CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 13: NSE5_FWB_AD-8.0: Fortinet NSE 5 - FortiWeb 8.0 Administrator

Refer to the exhibit. You have deployed FortiWeb behind a FortiGate that is configured as a reverse proxy and inserts the X-Forwarded-For HTTP header when forwarding HTTP and HTTPS traffic.FortiWeb is using a custom inline protection profile, and logging is enabled, as shown in the exhibit. You notice that FortiWeb is…

Nội dung câu hỏi

Refer to the exhibit. You have deployed FortiWeb behind a FortiGate that is configured as a reverse proxy and inserts the X-Forwarded-For HTTP header when forwarding HTTP and HTTPS traffic.FortiWeb is using a custom inline protection profile, and logging is enabled, as shown in the exhibit. You notice that FortiWeb is blocking legitimate users, and all requests in the attack logs appear to come from the FortiGate IP address, not the original client IP addresses. Which action should you take to fix this issue?

Minh họa câu hỏi

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Modify the protection profile to use the X-Forwarded-For header for client IP address detection. — đáp án hiện tại
  2. B. Replace the current deployment mode with a one-arm proxy to expose source IP addresses.
  3. C. Recreate the server policy using the predefined profile instead of a custom one.
  4. D. Disable IP-based detection features on FortiWeb to avoid IP-related blocking.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề