Spring Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

FCP_FWB_AD-7.4 FCP - FortiWeb 7.4 Administrator Questions and Answers

Questions 4

Which two items can be defined in a FortiWeb XML Protection Rule? (Choose two.)

Options:

A.

API key

B.

IXML Schema

C.

Web protection profile

D.

Request URL

Buy Now
Questions 5

A customer wants to be able to index your websites for search and advertisement purposes.

What is the easiest way to allow this on a FortiWeb?

Options:

A.

Add the indexer IP address to the trusted IP list on the FortiWeb.

B.

Add the indexer IP address to the FortiGuard "Known Search Engines" category.

C.

Create a firewall rule to bypass the FortiWeb entirely for the indexer IP address.

D.

Do not allow any external sites to index your websites.

Buy Now
Questions 6

Which three security features must you configure on FortiWeb to protect API connections? (Choose three.)

Options:

A.

Single sign-on (SSO) authentication with Active Directory (AD)

B.

Machine learning (ML)-based API protection

C.

API schema validation

D.

API user authentication with SAML

E.

API user key enforcement

Buy Now
Questions 7

Which is an example of a cross-site scripting (XSS) attack?

Options:

A.

SELECT username FROM accounts WHERE username='admin';-- ' AND password='password';

B.

< img src="http://badfile/nothere" onerror=alert(document.cookie); >

C.

SELECT username FROM accounts WHERE username='XSS' ' AND password='alert("http://badurl.com")';

D.

< IMG SRC="xss.png" >

Buy Now
Questions 8

Which two statements about running a vulnerability scan are true? (Choose two.)

Options:

A.

You should run the vulnerability scan during a maintenance window.

B.

You should run the vulnerability scan multiple times so it can automatically update the scan parameters.

C.

You should run the vulnerability scan in a test environment.

D.

You should run the vulnerability scan on the live website to get accurate results.

Buy Now
Questions 9

When is it possible to use a self-signed certificate, rather than one purchased from a commercial certificate authority?

Options:

A.

If you are an enterprise whose employees use only mobile devices

B.

If you are a small business or home office

C.

If you are an enterprise whose computers all trust the active directory or CA server that signed the certificate

D.

If you are an enterprise whose resources do not need security or https connections

Buy Now
Questions 10

What are two results of enabling monitor mode on FortiWeb? (Choose two.)

Options:

A.

It does not affect denial-of-service (DoS) protection profile actions to rate limit traffic.

B.

It uses the default action for all profiles and, depending on the configuration, blocks or allows traffic.

C.

It does not affect any HTML rewriting or redirection actions in web protection profiles.

D.

It overrides all usual profile actions. FortiWeb accepts all requests and generates alert email or log messages only for violations.

Buy Now
Exam Code: FCP_FWB_AD-7.4
Exam Name: FCP - FortiWeb 7.4 Administrator
Last Update: Apr 30, 2026
Questions: 36

PDF + Testing Engine

$63.52  $181.49

Testing Engine

$50.57  $144.49
buy now FCP_FWB_AD-7.4 testing engine

PDF (Q&A)

$43.57  $124.49
buy now FCP_FWB_AD-7.4 pdf