- FortiWeb Fundamentals:
- Introduction to FortiWeb and its features
- Understanding web application security threats
- FortiWeb architecture
- Web Application Security:
- HTTP basics
- Common web application vulnerabilities (OWASP Top 10)
- Security controls and techniques (authentication, authorization, etc.)
- FortiWeb Configuration & Management:
- Creating security policies
- Defining virtual servers and profiles
- Utilizing security features (WAF, IPS, bot protection)
- Managing users, roles, and permissions
- Advanced Features (may vary):
- SSL/TLS configuration
- External system integrations (SIEM, logging)
- Automation and scripting
- Security event reporting and analysis
- Additional Topics (may vary):
- Machine learning and bot detection
- DoS and defacement protection
- External SIEM integration
You must understand the topics covered in the following courses, or have equivalent experience:
- FCP – FortiGate Security
- FCP – FortiGate Infrastructure
It is also recommended that you understand the following topics:
- HTTP protocol
- Basic knowledge of HTML, JavaScript, and server-side dynamic page languages, such PHP