Courseiva
System and Network AdministrationmediumMultiple ChoiceObjective-mapped

FortiGate Aggregate Interface for Link Aggregation

An administrator wants to aggregate two physical interfaces (port1 and port2) on a FortiGate to increase bandwidth and provide redundancy. Which interface type should be created?

Quick Answer

The correct choice is to create an aggregate interface. On a FortiGate, an aggregate interface—also known as a Link Aggregation Group (LAG)—combines multiple physical ports like port1 and port2 into a single logical link, which directly increases bandwidth and provides link-level redundancy by distributing traffic across the member interfaces. This configuration supports either static aggregation or the IEEE 802.3ad standard with LACP, ensuring that if one physical link fails, traffic seamlessly shifts to the remaining active ports. On the Fortinet NSE 4 Network Security Professional exam, this concept tests your understanding of interface types and high-availability design; a common trap is confusing an aggregate interface with a software switch or VLAN interface, which do not provide the same load-balancing or failover behavior. Remember the key distinction: aggregate interfaces bundle links for throughput and redundancy, while software switches bridge traffic at Layer 2. A helpful memory tip is “LAG for load and link guard”—aggregate interfaces handle both bandwidth scaling and physical link protection.

⚠ Common exam trap

Many candidates confuse a software switch interface with link aggregation, but a software switch simply bridges ports at Layer 2 without the load-balancing and failover mechanisms of an aggregate interface.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Aggregate interface

An aggregate interface (also known as a Link Aggregation Group or LAG) combines multiple physical interfaces into a single logical link, increasing bandwidth and providing redundancy. This is the correct choice because it directly supports the administrator's goal of aggregating port1 and port2 on a FortiGate, using the IEEE 802.3ad standard (LACP) or static aggregation.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Aggregate interface

    Why this is correct

    Aggregate interfaces (LAG) provide increased bandwidth and redundancy.

  • Loopback interface

    Why it's wrong here

    Loopback is a virtual interface for internal addressing.

  • VLAN interface

    Why it's wrong here

    VLAN interfaces are for 802.1Q tagging, not link aggregation.

  • Software switch interface

    Why it's wrong here

    Soft switch is for bridging multiple interfaces at Layer 2.

About these practice questions

This NSE4 question is part of Courseiva's 282-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

Same concept, more angles

1 more way this is tested on NSE4

These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.

Variation 1. A FortiGate administrator needs to configure a VLAN interface and an aggregate interface. Which THREE statements are correct regarding these interface types?

hard
  • A.Aggregate interfaces require at least one physical member to be up.
  • B.Aggregate interfaces are only supported in NAT/Route mode.
  • C.VLAN interfaces cannot be used in transparent mode.
  • D.VLAN interfaces can be created on aggregate interfaces.
  • E.VLAN interfaces can have their own IP address and firewall policies.

Why A: An aggregate interface (LAG) requires at least one physical member port to be administratively and operationally up for the aggregate itself to be considered up. If all member ports are down, the aggregate interface goes down, which is a fundamental behavior of link aggregation groups (LAGs) per IEEE 802.3ad.

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE4 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE4 exam.