When configuring a FortiWeb HA (high availability) active-passive cluster, which requirement must be met for proper failover?
A. All units must have unique host names but share the same virtual MAC/IP configuration.
B. Both units must operate in different operation modes.
C. Both members must use different HA priority values with no overlap.
D. Each unit must have a different firmware version.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
A FortiWeb administrator is hardening a customer checkout website.
The site contains sensitive links such as Login, Payment, and Admin, which are embedded in the HTML content of several pages.
A vulnerability scan shows that automated bots can crawl the web pages and easily enumerate these links by parsing the HTML source, even though users access them normally, through the site navigation.
Which FortiWeb feature should the administrator enable to prevent automated scanners from discovering these links?
A. Deep packet inspection
B. Link cloaking
C. URL rewriting
D. URL encryption
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
Which statement best describes the purpose of FortiWeb's "combination access control" rules?
A. They combine multiple individual match conditions (such as source IP, geography, and HTTP header) into a single rule to make more precise access decisions.
B. They merge server pools from separate virtual servers.
C. They combine HA cluster members into a single logical unit.
D. They merge SSL certificates from multiple vendors into one chain.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
In a FortiWeb HA active-active configuration, which statement is accurate?
A. Only one unit processes traffic while the other remains completely idle.
B. All members can process traffic simultaneously, improving throughput while still providing redundancy.
C. Active-active requires manual failover initiated by the administrator.
D. Active-active mode is only supported in transparent bridge mode.
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An administrator needs to deploy FortiWeb so that it is invisible to attackers at the network layer, requires no changes to the existing IP addressing scheme, and does not perform any load balancing. Which operation mode should be used?
A. Reverse proxy
B. Transparent bridge
C. True transparent proxy
D. Offline protection
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 6:
An administrator is troubleshooting why FortiWeb is not decrypting HTTPS traffic for inspection in reverse proxy mode. What is the most likely missing configuration?
A. An HA heartbeat interface
B. A static route to the internet
C. A local certificate and private key bound to the virtual server for SSL offloading
D. A DNS resolver setting
正解:C
質問 7:
Which feature allows FortiWeb to inspect and enforce policy on API traffic that uses JSON or XML payloads, including schema validation?
A. API protection / API gateway features
B. Cookie poisoning detection
C. WCCP mode
D. Web anti-defacement
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
925 お客様のコメント






Fujikawa -
NSE5_FWB_AD-8.0にあまりなじみの無い方でも「知っている言葉」で解説しているので、専門的な内容も無理なく理解することができます。