Download FCP - FortiWeb 7.4 Administrator.FCP_FWB_AD-7.4.ExamTopics.2025-08-03.23q.vcex

Vendor: Fortinet
Exam Code: FCP_FWB_AD-7.4
Exam Name: FCP - FortiWeb 7.4 Administrator
Date: Aug 03, 2025
File Size: 1 MB

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

Demo Questions

Question 1
Which implementation is most suited for a deployment that must meet PCI DSS compliance criteria?
  1. SSL offloading with FortiWeb in reverse proxy mode
  2. SSL offloading with FortiWeb in PCI DSS mode
  3. SSL offloading with FortiWeb in transparency mode
  4. SSL offloading with FortiWeb in full transparent proxy mode
Correct answer: B
Explanation:
A: 2 - Mosted
A: 2 - Mosted
Question 2
Review the following configuration:
What are two routing behaviors that you can expect on FortiWeb after this configuration change? (Choose two.)
  1. Non-HTTP traffic routed through the FortiWeb is allowed.
  2. IPv6 routing is enabled.
  3. Non-HTTP traffic destined to the FortiWeb virtual server IP address is dropped.
  4. Only ICMP traffic is allowed. All other traffic is dropped.
Correct answer: AC
Explanation:
AC: 1 - Mosted
AC: 1 - Mosted
Question 3
An attacker attempts to send an SQL injection attack containing the known attack string 'root'; -- through an API call.
Which FortiWeb inspection feature will be able to detect this attack the quickest?
  1. API gateway rule
  2. Known signatures
  3. Machine learning (ML)-based API protection—anomaly detection
  4. ML-based API protection—threat detection
Correct answer: B
Explanation:
B: 1 - Mosted
B: 1 - Mosted
Question 4
Refer to the exhibit.
What are two additional configuration elements that you must be configure for this API gateway? (Choose two.)
  1. You must define rate limits.
  2. You must define URL prefixes.
  3. You must select a setting in the Allow User Group field.
  4. You must enable and configure Host Status.
Correct answer: AB
Explanation:
AB: 1 - Mosted
AB: 1 - Mosted
Question 5
Which would be a reason to implement HTTP rewriting?
  1. To redirect HTTP to HTTPS.
  2. To implement load balancing.
  3. To replace a vulnerable element in a requested URL.
  4. The original page has moved to a new URL.
Correct answer: C
Explanation:
C: 1 - Mosted
C: 1 - Mosted
Question 6
What is the difference between an API gateway protection schema and a machine learning (ML) API protection schema?
  1. An API gateway protection schema does not allow authentication.
  2. An API gateway protection schema handles response bodies.
  3. An API gateway protection schema supports data types other than string.
  4. An API gateway protection schema cannot change without administrator intervention.
Correct answer: D
Explanation:
D: 1 - Mosted
D: 1 - Mosted
Question 7
Refer to the exhibits.
What will happen when a client attempts a mousedown cross-site scripting (XSS) attack against the site http://my.blog.org/userl1/blog.php and FortiWeb is enforcing the highlighted signature?
  1. The connection will be stripped of the mousedown JavaScript code.
  2. The connection will be blocked as an XSS attack.
  3. FortiWeb will report the new mousedown attack to FortiGuard.
  4. The connection will be allowed.
Correct answer: D
Explanation:
D: 1 - Mosted
D: 1 - Mosted
Question 8
Which high availability mode is commonly used to integrate with a traffic distributer like FortiADC?
  1. Cold standby
  2. Load sharing
  3. Active-Active
  4. Active-Passive
Correct answer: C
Explanation:
C: 1 - Mosted
C: 1 - Mosted
Question 9
Which three stages are part of creating a machine learning (ML) bot detection algorithm? (Choose three.)
  1. Model building
  2. Model running
  3. Model verification
  4. Sample collecting
  5. Model Bayesian analysis
Correct answer: ACD
Explanation:
ABD: 2 - MostedACD: 2
ABD: 2 - MostedACD: 2
Question 10
Which two objects are required to configure a server policy in reverse proxy mode without content routing? (Choose two.)
  1. Site publishing
  2. Protected hostname
  3. Virtual server
  4. Server pool
Correct answer: BC
Explanation:
CD: 1
CD: 1
Question 11
Refer to the exhibit.
A FortiWeb device is deployed upstream of a device performing source network address translation (SNAT) or load balancing.
What configuration must you perform on FortiWeb to preserve the original IP address of the client?
  1. Enable and configure the Preserve Client IP setting.
  2. Use a transparent operating mode on FortiWeb.
  3. Enable and configure the Add X-Forwarded-For setting.
  4. Turn off NAT on the FortiWeb.
Correct answer: A
Explanation:
C: 2
C: 2
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX FILES

Use ProfExam Simulator to open VCEX files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!