Fortinet® NSE 4: deploying next-generation FortiOS firewalls
Your networks need protection rules that reflect how they are used. Structure Fortinet security configurations and examine traffic to control access more effectively. Strengthen your ability to prepare interventions and address areas requiring attention.
- Duration
- 5 days 35 hours
- Code
- NSE4FR Code
- Certification
- Fortinet Certified Professional (FCP) Certification
Accredited training for the Fortinet Certified Professional (FCP) certification.
Presentation
Organisations deploying next-generation firewalls need administrators who can manage complex network environments, including security policies, authentication, routing, VPNs and content inspection. Fortinet FortiGate is one of the most widely deployed enterprise firewall solutions, and NSE 4 is among the most sought-after cybersecurity certifications.
This 5-day course covers the 5 official Fortinet syllabus domains: deployment and system configuration, firewall policies and authentication, content inspection, routing and VPNs. Each module combines methodological instruction with official Fortinet labs on real FortiGate environments.
By the end of the program, you will be able to administer an enterprise FortiGate environment comprehensively and be ready to take the official Fortinet NSE 4 - FortiGate Administrator exam, included in our offer. It enables you to obtain Fortinet NSE 4 FortiOS certification (see the certification tab for details).
Objectives
By the end of this FortiGate Administrator course, you will be able to:
- perform initial FortiGate deployment, system configuration, Security Fabric and high availability (FGCP) setup, and diagnose common incidents;
- configure IPv4 firewall policies, source and destination NAT, LDAP/RADIUS authentication and Fortinet Single Sign-On (FSSO) integrated with Active Directory;
- implement content inspection using antivirus, web filtering and application control security profiles, as well as SSL inspection of encrypted traffic;
- analyse and configure static routing and SD-WAN architectures to optimise network traffic distribution;
- deploy IPsec and SSL VPNs to secure remote connections and mobile user access;
- prepare for and pass the Fortinet NSE 4 - FortiGate Administrator certification exam.
Program
Module 1: Deploying and configuring the FortiGate environment
- Initial configuration from factory settings and controlling administrator access through the GUI and CLI.
- Security Fabric architecture and integration of FortiGate components into the Fortinet fabric.
- Deploying high availability clusters (FGCP) and diagnosing common incidents.
Practical exercises
- Initialise a FortiGate environment and configure a working HA cluster.
Module 2: Configuring firewall policies and authentication
- IPv4 firewall policies, port forwarding, source NAT and destination NAT.
- LDAP and RADIUS authentication to control users' network access.
- Deploying Fortinet Single Sign-On (FSSO) integrated with Active Directory.
Practical exercises
- Build segmented firewall policies and integrate FSSO authentication with an Active Directory environment.
Module 3: Implementing content inspection
- Antivirus, web filtering and application control security profiles to neutralise threats.
- Certificate management and SSL inspection of encrypted traffic.
- Certificate inspection and full inspection modes to balance performance and visibility.
Practical exercises
- Deploy comprehensive security profiles and enable SSL inspection of HTTPS traffic.
Module 4: Managing routing and SD-WAN architectures
- Static routing, routing tables and load balancing on FortiGate.
- SD-WAN zones, members and rules to orchestrate network traffic distribution.
- Performance SLA checks to dynamically select the best network link.
Practical exercises
- Configure a two-link SD-WAN architecture with a performance SLA rule.
Module 5: Securing remote connections with VPNs
- Route-based IPsec VPNs and site-to-site tunnels between multiple FortiGate devices.
- SSL VPNs in web and tunnel modes for mobile user access.
- Integrating FortiClient to secure remote endpoints.
Practical exercises
- Establish a site-to-site IPsec tunnel and configure SSL VPN access for a mobile user.
Audience
This course is for professionals responsible for deploying and securing network infrastructure, including:
- network and security administrators who configure, deploy and maintain FortiGate firewalls in production;
- systems and network engineers involved in designing VPN, SD-WAN and high availability architectures;
- support technicians responsible for diagnosing and resolving FortiGate incidents;
- cybersecurity consultants seeking certification of their Fortinet firewall skills;
- security and IT leaders, including CISOs and CIOs, seeking an in-depth understanding of their infrastructure's perimeter protection capabilities.
Prerequisites
The following prerequisites apply:
- Technical skills: a command of fundamental network protocols, including TCP/IP, DNS and DHCP, and basic knowledge of firewall concepts.
- Theoretical background: completion of FortiGate Security training or equivalent knowledge of network security fundamentals.
- Language skills: the ability to read and understand English to use the official course materials and take the Fortinet NSE 4 FortiGate Administrator exam.
Teaching and assessment methods
- Initial skills assessment
- Training materials provided to participants
- Continuous assessment throughout the course
- End-of-course feedback questionnaire
- Combination of theory and practical application
- Attendance records
- Post-course follow-up evaluation
- Practical exercises
Course highlights
- Aligned with the official syllabus: content follows the 5 exact domains of the Fortinet NSE 4 FortiGate Administrator exam for focused preparation.
- Practical labs in real environments: work with genuine FortiGate equipment throughout the 5 days to consolidate each technical skill.
- Included certification with progression opportunities: the exam is included in the fee, and NSE 4 provides a foundation for FCSS certifications and NSE 5 specialisations within the Fortinet pathway.
- Stronger employability: gain market-recognised expertise you can apply directly to securing enterprise network infrastructure.
Dates and sessions
Choose the date and delivery format that suit you.
No upcoming sessions are currently available.
Session alerts
Fortinet®, FortiOS®, FortiGate® and FortiAnalyzer® are registered trade marks of Fortinet, Inc. Their use for educational purposes does not constitute an endorsement or partnership.
fr
en