Fortinet FCNSA Exam Overview:
| Certification Vendor: | Fortinet |
| Exam Name: | Fortinet Certified Network Security Administrator v5 |
| Exam Number: | FCNSA.v5 |
| Related Certifications: | Fortinet Certified Associate in Cybersecurity (FCAS) NSE 4 FortiOS Administrator |
| Passing Score: | 70% |
| Exam Format: | Multiple Choice, Multiple Select, Scenario-Based |
| Exam Price: | $400 USD |
| Available Languages: | English, Japanese, Simplified Chinese |
| Real Exam Qty: | 50–60 |
| Certificate Validity Period: | 2 years |
| Exam Duration: | 90–120 |
| Recommended Training: | Fortinet Security Fundamentals FortiGate Administrator Self-Paced Course |
| Exam Registration: | Pearson VUE Registration Fortinet Training Institute |
| Sample Questions: | Fortinet FCNSA Sample Questions |
| Exam Way: | In-person at Pearson VUE centers or online proctored |
| Pre Condition: | No mandatory prerequisites; basic networking knowledge recommended |
| Official Syllabus URL: | https://training.fortinet.com/ |
Fortinet FCNSA Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Authentication & Identity Management | 15% | - LDAP/RADIUS integration - SSO & guest access control - Local & remote user authentication |
| VPN Technologies | 15% | - VPN monitoring & troubleshooting - SSL VPN remote access - IPsec site-to-site VPN |
| Security Fabric & FortiOS Basics | 25% | - FortiOS management & navigation - System configuration & monitoring - Fortinet Security Fabric architecture |
| Firewall Policies & Traffic Control | 30% | - Security policy creation & management - Interface & zone setup - NAT & routing configuration |
| Security Profiles & Protection | 15% | - Web filtering & application control - Antivirus & intrusion prevention - Logging, reporting & alerting |
Fortinet fortinet certified network security administrator Sample Questions:
1. Which of the following items represent the minimum configuration steps an administrator must perform to enable Data Leak Prevention for traffic flowing through the FortiGate unit? (Select all that apply.)
A) Define one or more DLP rules.
B) Assign a DLP sensor in a firewall policy.
C) Define a DLP sensor.
D) Enable DLP globally using the config sys dlp command in the CLI.
E) Apply a DLP sensor to a DoS sensor policy.
F) Apply one or more DLP rules to a firewall policy.
2. Because changing the operational mode to Transparent resets device (or vdom) to all defaults, which precautions should an Administrator take prior to performing this? (Select all that apply.)
A) Update IPS and AV files.
B) Set the unit to factory defaults.
C) Backup the configuration.
D) Disconnect redundant cables to ensure the topology will not contain layer 2 loops.
3. FortiGate units are preconfigured with four default protection profiles. These protection profiles are used to control the type of content inspection to be performed.
What action must be taken for one of these profiles to become active?
A) The protection profile must be assigned to a firewall policy.
B) The "Use Protection Profile" option must be selected in the Web Config tool under the sections for AntiVirus, IPS, WebFilter, and AntiSpam.
C) All of the above.
D) The protection profile must be set as the Active Protection Profile.
4. Which of the following statements correctly describes how a push update from the FortiGuard Distribution Network (FDN) works?
A) The FDN sends package updates automatically to the FortiGate unit without requiring an update request.
B) The FDN sends a message to the FortiGate unit that there is an update available and that the FortiGate unit should download the update.
C) The FDN continues to send push updates until the FortiGate unit sends an acknowledgement.
D) The FDN sends push updates only once.
5. Which of the following statements are correct regarding URL Filtering on the FortiGate unit? (Select all that apply.)
A) The FortiGate unit can filter URLs based on patterns using text and regular expressions.
B) The allowed actions for URL Filtering include Allow, Block and Exempt.
C) Any URL accessible by a web browser can be blocked using URL Filtering.
D) The allowed actions for URL Filtering are Allow and Block.
E) Multiple URL Filter lists can be added to a single protection profile.
Solutions:
| Question # 1 Answer: A,B,C | Question # 2 Answer: C,D | Question # 3 Answer: A | Question # 4 Answer: B | Question # 5 Answer: A,B |
We're so confident of our products that we provide no hassle product exchange.


By Murphy

