Câu 7: NSE5_FWB_AD-8.0: Fortinet NSE 5 - FortiWeb 8.0 Administrator
A third-party penetration test reveals that users can bypass login controls through a mobile API. Your current FortiWeb configuration includes zero trust network access (ZTNA) profiles and cookie security, but API protection and client management are not enabled. The security team asks you to recommend the most effect…
Nội dung câu hỏi
A third-party penetration test reveals that users can bypass login controls through a mobile API. Your current FortiWeb configuration includes zero trust network access (ZTNA) profiles and cookie security, but API protection and client management are not enabled. The security team asks you to recommend the most effective way to close this gap. Which FortiWeb adjustment would best prevent future unauthorized API access?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Switch to a reverse-proxy mode to bypass cookie-based controls.
- B. Enable API protection and client management to enforce identity checks on mobile API traffic. — đáp án hiện tại
- C. Log only API traffic and rely on FortiAnalyzer for future alerts.
- D. Replace ZTNA with bot protection to reduce false positives.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.