PDF問題(2023年最新)実際のFortinet NSE6_FWB-6.4試験問題
問題集返金保証付きのNSE6_FWB-6.4問題集には90%オフされます
質問 25
The FortiWeb machine learning (ML) feature is a two-phase analysis mechanism.
Which two functions does the first layer perform? (Choose two.)
- A. Determines whether traffic is an anomaly, based on observed application traffic over time
- B. Determines if a detected threat is a false-positive or not
- C. Builds a threat model behind every parameter and HTTP method
- D. Determines whether an anomaly is a real attack or just a benign anomaly that should be ignored
正解: A,C
解説:
Explanation
The first layer uses the Hidden Markov Model (HMM) and monitors access to the application and collects data to build a mathematical model behind every parameter and HTTP method.
質問 26
Which
regex expression is the correct format for redirecting the URL http://www.example.com?
- A. www/.example/.com
- B. www.example.com
- C. www\.example\.com
- D. www\example\com
正解: B
解説:
Explanation
\1://www.company.com/\2/\3
質問 27
True transparent proxy mode is best suited for use in which type of environment?
- A. Small office to home office environments
- B. Flexible environments where you can easily change the IP addressing scheme
- C. New networks where infrastructure is not yet defined
- D. Environments where you cannot change the IP addressing scheme
正解: B
解説:
Explanation
"Because blocking is not guaranteed to succeed in offline mode, this mode is best used during the evaluation and planning phase, early in implementation. Reverse proxy is the most popular operating mode. It can rewrite URLs, offload TLS, load balance, and apply NAT. For very large MSSP, true transparent mode has a significant advantage. You can drop it in without changing any schemes of limited IPv4 space-in transparent mode, you don't need to give IP addresses to the network interfaces on FortiWeb."
質問 28
In which scenario might you want to use the compression feature on FortiWeb?
- A. When you want to reduce buffering of video streams
- B. Never, since most traffic today is already highly compressed
- C. When you are offering a music streaming service
- D. When you are serving many corporate road warriors using 4G tablets and phones
正解: D
解説:
Explanation
https://training.fortinet.com/course/view.php?id=3363
When might you want to use the compression feature on FortiWeb? When you are serving many road warriors who are using 4G tablets and phones
質問 29
Which two statements about running a vulnerability scan are true? (Choose two.)
- A. You should run the vulnerability scan on a live website to get accurate results.
- B. Vulnerability scanning increases the load on FortiWeb, so it should be avoided.
- C. You should run the vulnerability scan during a maintenance window.
- D. You should run the vulnerability scan in a test environment.
正解: C,D
解説:
Explanation
Should the Vulnerability Scanner allow it, SVMS will set the scan schedule (or schedules) to run in a maintenance window. SVMS will advise Client of the scanner's ability to complete the scan(s) within the maintenance window.
Vulnerabilities on live web sites. Instead, duplicate the web site and its database in a test environment.
質問 30
In which two operating modes can FortiWeb modify HTTP packets? (Choose two.)
- A. Offline protection
- B. Transparent inspection
- C. Reverse proxy
- D. True transparent proxy
正解: C,D
質問 31
Under which circumstances does FortiWeb use its own certificates? (Choose Two)
- A. Secondary HTTPS connection to server where FortiWeb acts as a client
- B. HTTPS to FortiGate
- C. HTTPS to clients
- D. HTTPS access to GUI
正解: A,D
質問 32
What can an administrator do if a client has been incorrectly period blocked?
- A. Force a new IP address to the client.
- B. Disconnect the client from the network.
- C. Manually release the ID address from the temporary blacklist.
- D. Nothing, it is not possible to override a period block.
正解: C
解説:
Explanation
Block Period
Enter the number of seconds that you want to block the requests. The valid range is 1-3,600 seconds. The default value is 60 seconds.
This option only takes effect when you choose Period Block in Action.
Note: That's a temporary blacklist so you can manually release them from the blacklist.
質問 33
When viewing the attack logs on FortiWeb, which client IP address is shown when you are using XFF header rules?
- A. FortiWeb IP
- B. FortiGate public IP
- C. Client real IP
- D. FortiGate local IP
正解: C
解説:
Explanation
When an XFF header reaches Alteon from a client, Alteon removes all the content from the header and injects the client IP address. Alteon then forwards the header to the server.
質問 34
Refer to the exhibit.
There is only one administrator account configured on FortiWeb. What must an administrator do to restrict any brute force attacks that attempt to gain access to the FortiWeb management GUI?
- A. Change the Access Profile to Read_Only.
- B. Configure IPv4 Trusted Host # 3 with a specific IP address.
- C. The configuration changes must be made on the upstream device.
- D. Delete the built-in administrator user and create a new one.
正解: B
質問 35
FortiWeb offers the same load balancing algorithms as FortiGate.
Which two Layer 7 switch methods does FortiWeb also offer? (Choose two.)
- A. Round robin
- B. HTTP content routes
- C. HTTP session-based round robin
- D. HTTP user-based round robin
正解: A,B
質問 36
What capability can FortiWeb add to your Web App that your Web App may or may not already have?
- A. SSL Inspection
- B. HTTP/HTML Form Authentication
- C. High Availability
- D. Automatic backup and recovery
正解: B
質問 37
What other consideration must you take into account when configuring Defacement protection
- A. Use FortiWeb to block SQL Injections and keep regular backups of the Database
- B. Also incorporate a FortiADC into your network
- C. Configure the FortiGate to perform Anti-Defacement as well
- D. None. FortiWeb completely secures the site against defacement attacks
正解: A
質問 38
Refer to the exhibit.
FortiADC is applying SNAT to all inbound traffic going to the servers. When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address, which belongs to FortiADC. The setup is breaking all connectivity and genuine clients are not able to access the servers.
What must the administrator do to avoid this problem? (Choose two.)
- A. No Special configuration is required; connectivity will be re-established after the set timeout.
- B. Enable the Add X-Forwarded-For setting on FortiWeb.
- C. Place FortiWeb in front of FortiADC.
- D. Enable the Use X-Forwarded-For setting on FortiWeb.
正解: C,D
解説:
Explanation
Configure your load balancer to insert or append to an X-Forwarded-For:, X-Real-IP:, or other HTTP X-header. Also configure FortiWeb to find the original attacker's or client's IP address in that HTTP header
質問 39
Refer to the exhibit.
Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
- A. Traffic will pass between port5 and port6 uninspected.
- B. Traffic that passes between port5 and port6 will be inspected.
- C. All traffic will be interrupted.
- D. Traffic will be interrupted between port3 and port4.
正解: A,D
質問 40
Review the following configuration:
What is the expected result of this configuration setting?
- A. When machine learning (ML) is in its running phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
- B. When machine learning (ML) is in its running phase, FortiWeb will accept a set number of samples from the same source IP address.
- C. When machine learning (ML) is in its collecting phase, FortiWeb will not accept any samples from any source IP addresses.
- D. When machine learning (ML) is in its collecting phase, FortiWeb will accept an unlimited number of samples from the same source IP address.
正解: D
質問 41
......
更新された2023年01月合格させるNSE6_FWB-6.4試験リアル練習テスト問題:https://www.passtest.jp/Fortinet/NSE6_FWB-6.4-shiken.html
あなたを合格させる試験には100%確認済みNSE6_FWB-6.4試験問題:https://drive.google.com/open?id=1lCfcbtqu0latopmX5QaqPoKkoRXYyAC5