Courseiva
Security Profiles →easyMultiple Choice

NSE4 Security Profiles Practice Question

Which of the following best describes the function of FortiGuard web filtering categories?

⚠ Common exam trap

The trap is conflating web filtering categories with other security profiles — candidates often pick 'block specific IPs' or 'quarantine files' because those sound like security functions, but categories are strictly about content classification for access control.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

They categorize websites to allow granular control over access based on content type

FortiGuard web filtering categories are pre-classified buckets (e.g., Social Networking, Malware, Phishing, Streaming Media) that map URLs/domains to content types. Administrators use these categories in web filter profiles to allow, block, monitor, or warn on entire classes of sites, giving granular, policy-driven control without maintaining manual URL lists. This is the core function of the FortiGuard category database.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    They are used to quarantine infected files

    Why it's wrong here

    Quarantining infected files is performed by antivirus (AV) and FortiSandbox engines, not by a web-filtering category database. When FortiGuard web filters categorize a site, they evaluate URL and content type, not file verdicts. Quarantine is an action on a detected malicious object, whereas FortiGuard categories are labels applied to web pages before any file inspection occurs.

  • ✗

    They block specific IP addresses known for hosting malware

    Why it's wrong here

    IP-based blocking of known malware hosts is accomplished through threat intelligence feeds, IP reputation, and botnet C&C lists, not via website categorization. FortiGuard web-filter categories are URL- and content-derived, allowing enforcement at the HTTP/HTTPS request layer based on the requested site's category. Since many IP addresses host benign and malicious content side by side, categorizing domains and their actual content is more precise than blanket IP blocking.

  • ✗

    They provide a list of allowed websites only

    Why it's wrong here

    FortiGuard website categories are not a curated allowlist of sanctioned destinations; they classify the entire web into dozens of categories that include both allowed and blocked types, from 'News' to 'Illegal/Abuse'. Administrators define policy actions per category, such as block, warn, log, or allow, and can also configure overrides for specific users. The category list is neutral — it describes content types, not permission states — so it is fundamentally different from an allowlist.

  • ✓

    They categorize websites to allow granular control over access based on content type

    Why this is correct

    FortiGuard web-filtering categories assign websites to taxonomy classes, such as 'Social Networking', 'Video/Audio', and 'Webmail', based on the site's actual content. This allows FortiGate administrators to construct IPv4/IPv6 firewall policies and proxy policies that permit or deny entire content categories, optionally with per-user or per-time overrides. Because the categorization is content-driven, it enables fine-grained access control that adapts to the constantly changing web rather than relying on a simple list of URLs.

About these practice questions

One of 773 original NSE4 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Fortinet exam blueprint

This NSE4 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE4 exam.