About the Exam

This retired exam evaluated the ability to diagnose and troubleshoot Fortinet network security solutions in enterprise FortiGate environments. It was intended for networking and security professionals responsible for administering and supporting FortiGate-based security infrastructures. Passing it demonstrated advanced support, troubleshooting, and operational skills for Fortinet network security deployments.

Exam Topics

  • Network Security Support Engineer0–100%

How to Use This Practice Exam

  1. Browse — Read each question, select your answer, and reveal the explanation.
  2. Exam Mode — Simulate real exam conditions with a timed session and score report.
  3. Learn Mode — Spaced repetition schedules questions you struggle with for long-term retention.

Download the Full Exam PDF

Get every question and answer in a clean, printable PDF built for offline study. Purchase once, keep permanent access, and re-download the latest version anytime.

Last updated July 4, 2026 at 2:04 PM

Topic filter
Retired questions
Question sort

QuestionQ1

Network Security Support Engineer

Refer to the exhibit, which displays the modified routing-kernel output.

Question Image

Which statement is correct?

  • A The BGP route to 10.0.4.0/24 is not in the forwarding information base.
  • B The default static route through port2 is in the forwarding information base.
  • C The default static route through 10.200.1.254 is not in the forwarding information base.
  • D The egress interface associated with static route 8.8.8.8/32 is administratively up.
Explanation

For 10.0.4.0/24, the OSPF route is marked *>, indicating that it is selected and installed in the forwarding information base (FIB). The BGP route to the same prefix has no * marker, so it is not in the FIB. Fortinet defines > as the selected route and * as a FIB route.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ2

Network Security Support Engineer

Refer to the exhibit showing the output of diagnose sys session stat.

Question Image

Which statement regarding the output displayed in the exhibit is correct?

  • A All the sessions in the session table are TCP sessions.
  • B 162 sessions have been deleted because of memory page exhaustion.
  • C There are 166 TCP sessions waiting to complete the three-way handshake.
  • D There are two sessions that have not been removed in case of any out-of- order packets that arrive.
Explanation

Two TCP sessions are in the TIME-WAIT state. TCP retains a connection in TIME-WAIT temporarily after it closes so delayed or out-of-order packets from that connection can be handled safely before the session is removed.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ3

Network Security Support Engineer

Refer to the exhibit showing the output of get router info bgp neighbors 100.64.2.254 advertised-routes.

Question Image

What conclusion can be drawn from the output?

  • A The BGP neighbor is advertising the 10.20.30.40/24 network to the local router.
  • B The router ID of the neighbor is 100.64.2.254.
  • C The BGP state of the two BGP participants is OpenConfirm.
  • D The local router is advertising the 10.20.30.40/24 network to its BGP neighbor.
Explanation

advertised-routes displays the prefixes the local FortiGate advertises to the specified BGP neighbor. Because 10.20.30.40/24 is the sole listed prefix for neighbor 100.64.2.254, the local router is advertising that network to the neighbor. Fortinet documentation distinguishes this command from received-routes, which displays routes learned from the neighbor.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ4

Network Security Support Engineer

Refer to the exhibit, which displays the output of get router info bgp summary.

Question Image

Which two statements are correct?

Choose two
  • A The local FortiGate has received one prefix from BGP neighbor 100.64.1.254.
  • B The TCP connection with BGP neighbor 100.64.2.254 was successful.
  • C The local FortiGate has received 18 packets from a BGP neighbor.
  • D The local FortiGate is still calculating the prefixes received from the BGP neighbor 100.64.2.254.
Explanation

A numeric value in the State/PfxRcd field represents the number of prefixes received from an established BGP neighbor; therefore, the value 1 for 100.64.1.254 indicates one received prefix. The MsgRcvd value for that neighbor is 18, indicating 18 received BGP messages. Active is a BGP session state, not an established TCP connection or prefix-calculation state.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ5

Network Security Support Engineer

Refer to the exhibit showing output from a BGP debug command.

Question Image

What can be concluded about the router in this scenario?

  • A The router 100.64.3.1 needs to update the local AS number in its BGP configuration in order to bring up the BGP session with the local router.
  • B An inbound route-map on local router is blocking the prefixes from neighbor 100.64.3.1.
  • C All of the neighbors displayed are part of a single BGP configuration on the local router with the neighbor-range set to a value of 4.
  • D The BGP session with peer 10.127.0.75 is up.
Explanation

A numeric value in the State/PfxRcd field indicates that the BGP peering is established and shows the number of prefixes received. Peer 10.127.0.75 has an uptime of 02:45:55 and has received one prefix, so its BGP session is up.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!
Know a question that should be here? Contribute to this exam
Back home