験正確解答Fortinet NSE 6 - FortiWeb 6.4のPDF問題
あなたのキャリアーを稼いで飛躍せよFortinet 58問題
質問 # 19
True transparent proxy mode is best suited for use in which type of environment?
- A. Environments where you cannot change the IP addressing scheme
- B. Small office to home office environments
- C. New networks where infrastructure is not yet defined
- D. Flexible environments where you can easily change the IP addressing scheme
正解:D
解説:
Explanation
"Because blocking is not guaranteed to succeed in offline mode, this mode is best used during the evaluation and planning phase, early in implementation. Reverse proxy is the most popular operating mode. It can rewrite URLs, offload TLS, load balance, and apply NAT. For very large MSSP, true transparent mode has a significant advantage. You can drop it in without changing any schemes of limited IPv4 space-in transparent mode, you don't need to give IP addresses to the network interfaces on FortiWeb."
質問 # 20
When the FortiWeb is configured in Reverse Proxy mode and the FortiGate is configured as an SNAT device, what IP address will the FortiGate's Real Server configuration point at?
- A. Virtual Server IP on the FortiGate
- B. IP Address of the Virtual Server on the FortiWeb
- C. Server's real IP
- D. FortiWeb's real IP
正解:A
質問 # 21
Refer to the exhibit.
Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
- A. All traffic will be interrupted.
- B. Traffic will be interrupted between port3 and port4.
- C. Traffic that passes between port5 and port6 will be inspected.
- D. Traffic will pass between port5 and port6 uninspected.
正解:B、D
質問 # 22
The FortiWeb machine learning (ML) feature is a two-phase analysis mechanism.
Which two functions does the first layer perform? (Choose two.)
- A. Determines whether traffic is an anomaly, based on observed application traffic over time
- B. Determines whether an anomaly is a real attack or just a benign anomaly that should be ignored
- C. Determines if a detected threat is a false-positive or not
- D. Builds a threat model behind every parameter and HTTP method
正解:A、D
解説:
Explanation
The first layer uses the Hidden Markov Model (HMM) and monitors access to the application and collects data to build a mathematical model behind every parameter and HTTP method.
質問 # 23
Which two statements about the anti-defacement feature on FortiWeb are true? (Choose two.)
- A. FortiWeb will only check to see if there are changes on the web server; it will not download the whole file each time.
- B. Anti-defacement can redirect users to a backup web server, if it detects a change.
- C. Anti-defacement downloads a copy of your website to RAM, in order to restore a clean image, if it detects defacement.
- D. Anti-defacement does not make a backup copy of your databases.
正解:A、D
解説:
Explanation
Anti-defacement backs up web pages only, not databases.
If it detects any file changes, the FortiWeb appliance will download a new backup revision.
質問 # 24
Which implementation is best suited for a deployment that must meet compliance criteria?
- A. SSL Offloading with FortiWeb in reverse proxy mode
- B. SSL Offloading with FortiWeb in Transparency Mode
- C. SSL Inspection with FortiWeb in Transparency mode
- D. SSL Inspection with FrotiWeb in Reverse Proxy mode
正解:D
質問 # 25
Which operation mode does not require additional configuration in order to allow FTP traffic to your web server?
- A. Offline Protection
- B. Reverse-Proxy
- C. True Transparent Proxy
- D. Transparent Inspection
正解:D
質問 # 26
Which statement about local user accounts is true?
- A. They are best suited for large environments with many users.
- B. They cannot be used for site publishing.
- C. They must be assigned, regardless of any other authentication.
- D. They can be used for SSO.
正解:B
質問 # 27
What can an administrator do if a client has been incorrectly period blocked?
- A. Manually release the ID address from the temporary blacklist.
- B. Nothing, it is not possible to override a period block.
- C. Disconnect the client from the network.
- D. Force a new IP address to the client.
正解:A
解説:
Explanation
Block Period
Enter the number of seconds that you want to block the requests. The valid range is 1-3,600 seconds. The default value is 60 seconds.
This option only takes effect when you choose Period Block in Action.
Note: That's a temporary blacklist so you can manually release them from the blacklist.
質問 # 28
Which three statements about HTTPS on FortiWeb are true? (Choose three.)
- A. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
- B. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.
- C. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
- D. After enabling HSTS, redirects to HTTPS are no longer necessary.
- E. In true transparent mode, the TLS session terminator is a protected web server.
正解:A、C、E
質問 # 29
Refer to the exhibit.
FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)
- A. Configure the IP address as a blacklisted IP address.
- B. If the IP address is configured as an IP reputation exception, remove it.
- C. If the IP address is configured as a geo reputation exception, remove it.
- D. Manually update the geo-location IP addresses for Japan.
正解:A、C
質問 # 30
Review the following configuration:
What is the expected result of this configuration setting?
- A. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
- B. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
- C. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.
- D. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
正解:B
質問 # 31
When integrating FortiWeb and FortiAnalyzer, why is the selection for FortiWeb Version critical? (Choose two)
- A. Defines Log file format
- B. Defines Log storage location
- C. Defines Database Schema
- D. Defines communication protocol
正解:A、B
質問 # 32
Refer to the exhibits.

FortiWeb is configured in reverse proxy mode and it is deployed downstream to FortiGate. Based on the configuration shown in the exhibits, which of the following statements is true?
- A. You must disable the Preserve Client IP setting on FotriGate for this configuration to work.
- B. FortiGate should forward web traffic to virtual server IP address.
- C. FortiGate should forward web traffic to the server pool IP addresses.
- D. The configuration is incorrect. FortiWeb should always be located upstream to FortiGate.
正解:B
質問 # 33
You are using HTTP content routing on FortiWeb. Requests for web app A should be forwarded to a cluster of web servers which all host the same web app. Requests for web app B should be forwarded to a different, single web server.
Which is true about the solution?
- A. Static or policy-based routes are not required.
- B. To achieve HTTP content routing, you must chain policies: the first policy accepts all traffic, and forwards requests for web app A to the virtual server for policy A. It also forwards requests for web app B to the virtual server for policy B. Policy A and Policy B apply their app-specific protection profiles, and then distribute that app's traffic among all members of the server farm.
- C. The server policy applies the same protection profile to all its protected web apps.
- D. You must put the single web server into a server pool in order to use it with HTTP content routing.
正解:B
質問 # 34
Which is true about HTTPS on FortiWeb? (Choose three.)
- A. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.
- B. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.
- C. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.
- D. After enabling HSTS, redirects to HTTPS are no longer necessary.
- E. In true transparent mode, the TLS session terminator is a protected web server.
正解:A、C、E
質問 # 35
......
正真正銘のベスト資料はNSE6_FWB-6.4オンライン練習試験:https://www.passtest.jp/Fortinet/NSE6_FWB-6.4-shiken.html
練習できるNSE6_FWB-6.4にはPassTest画期的なあなたをFortinet NSE 6 - FortiWeb 6.4試験合格させます合格率:https://drive.google.com/open?id=1DoSM25pJRcQeNcoKle2coO7sQxzCZ_mj