Courseiva
Enterprise Firewall and VDOMsmediumMatchingObjective-mapped

NSE7 Enterprise Firewall and VDOMs Practice Question

Match each Fortinet security feature to its primary function.

Drag a concept onto its matching description — or click a concept then click the description.

Concepts
Matches

Detects and prevents network attacks

Identifies and controls application traffic

Blocks access to malicious or unwanted websites

Scans and removes malware from traffic

Prevents sensitive data from leaving the network

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

IPS: Inspects traffic for malicious patterns and exploits

Fortinet security features have distinct functions: IPS inspects network traffic for exploits, Application Control identifies applications, Web Filtering controls web access, and Antivirus scans for malware. Common confusions involve swapping these roles.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • IPS: Inspects traffic for malicious patterns and exploits

    Why this is correct

    IPS uses signatures and anomaly detection to identify and block network attacks.

  • Application Control: Identifies and controls application traffic regardless of port

    Why this is correct

    Application Control uses signatures to recognize applications even on non-standard ports.

  • Web Filtering: Blocks access to malicious or non-compliant websites

    Why this is correct

    Web Filtering uses URL categories and reputation to enforce web access policies.

  • Antivirus: Scans files and content for malware

    Why this is correct

    Antivirus uses signature and heuristics to detect known and unknown malware.

  • IPS: Scans files and content for malware

    Why it's wrong here

    Incorrect — this describes Antivirus, not IPS. IPS focuses on network-level threats.

  • Application Control: Blocks access to malicious websites

    Why it's wrong here

    Incorrect — this describes Web Filtering. Application Control manages application usage, not URLs.

Visual reference

Source Router + ACL permit 10.0.0.0/8 deny any Server 10.0.0.5 ✓ 192.168.1.1 ✗ dropped ACLs evaluate top-down; first match wins — implicit deny all at end

About these practice questions

This NSE7 question is part of Courseiva's 940-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.