NSE4 Security Profiles Practice Question
A user reports that a legitimate website is being blocked by FortiGate web filtering. The administrator checks and finds that the URL category is 'Unrated'. What is the most likely cause?
⚠ Common exam trap
Watch out — candidates often confuse the 'Unrated' category with a configuration setting (like blocking unrated sites) or a network issue (like DNS failure), rather than recognizing it as a FortiGuard rating status indicating the site has not yet been classified.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The website is new and not yet categorized by FortiGuard.
When a website is categorized as 'Unrated' in FortiGate web filtering, it means FortiGuard's web filtering database has not yet assigned a category to that URL. This commonly occurs for newly registered or recently launched websites that have not been crawled and classified by FortiGuard's rating infrastructure. The correct answer is B because the 'Unrated' status directly indicates the site is new and not yet categorized.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The DNS server is not resolving the domain.
Why it's wrong here
A DNS resolution failure prevents the browser from ever reaching the server: there is no HTTP request for FortiGate to inspect, so FortiGuard web filtering cannot trigger a block. Instead, the user would see a browser-level 'server not found' or 'DNS cannot resolve' error, which is a connectivity failure, not an HTTP-level content-blocking event. FortiGuard's URL filtering operates after successful DNS resolution and connection establishment, so this option explains a different symptom and is not the cause of a web-filtering block.
- ✓
The website is new and not yet categorized by FortiGuard.
Why this is correct
FortiGuard classifies websites by continuously crawling and categorizing the public internet, but a brand-new domain or newly launched website may not yet have an entry in the FortiGuard rating database. When FortiGate receives a request for such a site, it returns a rating of 'Unrated', and the security policy's handling of the Unrated category determines whether the URL is allowed or blocked. Since no category has been assigned, the site is blocked not because it is malicious or inappropriate, but simply because it has not yet been reviewed — this is the well-known false-positive scenario for newly registered domains.
- ✗
The web filter is configured to block all unrated sites.
Why it's wrong here
This is a valid administrative condition that could cause a block, but it is only a contributing factor, not the root cause. The question asks why a legitimate site is blocked, and the fundamental reason is the site's categorization state, not the web-filter policy. A FortiGate policy that blocks all Unrated sites is simply applying the default action for unknown URLs; without the absence of a FortiGuard category, that policy setting would not produce a block. This answer mistakes the policy behavior for the underlying reason, so it fails to explain why the site is unrated in the first place.
- ✗
The website is in the 'Blocked' category.
Why it's wrong here
FortiGuard uses category names such as 'Malicious Websites', 'Pornography', or 'Gambling' rather than a generic 'Blocked' category; blocking is the action applied to a category, not a category itself. If the site were categorized in a blocked category, the FortiGate's URL filter log and block page would show that specific category name, proving a known, negative classification. Here, the issue is that the site has no category at all and is being treated as 'Unrated', which is a fundamentally different situation from a site that has been reviewed and formally categorized as dangerous.
Go deeper
Related to this question
About these practice questions
Courseiva writes every NSE4 question from scratch — 773 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This NSE4 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE4 exam.