
FortinetNSE 4 - FortiOS 7.6 Administrator
Domain 5Objective 5
IPsec VPN Issues NSE4-FORTIOS-ADMINISTRATOR Practice Questions (Page 3)
Part of the VPNs domain, which accounts for 10-15% of the NSE4-FORTIOS-ADMINISTRATOR exam. Fortinet does not publish an official question count, but from its 90-minute exam (~35–60 total, ~4–9 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
9concepts
10-15%of the exam
Questions 11–15
- 11
Which FortiOS feature can offload IPsec encryption to hardware to improve throughput?
Select an answer first - 12
What is the purpose of NAT Traversal (NAT-T) in IPsec?
Select an answer first - 13
A site-to-site IPsec tunnel fails to establish. The FortiGate logs show 'no proposal chosen' in phase 1. Both sides are configured with the same encryption and authentication algorithms. What is the most likely cause?
Select an answer first - 14
A FortiGate IPsec tunnel fails to establish. The phase 1 status shows 'negotiation failed'. Which configuration mismatch is a common cause of this failure?
Select an answer first - 15
A site-to-site IPsec tunnel between two FortiGates works when both are on the same LAN, but fails when one side is behind a NAT device. What should the administrator enable on the FortiGate behind the NAT?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE4-FORTIOS-ADMINISTRATOR” is a trademark of its owner, used for identification only.