nerdexam
Fortinet

NSE4 · Question #13

Which statements are correct regarding URL filtering on a FortiGate unit? (Choose two.)

The correct answer is A. The allowed actions for URL filtering include allow, block, monitor and exempt. C. URL filters may be based on patterns using simple text, wildcards and regular expressions. FortiGate URL filtering supports actions such as allow, block, monitor, and exempt, and allows for flexible pattern matching using simple text, wildcards, and regular expressions.

Submitted by cyberguy42· Apr 18, 2026Security Profiles and Content Inspection

Question

Which statements are correct regarding URL filtering on a FortiGate unit? (Choose two.)

Options

  • AThe allowed actions for URL filtering include allow, block, monitor and exempt.
  • BThe allowed actions for URL filtering are Allow and Block only.
  • CURL filters may be based on patterns using simple text, wildcards and regular expressions.
  • DURL filters are based on simple text only and require an exact match.

How the community answered

(36 responses)
  • A
    94% (34)
  • B
    3% (1)
  • D
    3% (1)

Why each option

FortiGate URL filtering supports actions such as allow, block, monitor, and exempt, and allows for flexible pattern matching using simple text, wildcards, and regular expressions.

AThe allowed actions for URL filtering include allow, block, monitor and exempt.Correct

FortiGate URL filtering offers multiple actions, including allow to permit access, block to deny access, monitor to log traffic without blocking, and exempt to bypass other web filtering profiles for matching URLs.

BThe allowed actions for URL filtering are Allow and Block only.

This statement is incorrect because URL filtering offers more actions than just Allow and Block, specifically including Monitor and Exempt.

CURL filters may be based on patterns using simple text, wildcards and regular expressions.Correct

URL filters on a FortiGate are highly versatile, enabling administrators to define patterns using literal strings, wildcards (*, ?), and powerful regular expressions to match specific URLs or URL components.

DURL filters are based on simple text only and require an exact match.

This statement is incorrect because FortiGate URL filters support wildcards and regular expressions, not just simple text requiring an exact match.

Concept tested: FortiGate URL filtering actions and pattern matching

Source: https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/209192/url-filtering

Topics

#URL Filtering#Security Profiles#Content Filtering#FortiGate

Community Discussion

No community discussion yet for this question.

Full NSE4 Practice