Special Summer Sale Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

Fortinet FCP_FWB_AD-7.4 FCP - FortiWeb 7.4 Administrator Exam Practice Test

Page: 1 / 4
Total 36 questions

FCP - FortiWeb 7.4 Administrator Questions and Answers

Question 1

Which command will enable debugging for the FortiWeb user tracking feature?

Options:

A.

debug enable user-tracking7

B.

diagnose debug application user-cracking 7

C.

debug application user-cracking 7

D.

diagnose debug enable user-cracking 7

Question 2

Review the following configuration:

Question # 2

What are two routing behaviors that you can expect on FortiWeb after this configuration change? (Choose two.)

Options:

A.

Non-HTTP traffic routed through the FortiWeb is allowed.

B.

IPv6 routing is enabled.

C.

Non-HTTP traffic destined to the FortiWeb virtual server IP address is dropped.

D.

Only ICMP traffic is allowed. All other traffic is dropped.

Question 3

Which would be a reason to implement HTTP rewriting?

Options:

A.

To redirect HTTP to HTTPS.

B.

To implement load balancing.

C.

To replace a vulnerable element in a requested URL.

D.

The original page has moved to a new URL.

Question 4

When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?

Options:

A.

If you are an enterprise whose employees use only mobile devices

B.

If you are a small business or home office

C.

If you are an enterprise whose computers all trust the active directory or CA server that signed the certificate

D.

If you are an enterprise whose resources do not need security or https connections

Question 5

Which implementation is most suited for a deployment that must meet PCI DSS compliance criteria?

Options:

A.

SSL offloading with FortiWeb in reverse proxy mode

B.

SSL offloading with FortiWeb in PCI DSS mode

C.

SSL offloading with FortiWeb in transparency mode

D.

SSL offloading with FortiWeb in full transparent proxy mode

Question 6

Refer to the exhibit.

Question # 6

Attack ID20000010is brute force logins.

Which statement is accurate about the potential attack?

Options:

A.

The attacker has successfully retrieved the credentials to www.example.com.

B.

www.example.com is running attacks against the client 192.168.1.11.

C.

The attack has happened 10 times.

D.

192.168.1.11 is sending suspicious traffic to FortiWeb.

Question 7

Refer to the exhibits.

Question # 7

Question # 7

What will happen when a client attempts a mousedown cross-site scripting (XSS) attack against the sitehttp://my.blog.org/userl1/blog.php and FortiWeb is enforcing the highlighted signature?

Options:

A.

The connection will be stripped of the mousedown JavaScript code.

B.

The connection will be blocked as an XSS attack.

C.

FortiWeb will report the new mousedown attack to FortiGuard.

D.

The connection will be allowed.

Question 8

In which two operating modes can FortiWeb modify HTTP packets? (Choose two.)

Options:

A.

True transparent proxy

B.

Virtual proxy

C.

Transparent inspection

D.

Reverse proxy

Question 9

Which two statements about running a vulnerability scan are true? (Choose two.)

Options:

A.

You should run the vulnerability scan during a maintenance window.

B.

You should run the vulnerability scan multiple times so it can automatically update the scan parameters.

C.

You should run the vulnerability scan in a test environment.

D.

You should run the vulnerability scan on the live website to get accurate results.

Question 10

Which three stages are part of creating a machine learning (ML) bot detection algorithm? (Choose three.)

Options:

A.

Model building

B.

Model running

C.

Model verification

D.

Sample collecting

E.

Model Bayesian analysis

Page: 1 / 4
Total 36 questions