
FortinetNSE 4 - FortiOS 7.6 Administrator
Domain 5Objective 5
IPsec VPN Issues NSE4-FORTIOS-ADMINISTRATOR Practice Questions (Page 4)
Part of the VPNs domain, which accounts for 10-15% of the NSE4-FORTIOS-ADMINISTRATOR exam. Fortinet does not publish an official question count, but from its 90-minute exam (~35–60 total, ~4–9 in this domain), expect 1–2 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
9concepts
10-15%of the exam
Questions 16–20
- 16
An IPsec tunnel fails to establish with an authentication error. What is the most likely cause?
Select an answer first - 17
When using certificate-based authentication for IPsec, what must be valid on both peers for authentication to succeed?
Select an answer first - 18
A site-to-site IPsec tunnel between two FortiGates is configured with DPD enabled. The tunnel goes down, but the FortiGate does not detect the peer as dead for several minutes, causing traffic to be black-holed. The administrator wants faster detection. What should they do?
Select an answer first - 19
Which of the following factors can degrade IPsec tunnel throughput?
Select an answer first - 20
A remote user's IPsec VPN client cannot establish a tunnel to the FortiGate. The user is on a network that uses NAT. The FortiGate logs show phase 1 negotiation failures. What should the administrator check?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE4-FORTIOS-ADMINISTRATOR” is a trademark of its owner, used for identification only.