Free NSE6_FWB-6.4 Exam Braindumps (page: 6)

Page 5 of 15

What must you do with your FortiWeb logs to ensure PCI DSS compliance?

  1. Store in an off-site location
  2. Erase them every two weeks
  3. Enable masking of sensitive data
  4. Compress them into a .zip file format

Answer(s): C


Reference:

https://docplayer.net/8466775-Fortiweb-web-application-firewall-ensuring-compliance- for-pci-dss-requirement-6-6-solution-guide.html



What role does FortiWeb play in ensuring PCI DSS compliance?

  1. It provides the ability to securely process cash transactions.
  2. It provides the required SQL server protection.
  3. It provides the WAF required by PCI.
  4. It provides credit card processing capabilities.

Answer(s): C



Refer to the exhibit.



There is only one administrator account configured on FortiWeb.
What must an administrator do to restrict any brute force attacks that attempt to gain access to the FortiWeb management GUI?

  1. Delete the built-in administrator user and create a new one.
  2. Configure IPv4 Trusted Host # 3 with a specific IP address.
  3. The configuration changes must be made on the upstream device.
  4. Change the Access Profile to Read_Only.

Answer(s): B


Reference:

https://docs.fortinet.com/document/fortiweb/6.1.1/administration- guide/397469/preventing-brute-force-logins



What key factor must be considered when setting brute force rate limiting and blocking?

  1. A single client contacting multiple resources
  2. Multiple clients sharing a single Internet connection
  3. Multiple clients from geographically diverse locations
  4. Multiple clients connecting to multiple resources

Answer(s): B

Explanation:

https://training.fortinet.com/course/view.php?id=3363 What is one key factor that you must consider when setting brute force rate limiting and blocking? Multiple clients sharing a single Internet connection






Post your Comments and Discuss Fortinet NSE6_FWB-6.4 exam with other Community members:

NSE6_FWB-6.4 Discussions & Posts