Available Number of Questions: Maximum of
36 Questions
Exam Name: FCP - FortiWeb 7.4 Administrator
Exam Duration: 65 Minutes
Related Certification(s):
Fortinet Certified Professional, Fortinet FCP Fortinet Certified Professional Public Cloud Security Certifications
Fortinet FCP_FWB_AD-7.4 Exam Topics - You’ll Be Tested in Actual Exam
Four topic areas shape the Fortinet FCP - FortiWeb 7.4 Administrator exam, spanning deployment fundamentals all the way to intelligent threat detection. Candidates start by mastering deployment and configuration, which sets the operational foundation for everything else. Getting FortiWeb placed correctly in a network matters enormously. Without proper configuration, no downstream security control performs reliably. From there, the exam moves into encryption, authentication, and compliance, which govern how traffic is inspected and how access gets controlled. TLS offloading, certificate management, and regulatory alignment all fall within this domain. These controls don't exist in isolation. They work alongside web application security, the topic area where candidates learn to defend against injection attacks, cross-site scripting, and other application-layer threats. FortiWeb's signature-based detection, bot mitigation, and access control policies all belong here. What distinguishes the FCP - FortiWeb 7.4 Administrator exam from many other web application firewall certifications is its dedicated focus on machine learning. ML-based threat detection allows FortiWeb to build behavioral models of normal traffic. Anomalies get flagged without relying solely on static signatures. That distinction matters in production environments where attack patterns shift constantly. Candidates who underestimate the machine learning domain often struggle with scenario-based questions. The ML topic area consistently draws the most attention in this exam, both in terms of depth and the number of applied questions candidates should expect to encounter.
Fortinet FCP_FWB_AD-7.4 Exam Short Quiz
Attempt this Fortinet FCP_FWB_AD-7.4 exam quiz to self-assess your preparation for the actual Fortinet FCP - FortiWeb 7.4 Administrator exam. CertBoosters also provides premium Fortinet FCP_FWB_AD-7.4 exam questions to pass the Fortinet FCP - FortiWeb 7.4 Administrator exam in the shortest possible time. Be sure to try our free practice exam software for the Fortinet FCP_FWB_AD-7.4 exam.
What are two routing behaviors that you can expect on FortiWeb after this configuration change? (Choose two.)
☐
ANon-HTTP traffic routed through the FortiWeb is allowed.
☐
BIPv6 routing is enabled.
☐
CNon-HTTP traffic destined to the FortiWeb virtual server IP address is dropped.
☐
DOnly ICMP traffic is allowed. All other traffic is dropped.
FortinetFCP_FWB_AD-7.4
Q2:
Refer to the exhibit.
What are two additional configuration elements that you must be configure for this API gateway? (Choose two.)
☐
AYou must define rate limits.
☐
BYou must define URL prefixes.
☐
CYou must select a setting in the Allow User Group field.
☐
DYou must enable and configure Host Status.
FortinetFCP_FWB_AD-7.4
Q3:
Refer to the exhibit.
FortiADC is applying SNAT to all inbound traffic going to the servers.
When an attack occurs, FortiWeb blocks traffic based on the 192.0.2.1 source IP address, which belongs to FortiADC. This setup is breaking all connectivity and genuine clients are not able to access the servers.
What can the administrator do to avoid this problem? (Choose two.)
☐
AEnable and configure the Preserve Client IP setting on the client.
☐
BNo special configuration is required; connectivity will be re-established for all clients after the set timeout.
☐
CPlace FortiWeb in front of FortiADC.
☐
DEnable and configure the Use X-Forwarded-For setting on FortiWeb.
FortinetFCP_FWB_AD-7.4
Q4:
Which three stages are part of creating a machine learning (ML) bot detection algorithm? (Choose three.)
☐
AModel building
☐
BModel running
☐
CModel verification
☐
DSample collecting
☐
EModel Bayesian analysis
FortinetFCP_FWB_AD-7.4
Q5:
What are two results of enabling monitor mode on FortiWeb? (Choose two.)
☐
AIt does not affect denial-of-service (DoS) protection profile actions to rate limit traffic.
☐
BIt uses the default action for all profiles and, depending on the configuration, blocks or allows traffic.
☐
CIt does not affect any HTML rewriting or redirection actions in web protection profiles.
☐
DIt overrides all usual profile actions. FortiWeb accepts all requests and generates alert email or log messages only for violations.