Fortinet NSE6_FWB-6.1 - Fortinet NSE 6 - FortiWeb 6.1 Exam
Page: 2 / 6
Total 30 questions
Question #6 (Topic: Topic 1)
Refer to the exhibit.
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-5_1.png]
Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-5_1.png]
Based on the configuration, what would happen if this FortiWeb were to lose power? (Choose two.)
A. Traffic that passes between port5 and port6 will be inspected.
B. Traffic will be interrupted between port3 and port4.
C. All traffic will be interrupted.
D. Traffic will pass between port5 and port6 uninspected.
Answer: BD
Question #7 (Topic: Topic 1)
Refer to the exhibit.
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-6_1.png]
FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one
particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-6_1.png]
FortiWeb is configured to block traffic from Japan to your web application server. However, in the logs, the administrator is seeing traffic allowed from one
particular IP address which is geo-located in Japan.
What can the administrator do to solve this problem? (Choose two.)
A. Manually update the geo-location IP addresses for Japan.
B. If the IP address is configured as a geo reputation exception, remove it.
C. Configure the IP address as a blacklisted IP address.
D. If the IP address is configured as an IP reputation exception, remove it.
Answer: AC
Question #8 (Topic: Topic 1)
Which algorithm is used to build mathematical models for bot detection?
A. HCM
B. SVN
C. SVM
D. HMM
Answer: C
Question #9 (Topic: Topic 1)
A client is trying to start a session from a page that would normally be accessible only after the client has logged in.
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)
When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)
A. Display an access policy message, then allow the client to continue
B. Redirect the client to the login page
C. Allow the page access, but log the violation
D. Prompt the client to authenticate
E. Reply with a 403 Forbidden HTTP error
Answer: BCE
Question #10 (Topic: Topic 1)
Refer to the exhibit.
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-9_1.jpg]
Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator
has already verified that the current model is accurate.
What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?
[Fortinet-NSE6-FWB-6.1-1.0/xmlfile-9_1.jpg]
Many legitimate users are being identified as bots. FortiWeb bot detection has been configured with the settings shown in the exhibit. The FortiWeb administrator
has already verified that the current model is accurate.
What can the administrator do to fix this problem, making sure that real bots are not allowed through FortiWeb?
A. Change Model Type to Strict
B. Change Action under Action Settings to Alert
C. Disable Dynamically Update Model
D. Enable Bot Confirmation
Answer: D