FortinetFortinet
NSE4 · Question #557
NSE4 Question #557: Real Exam Question with Answer & Explanation
The correct answer is A: Application control. The FortiGate IPS engine is responsible for performing application control, flow-based data leak prevention, and flow-based web filtering.
Submitted by packet_pusher· Apr 18, 2026Security Profiles and Content Inspection
Question
What inspections are executed by the IPS engine? (Choose three.)
Options
- AApplication control
- BFlow-based data leak prevention
- CProxy-based antispam
- DFlow-based web filtering
- EProxy-based antivirus
Explanation
The FortiGate IPS engine is responsible for performing application control, flow-based data leak prevention, and flow-based web filtering.
Common mistakes.
- C. Proxy-based antispam inspection operates by acting as a mail transfer agent (MTA) or mail proxy, which is a different engine than the flow-based IPS engine.
- E. Proxy-based antivirus inspection involves proxying traffic to perform file-level scanning, a function distinct from the primary flow-based IPS engine.
Concept tested. FortiGate IPS engine capabilities
Reference. https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/86214/security-features
Topics
#IPS engine#Flow-based inspection#Security profiles#Content inspection
Community Discussion
No community discussion yet for this question.