Free NSE6_FWB-5.6.0 Exam Braindumps (page: 3)

Page 2 of 8

An e-commerce web app is used by small businesses. Clients often access it from offices behind a router, where clients are on an IPv4 private network LAN. You need to protect the web application from denial of service attacks that use request floods.
What FortiWeb feature should you configure?

  1. Enable "Shared IP" and configure the separate rate limits for requests from NATted source IPs.
  2. Configure FortiWeb to use "X-Forwarded-For:" headers to find each client's private network IP, and to block attacks using that.
  3. Enable SYN cookies.
  4. Configure a server policy that matches requests from shared Internet connections.

Answer(s): C



You've configured an authentication rule with delegation enabled on FortiWeb.
What happens when a user tries to access the web application?

  1. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app
  2. ForitWeb redirects the user to the web app's authentication page
  3. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully
  4. FortiWeb replies with a HTTP challenge of behalf of the server, the if the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app

Answer(s): A



Which of the following FortiWeb features is part of the mitigation tools against OWASP A4 threats?

  1. Sensitive info masking
  2. Poison Cookie detection
  3. Session Management
  4. Brute Force blocking

Answer(s): C



Which implementation is best suited for a deployment that must meet compliance criteria?

  1. SSL Inspection with FortiWeb in Transparency mode
  2. SSL Offloading with FortiWeb in reverse proxy mode
  3. SSL Inspection with FrotiWeb in Reverse Proxy mode
  4. SSL Offloading with FortiWeb in Transparency Mode

Answer(s): C






Post your Comments and Discuss Fortinet NSE6_FWB-5.6.0 exam with other Community members:

NSE6_FWB-5.6.0 Exam Discussions & Posts