Free FCP-FWB-AD-7-4 Fortinet FCP-FWB-AD-7-4 Practice Test Question

Loading demo links...

Showing 1–3 of 4 questions

Question 1 (Topic 1)

Which implementation is most suited for a deployment that must meet PCI DSS compliance criteria?

Select an option, then click Submit answer.

  • SSL offloading with FortiWeb in reverse proxy mode
  • SSL offloading with FortiWeb in PCI DSS mode
  • SSL offloading with FortiWeb in transparency mode
  • SSL offloading with FortiWeb in full transparent proxy mode
Question 2 (Topic 1)

Which two statements about running a vulnerability scan are true? (Choose two.)

Select an option, then click Submit answer.

  • You should run the vulnerability scan during a maintenance window.
  • You should run the vulnerability scan multiple times so it can automatically update the scan parameters.
  • You should run the vulnerability scan in a test environment.
  • You should run the vulnerability scan on the live website to get accurate results.
Question 3 (Topic 1)

Refer to the exhibit. FortiADC is applying SNAT to all inbound traffic going to the servers. When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address, which belongs to FortiADC. This setup is breaking all connectivity and genuine clients are not able to access the servers. What can the administrator do to avoid this problem? (Choose two.)

Select an option, then click Submit answer.

  • Enable and configure the Preserve Client IP setting on the client.
  • No special configuration is required; connectivity will be re-established for all clients after the set timeout.
  • Place FortiWeb in front of FortiADC.
  • Enable and configure the Use X-Forwarded-For setting on FortiWeb.