Question 6
Which situation best explains when a FortiWeb administrator should enable automatic HTTP-to-HTTPS redirection?
Question 7
A FortiWeb administrator is deciding between using SAML SSO or HTML authentication. They want to minimize the number of credential prompts users receive across multiple Fortinet services.
Which statement accurately describes which option is best, and why?
Question 8
Drag and Drop Question
A FortiWeb administrator is reviewing protection effectiveness after a surge in malicious traffic exposed design flaws and misconfigurations in several web applications.
For each Open Web Application Security Project (OWASP) risk listed, choose the FortiWeb feature that offers the most strategic protection, considering both coverage depth and operational effectiveness.
Match the most appropriate FortiWeb feature to each OWASP issue.
Select each FortiWeb feature in the left column, hold and drag it to the blank space next to the OWASP issue in the column on the right. Once you match a FortiWeb feature to the OWASP issue, you can move it again if you want to change your answer by clicking on the FortiWeb feature. You need to match five FortiWeb features to the OWASP issue in the work area.
Question 9
Which URL should you rewrite to reduce security risk?
Question 10
Which statement best describes the purpose of FortiWeb's "combination access control" rules?

