nerdexam
FortinetFortinet

NSE4 · Question #557

NSE4 Question #557: Real Exam Question with Answer & Explanation

The correct answer is A: Application control. The FortiGate IPS engine is responsible for performing application control, flow-based data leak prevention, and flow-based web filtering.

Submitted by packet_pusher· Apr 18, 2026Security Profiles and Content Inspection

Question

What inspections are executed by the IPS engine? (Choose three.)

Options

  • AApplication control
  • BFlow-based data leak prevention
  • CProxy-based antispam
  • DFlow-based web filtering
  • EProxy-based antivirus

Explanation

The FortiGate IPS engine is responsible for performing application control, flow-based data leak prevention, and flow-based web filtering.

Common mistakes.

  • C. Proxy-based antispam inspection operates by acting as a mail transfer agent (MTA) or mail proxy, which is a different engine than the flow-based IPS engine.
  • E. Proxy-based antivirus inspection involves proxying traffic to perform file-level scanning, a function distinct from the primary flow-based IPS engine.

Concept tested. FortiGate IPS engine capabilities

Reference. https://docs.fortinet.com/document/fortigate/7.4.0/administration-guide/86214/security-features

Topics

#IPS engine#Flow-based inspection#Security profiles#Content inspection

Community Discussion

No community discussion yet for this question.

Full NSE4 PracticeBrowse All NSE4 Questions