NSE4 System and Network Administration Practice Question
What is the default administrative account on a FortiGate?
⚠ Common exam trap
Many exam-takers confuse the FortiGate default admin account with the default accounts of other operating systems or network devices, such as 'root' on Linux or 'master' on Cisco, leading them to select the wrong option.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
admin
The default administrative account on a FortiGate is 'admin'. This account is created automatically during the initial boot process and has full super-admin privileges, allowing complete access to the device's configuration and management interfaces. It is the only default account with administrative rights, and its password must be set during initial setup.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
master
Why it's wrong here
The name 'master' is not a default account in FortiOS. FortiGate is configured with only the factory bootstrap account 'admin', and there is no 'master' user created in the local user database. Some switching or wireless equipment uses 'master' as a role, but FortiGate administrative access has no such default identity, so this option is incorrect.
- ✗
root
Why it's wrong here
FortiGate does not have a Unix-style 'root' administrative account. Although the underlying operating system includes Linux-like components, FortiOS handles administrator authentication through its own privilege model, and 'root' is not a valid default username in the local user table. Attempting to log in as 'root' would fail because no such account exists in the default configuration.
- ✗
guest
Why it's wrong here
The 'guest' account is not an administrative identity on FortiGate. FortiOS creates guest users separately for scenarios such as captive portals or guest Wi-Fi, and those accounts are limited to network-access authentication rather than device management. No guest account is provisioned with super_admin or any other administrative privilege, so it cannot be the default admin.
- ✓
admin
Why this is correct
The correct default administrative account is 'admin'. Every FortiGate ships with this local account, which is assigned the 'super_admin' profile and provides full control through the web GUI and CLI. On first login, administrators are required to set a password for the admin account, ensuring the factory state does not remain with an empty secret.
Go deeper
Related to this question
About these practice questions
Courseiva writes every NSE4 question from scratch — 773 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This NSE4 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE4 exam.