
Fortinet NSE 5 - SD-WAN Core Administrator
The Fortinet NSE 5 - SD-WAN Core Administrator certification validates your ability to deploy, manage, and monitor Fortinet Secure SD-WAN solutions. It is designed for network and security professionals who configure SD-WAN rules, routing, and performance SLAs, and who integrate FortiSASE for secure internet and SaaS access. Earning this credential demonstrates hands-on expertise in SD-WAN operations and troubleshooting.
335 practice questions · Updated 2026-07-30
5Domains
13Objectives
96Concepts
335Questions
NSE5-SD-WAN-CORE-ADMINISTRATOR Curriculum
Every domain, objective, and concept the NSE5-SD-WAN-CORE-ADMINISTRATOR exam measures.
- SD-WAN Definition and Use Cases
- SD-WAN Architecture Components
- Use Case Identification
- DIA Topologies
- DIA Best Practices and Recommended Settings
- SD-WAN Fundamentals and Basic Components
- Basic SD-WAN DIA Setup
- SD-WAN Monitoring and Traffic Distribution
- SD-WAN Member Health Monitoring
- SD-WAN Widgets, Traffic Logs, and Events
- Underlay and overlay links
- SD-WAN member configuration
- SD-WAN zone configuration
- Use cases for members and zones
- SLA targets
- Active and passive monitoring
- SLA configuration
- SLA monitoring
- Member status and performance
- Advanced settings
- Member state change actions
- ICMP probes
- SLA information
- User-defined SD-WAN rules and rule lookup process
- SD-WAN for local-out traffic and implicit SD-WAN rule
- SD-WAN rule status monitoring and strategies
- Rule criteria and traffic matching
- Application steering and learning phases
- Internet services as destination criteria
- Load balancing and best quality strategy with quality metrics
- Lowest cost (SLA) strategy and SLA target maps
- Routing fundamentals
- Key SD-WAN principles
- Policy routes
- Route lookup process
- Member static routes
- Zone static routes
- Member probe routes
- Session tables
- Protocol states
- Common session flags
- Central management basics
- FortiManager integration
- Traditional vs evolving architecture
- Work-from-anywhere challenges
- SASE architecture and components
- FortiSASE provisioning
- Data residency and data sovereignty
- License types
- Agent-based mode
- FortiClient agent deployment
- Secure web gateway (SWG) mode
- Agentless proxy client
- Authentication server configuration
- LDAP remote authentication
- RADIUS remote authentication
- SAML single sign-on (SSO)
- VPN policy configuration
- FortiClient VPN configuration
- FortiSASE integration use cases
- Geofencing
- IP Address Management (IPAM)
- SIA for Agent-Based Remote Users
- SIA for Agentless Remote Users
- SSA Using Inline CASB
- SSA Using FortiCASB
- Security Profiles Overview
- Security Profile Groups
- Certificate Inspection
- SSL Deep Inspection
- Web Filter
- Application Control
- Antivirus
- Data Loss Prevention (DLP)
- Video Filter
- IPS Sensor
- Endpoint profiles
- Endpoint provisioning
- Custom security profile groups
- Antivirus profiles
- FortiGuard categories for web filtering
- FortiView overview
- Using FortiView dashboards
- Logging fundamentals
- SD-WAN log types and subtypes
- Log forwarding configuration
- Log anonymization
- FortiSASE log types and sources
- Reading FortiSASE security logs
- Using FortiSASE feature monitors
- Navigating FortiSASE dashboards
- Configuring external log servers
- Correlating logs for threat detection
- Report types for user traffic
- Report types for security issues
- Purpose and use of each report type
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for NSE5-SD-WAN-CORE-ADMINISTRATOR, so none is invented.