Exam Details

  • Exam Code
    :NSE6_FWB-6.1
  • Exam Name
    :Fortinet NSE 6 - FortiWeb 6.1
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :30 Q&As
  • Last Updated
    :Jun 13, 2025

Fortinet Fortinet Certifications NSE6_FWB-6.1 Questions & Answers

  • Question 21:

    What is one of the key benefits of the FortiGuard IP Reputation feature?

    A. FortiGuard maintains a list of public IPs with a bad reputation for participating in attacks.

    B. It is updated once per year

    C. Provides a Document of IP addresses that are suspect, so that administrators can manually update their blacklists

    D. It maintains a list of private IP addresses

  • Question 22:

    You are deploying FortiWeb 6.0 in an Amazon Web Services cloud. Which 2 lines of this initial setup via CLI are incorrect? (Choose two.)

    A. 6

    B. 9

    C. 3

    D. 2

  • Question 23:

    When viewing the attack logs on your FortiWeb, which IP Address is shown for the client when using XFF Header rules?

    A. FortiGate's public IP

    B. FortiGate's local IP

    C. FortiWeb's IP

    D. Client's real IP

  • Question 24:

    Which is true about HTTPS on FortiWeb? (Choose three.)

    A. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.

    B. After enabling HSTS, redirects to HTTPS are no longer necessary.

    C. In true transparent mode, the TLS session terminator is a protected web server.

    D. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.

    E. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.

  • Question 25:

    Which of the following would be a reason for implementing rewrites?

    A. Page has been moved to a new URL

    B. Page has been moved to a new IP address

    C. Replace vulnerable functions.

    D. Send connection to secure channel

  • Question 26:

    A client is trying to start a session from a page that should normally be accessible only after they have

    logged in.

    When a start page rule detects the invalid session access, what can FortiWeb do? (Choose three.)

    A. Reply with a "403 Forbidden" HTTP error

    B. Allow the page access, but log the violation

    C. Automatically redirect the client to the login page

    D. Display an access policy message, then allow the client to continue, redirecting them to their requested page

    E. Prompt the client to authenticate

  • Question 27:

    How does an ADOM differ from a VDOM?

    A. ADOMs do not have virtual networking

    B. ADOMs improve performance by offloading some functions.

    C. ADOMs only affect specific functions, and do not provide full separation like VDOMs do.

    D. Allows you to have 1 administrator for multiple tenants

  • Question 28:

    You are configuring FortiAnalyzer to store logs from FortiWeb. Which is true?

    A. FortiAnalyzer will store antivirus and DLP archives from FortiWeb.

    B. You must enable ADOMs on FortiAnalyzer.

    C. To store logs from FortiWeb 6.0, on FortiAnalyzer, you must select "FrotiWeb 5.4".

    D. FortiWeb will query FortiAnalyzer for reports, instead of generating them locally.

  • Question 29:

    When generating a protection configuration from an auto learning report what critical step must you do before generating the final protection configuration?

    A. Restart the FortiWeb to clear the caches

    B. Drill down in the report to correct any false positives.

    C. Activate the report to create t profile

    D. Take the FortiWeb offline to apply the profile

  • Question 30:

    What can an administrator do if a client has been incorrectly Period Blocked?

    A. Disconnect the client from the network

    B. Manually release the IP from the temporary Blacklist

    C. Nothing, it is not possible to override a Period Block

    D. Force a new IP address to the client.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE6_FWB-6.1 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.