Fortinet NSE5 Exam Practice Questions (P. 2)
- Full Access (313 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
Which statement is correct regarding virus scanning on a FortiGate unit?
- AVirus scanning is enabled by default.
- BFortinet Customer Support enables virus scanning remotely for you.
- CVirus scanning must be enabled in a UTM security profile and the UTM security profile must be assigned to a firewall policy.
- DEnabling virus scanning in a UTM security profile enables virus scanning for all traffic flowing through the FortiGate device.
Correct Answer:
C
C
send
light_mode
delete
Question #12
Which of the following statements are correct regarding URL filtering on the FortiGate unit? (Select all that apply.)
- AThe allowed actions for URL Filtering include Allow, Block and Exempt.
- BThe allowed actions for URL Filtering are Allow and Block.
- CThe FortiGate unit can filter URLs based on patterns using text and regular expressions.
- DAny URL accessible by a web browser can be blocked using URL Filtering.
- EMultiple URL Filter lists can be added to a single protection profile.
Correct Answer:
AC
AC
send
light_mode
delete
Question #13
Which of the following regular expression patterns will make the terms "confidential data" case insensitive?
- A\[confidential data]
- B/confidential data/i
- Ci/confidential data/
- D"confidential data"
- E/confidential data/c
Correct Answer:
B
B
send
light_mode
delete
Question #14
Which of the following spam filtering methods are supported on the FortiGate unit? (Select all that apply.)
- AIP Address Check
- BOpen Relay Database List (ORDBL)
- CBlack/White List
- DReturn Email DNS Check
- EEmail Checksum Check
Correct Answer:
ABCDE
ABCDE
send
light_mode
delete
Question #15
Which of the following email spam filtering features is NOT supported on a FortiGate unit?
- AMultipurpose Internet Mail Extensions (MIME) Header Check
- BHELO DNS Lookup
- CGreylisting
- DBanned Word
Correct Answer:
C
C
send
light_mode
delete
Question #16
Examine the exhibit shown below; then answer the question following it.

Which of the following statements best describes the green status indicators that appear next to the different FortiGuard Distribution Network services as illustrated in the exhibit?

Which of the following statements best describes the green status indicators that appear next to the different FortiGuard Distribution Network services as illustrated in the exhibit?
- AThey indicate that the FortiGate unit is able to connect to the FortiGuard Distribution Network.
- BThey indicate that the FortiGate unit has the latest updates that are available from the FortiGuard Distribution Network.
- CThey indicate that updates are available and should be downloaded from the FortiGuard Distribution Network to the FortiGate unit.
- DThey indicate that the FortiGate unit is in the process of downloading updates from the FortiGuard Distribution Network.
Correct Answer:
A
A
send
light_mode
delete
Question #17
A FortiGate unit is configured to receive push updates from the FortiGuard Distribution Network, however, updates are not being received.
Which of the following statements are possible reasons for this? (Select all that apply.)
Which of the following statements are possible reasons for this? (Select all that apply.)
- AThe external facing interface of the FortiGate unit is configured to use DHCP.
- BThe FortiGate unit has not been registered.
- CThere is a NAT device between the FortiGate unit and the FortiGuard Distribution Network and no override push IP is configured.
- DThe FortiGate unit is in Transparent mode which does not support push updates.
Correct Answer:
ABC
ABC
send
light_mode
delete
Question #18
Which of the following statements best describes the proxy behavior on a FortiGate unit during an FTP client upload when FTP splice is disabled?
- AThe proxy will not allow a file to be transmitted in multiple streams simultaneously.
- BThe proxy sends the file to the server while simultaneously buffering it.
- CIf the file being scanned is determined to be infected, the proxy deletes it from the server by sending a delete command on behalf of the client.
- DIf the file being scanned is determined to be clean, the proxy terminates the connection and leaves the file on the server.
Correct Answer:
A
A
send
light_mode
delete
Question #19
A firewall policy has been configured for the internal email server to receive email from external parties through SMTP. Exhibits A and B show the antivirus and email filter profiles applied to this policy.
Exhibit A:

Exhibit B:

What is the correct behavior when the email attachment is detected as a virus by the FortiGate antivirus engine?
Exhibit A:

Exhibit B:

What is the correct behavior when the email attachment is detected as a virus by the FortiGate antivirus engine?
- AThe FortiGate unit will remove the infected file and deliver the email with a replacement message to alert the recipient that the original attachment was infected.
- BThe FortiGate unit will reject the infected email and the sender will receive a failed delivery message.
- CThe FortiGate unit will remove the infected file and add a replacement message. Both sender and recipient are notified that the infected file has been removed.
- DThe FortiGate unit will reject the infected email and notify the sender.
Correct Answer:
B
B
send
light_mode
delete
Question #20
Which email filter is NOT available on a FortiGate device?
- ASender IP reputation database.
- BURLs included in the body of known SPAM messages.
- CEmail addresses included in the body of known SPAM messages.
- DSpam object checksums.
- ESpam grey listing.
Correct Answer:
E
E
send
light_mode
delete
All Pages