Fortinet Certified Network Security Professional (FCNSP) - Fortinet Actual Exam Questions
Last updated on April 25, 2026
Refer to the exhibits, which show the system performance output and the default configuration of high memory usage thresholds in a FortiGate. Based on the system performance output, what can be the two possible outcomes? (Choose two.)
FortiGate will start sending all files to FortiSandbox for inspection.
FortiGate has entered conserve mode.
Administrators cannot change the configuration.
Administrators can access FortiGate onlythrough the console port.
to join the discussion
No discussions yet. Be the first to ask!
Delete Comment
Are you sure? This action cannot be undone.
What are two features of collector agent advanced mode? (Choose two.)
In advanced mode, FortiGate can be configured as an LDAP client and group filters can be configured on FortiGate.
Advanced mode supports nested or inherited groups.
In advanced mode, security profiles can be applied only to user groups, not individual users.
Advanced mode uses the Windows convention —NetBios: Domain\Username.
to join the discussion
No discussions yet. Be the first to ask!
Delete Comment
Are you sure? This action cannot be undone.
Refer to the exhibits. The exhibits show a diagram of a FortiGate device connected to the network, as well as the firewall policy and IP pool configuration on the FortiGate device. Two PCs, PC1 and PC2, are connected behind FortiGate and can access the internet successfully. However, when the administrator adds a third PC to the network (PC3), the PC cannot connect to the internet. Based on the information shown in the exhibit, which two configuration options can the administrator use to fix the connectivity issue for PC3? (Choose two.)
In the firewall policy configuration, add 10. o. l. 3 as an address object in the source field.
In the IP pool configuration, set endig to 192.2.0.12.
Configure another firewall policy that matches only the address of PC3 as source, and then place the policy on top of the list.
In the IP pool configuration, set cype to overload.
to join the discussion
No discussions yet. Be the first to ask!
Delete Comment
Are you sure? This action cannot be undone.
Refer to the exhibit to view the firewall policy. Why would the firewall policy not block a well-known virus, for example eicar?
The action on the firewall policy is not set to deny.
The firewall policy is not configured in proxy-based inspection mode.
Web filter is not enabled on the firewall policy to complement the antivirus profile.
The firewall policy does not apply deep content inspection.
to join the discussion
No discussions yet. Be the first to ask!
Delete Comment
Are you sure? This action cannot be undone.
Refer to the exhibit, which shows a partial configuration from the remote authentication server. Why does the FortiGate administrator need this configuration?
To authenticate only the Training user group.
To set up a RADIUS server Secret
To authenticate and match the Training OU on the RADIUS server.
To authenticate Any FortiGate user groups.
to join the discussion
No discussions yet. Be the first to ask!
Delete Comment
Are you sure? This action cannot be undone.
Finish Practice?
Are you sure you want to finish? This will end your practice session.