Official Bank 0/47

Fortinet Certified Network Security Professional (FCNSP v4.0) (FCNSP) - Fortinet Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
47 Total Questions
1
Question
Refer to the exhibit.

Which statement about this firewall policy list is true?
Options
A The Implicit group can include more than one deny firewall policy.
B The firewall policies are listed by ID sequence view.
C LAN to WAN. WAN to LAN. and Implicit are sequence grouping view lists.
D The firewall policies are listed by ingress and egress interfaces pairing view.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
An administrator configures FortiGuard servers as DNS servers on FortiGate using default settings.

What is true about the DNS connection to a FortiGuard server?
Options
A It uses UDP 8888.
B It uses DNS over HTTPS.
C It uses UDP 53.
D It uses DNS over TLS.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Which statement is a characteristic of automation stitches?
Options
A They can be run only on devices in the Security Fabric.
B They can be created only on downstream devices in the fabric.
C They can run multiple actions at the same time.
D They can have one or more triggers.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Refer to the exhibit. FortiGate is configured for firewall authentication. When attempting to access an external website, the user is not presented with a login prompt.

What is the most likely reason for this situation?
Options
A The Service DNS is required in the firewall policy.
B The user is using an incorrect user name.
C No matching user account exists for this user.
D The Remote-users group is not added to the Destination.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
Which inspection mode does FortiGate use for application profiles if it is configured as a profile- based next-generation firewall (NGFW)?
Options
A Full content inspection
B Proxy-based inspection
C Flow-based inspection
D Certificate inspection
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.