Special Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

FCP_FWB_AD-7.4 Exam Dumps - Fortinet Public Cloud Security Questions and Answers

Question # 4

An administrator notices multiple IP addresses attempting to log in to an application frequently, within a short time period. They suspect attackers are attempting to guess user passwords for a secure application.

What is the best way to limit this type of attack on FortiWeb, while still allowing legitimate traffic through?

Options:

A.

Blocklist any suspected IPs.

B.

Configure a brute force login custom policy.

C.

Rate limit all connections from suspected IP addresses.

D.

Block the IP address at the border router.

Buy Now
Question # 5

Refer to the exhibit.

A FortiWeb device is deployed upstream of a device performing source network address translation (SNAT) or load balancing.

What configuration must you perform on FortiWeb to preserve the original IP address of the client?

Options:

A.

Enable and configure the Preserve Client IP setting.

B.

Use a transparent operatingmode on FortiWeb.

C.

Enable and configure the Add X-Forwarded-For setting.

D.

Turn off NAT on the FortiWeb.

Buy Now
Question # 6

Under which two circumstances does FortiWeb use its own certificates? (Choose two.)

Options:

A.

Connecting to browser clients using SSL

B.

Making a secondary HTTPS connection to a server where FortiWeb acts as a client

C.

Routing an HTTPS connection to a FortiGate

D.

An administrator session connecting to the GUI using HTTPS

Buy Now
Question # 7

Which implementation is most suited for a deployment that must meet PCI DSS compliance criteria?

Options:

A.

SSL offloading with FortiWeb in reverse proxy mode

B.

SSL offloading with FortiWeb in PCI DSS mode

C.

SSL offloading with FortiWeb in transparency mode

D.

SSL offloading with FortiWeb in full transparent proxy mode

Buy Now
Question # 8

Which Layer 7 routing method does FortiWeb support?

Options:

A.

URL policy routing

B.

OSPF

C.

BGP

D.

HTTPcontent routing

Buy Now
Question # 9

Which high availability mode is commonly used to integrate with a traffic distributer like FortiADC?

Options:

A.

Cold standby

B.

Load sharing

C.

Active-Active

D.

Active-Passive

Buy Now
Question # 10

Which is an example of a cross-site scripting (XSS) attack?

Options:

A.

SELECT username FROM accounts WHERE username='admin';-- ' AND password='password';

B.

C.

SELECT username FROM accounts WHERE username='XSS' ' AND password='alert("http://badurl.com")';

D.

Buy Now
Question # 11

Refer to the exhibit.

What can you conclude from this support vector machine (SVM) plot of a potential bot connection?

Options:

A.

The connection is normal and within the expected averages.

B.

The connection uses too much bandwidth.

C.

The connection uses an excessive amount of TCP connections, but is harmless.

D.

The connection is possibly a bot.

Buy Now
Question # 12

What are two results of enabling monitor mode on FortiWeb? (Choose two.)

Options:

A.

It does not affect denial-of-service (DoS) protection profile actions to rate limit traffic.

B.

It uses the default action for all profiles and, depending on the configuration, blocks or allows traffic.

C.

It does not affect any HTML rewriting or redirection actions in web protection profiles.

D.

It overrides all usual profile actions. FortiWeb accepts all requests and generates alert email or log messages only for violations.

Buy Now
Question # 13

How are bot machine learning (ML) models different from API or anomaly detection models?

Options:

A.

Bot ML models analyze multiple connections overtime instead analyzing each connection as a single unit.

B.

Bot ML models detect only anomalies and not actual threats.

C.

Bot ML models inspect more types of connection properties.

D.

Bot ML models do not update models periodically from new data.

Buy Now
Exam Code: FCP_FWB_AD-7.4
Exam Name: FCP - FortiWeb 7.4 Administrator
Last Update: Mar 31, 2025
Questions: 36
FCP_FWB_AD-7.4 pdf

FCP_FWB_AD-7.4 PDF

$25.5  $84.99
FCP_FWB_AD-7.4 Engine

FCP_FWB_AD-7.4 Testing Engine

$28.5  $94.99
FCP_FWB_AD-7.4 PDF + Engine

FCP_FWB_AD-7.4 PDF + Testing Engine

$40.5  $134.99