nerdexam
FortinetFortinet

NSE4 · Question #327

NSE4 Question #327: Real Exam Question with Answer & Explanation

The correct answer is C: Proxy-based antivirus. Security Processors (SPs) on FortiGate devices accelerate specific security inspection features, including proxy-based antivirus, attack signature matching, and flow-based web filtering.

Submitted by tunde_lagos· Apr 18, 2026Security Profiles and Content Inspection

Question

Which traffic inspection features can be executed by a security processor (SP)? (Choose three.)

Options

  • ATCP SYN proxy
  • BSIP session helper
  • CProxy-based antivirus
  • DAttack signature matching
  • EFlow-based web filtering

Explanation

Security Processors (SPs) on FortiGate devices accelerate specific security inspection features, including proxy-based antivirus, attack signature matching, and flow-based web filtering.

Common mistakes.

  • A. TCP SYN proxy is a session helper feature handled by the main CPU, not specifically by security processors for acceleration.
  • B. SIP session helper is an application layer gateway (ALG) function, typically processed by the main CPU to manage VoIP traffic, not directly by SPs.

Concept tested. FortiGate Security Processor (SP) accelerated features

Reference. https://docs.fortinet.com/document/fortigate/7.4.0/hardware-acceleration/208581/overview-of-fortigate-soc4-and-soc5-features

Topics

#Security Processors#Hardware acceleration#Content inspection#FortiGate architecture

Community Discussion

No community discussion yet for this question.

Full NSE4 PracticeBrowse All NSE4 Questions