Exam Details

  • Exam Code
    :NSE6_FWB-6.4
  • Exam Name
    :Fortinet NSE 6 - FortiWeb 6.4
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :56 Q&As
  • Last Updated
    :Jul 03, 2025

Fortinet Fortinet Certifications NSE6_FWB-6.4 Questions & Answers

  • Question 21:

    Which regex expression is the correct format for redirecting the URL http://www.example.com?

    A. www\.example\.com

    B. www.example.com

    C. www\example\com

    D. www/.example/.com

  • Question 22:

    Which of the following would be a reason for implementing rewrites?

    A. Page has been moved to a new URL

    B. Page has been moved to a new IP address

    C. Replace vulnerable functions.

    D. Send connection to secure channel

  • Question 23:

    When generating a protection configuration from an auto learning report what critical step must you do before generating the final protection configuration?

    A. Restart the FortiWeb to clear the caches

    B. Drill down in the report to correct any false positives.

    C. Activate the report to create t profile

    D. Take the FortiWeb offline to apply the profile

  • Question 24:

    When FortiWeb triggers a redirect action, which two HTTP codes does it send to the client to inform the browser of the new URL? (Choose two.)

    A. 403

    B. 302

    C. 301

    D. 404

  • Question 25:

    Which is true about HTTPS on FortiWeb? (Choose three.)

    A. For SNI, you select the certificate that FortiWeb will present in the server pool, not in the server policy.

    B. After enabling HSTS, redirects to HTTPS are no longer necessary.

    C. In true transparent mode, the TLS session terminator is a protected web server.

    D. Enabling RC4 protects against the BEAST attack, but is not recommended if you configure FortiWeb to only offer TLS 1.2.

    E. In transparent inspection mode, you select which certificate that FortiWeb will present in the server pool, not in the server policy.

  • Question 26:

    What key factor must be considered when setting brute force rate limiting and blocking?

    A. A single client contacting multiple resources

    B. Multiple clients sharing a single Internet connection

    C. Multiple clients from geographically diverse locations

    D. Multiple clients connecting to multiple resources

  • Question 27:

    What role does FortiWeb play in ensuring PCI DSS compliance?

    A. PCI specifically requires a WAF

    B. Provides credit card processing capabilities

    C. Provide ability to securely process cash transactions

    D. Provides load balancing between multiple web servers

  • Question 28:

    In Reverse proxy mode, how does FortiWeb handle traffic that does not match any defined policies?

    A. Non-matching traffic is allowed

    B. non-Matching traffic is held in buffer

    C. Non-matching traffic is Denied

    D. Non-matching traffic is rerouted to FortiGate

  • Question 29:

    What role does FortiWeb play in ensuring PCI DSS compliance?

    A. It provides the ability to securely process cash transactions.

    B. It provides the required SQL server protection.

    C. It provides the WAF required by PCI.

    D. It provides credit card processing capabilities.

  • Question 30:

    You've configured an authentication rule with delegation enabled on FortiWeb. What happens when a user tries to access the web application?

    A. FrotiWeb redirects users to a FortiAuthenticator page, then if the user authenticates successfully, FortiGate signals to FortiWeb to allow access to the web app

    B. ForitWeb redirects the user to the web app's authentication page

    C. FortiWeb forwards the HTTP challenge from the server to the client, then monitors the reply, allowing access if the user authenticates successfully

    D. FortiWeb replies with a HTTP challenge of behalf of the server, the if the user authenticates successfully, FortiWeb allows the request and also includes credentials in the request that it forwards to the web app

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE6_FWB-6.4 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.