Labour Day Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Fortinet NSE5_FMG-7.2 Dumps

Fortinet NSE 5 - FortiManager 7.2 Questions and Answers

Question 1

What are two outcomes of ADOM revisions? (Choose two.)

Options:

A.

ADOM revisions can significantly increase the size of the configuration backups.

B.

ADOM revisions can save the current size of the whole ADOM

C.

ADOM revisions can create System Checkpoints for the FortiManager configuration

D.

ADOM revisions can save the current state of all policy packages and objects for an ADOM

Question 2

An administrator run the reload failure command:diagnose test deploymanager reload config

on FortiManager. What does this command do?

Options:

A.

It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.

B.

It installs the latest configuration on the specified FortiGate and update the revision history database.

C.

It compares and provides differences in configuration on FortiManager with the current running

configuration of the specified FortiGate.

D.

It installs the provisioning template configuration on the specified FortiGate.

Question 3

What will happen if FortiAnalyzer features are enabled on FortiManager?

Options:

A.

FortiManager will reboot

B.

FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager

C.

FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices

D.

FortiManager can be used only as a logging device.

Question 4

View the following exhibit, which shows theDownload Import Report:

Why it is failing to import firewall policy ID 2?

Options:

A.

The address object used in policy ID 2 already exist in ADON database with any as interface association and conflicts with address object interface association locally on the FortiGate

B.

Policy ID 2 is configured from interface any to port6 FortiManager rejects to import this policy because any interface does not exist on FortiManager

C.

Policy ID 2 does not have ADOM Interface mapping configured on FortiManager

D.

Policy ID 2 for this managed FortiGate already exists on FortiManager in policy package named Remote-FortiGate.

Question 5

View the following exhibit:

How will FortiManager try to get updates for antivirus and IPS?

Options:

A.

From the list of configured override servers with ability to fall back to public FDN servers

B.

From the configured override server list only

C.

From the default serverfdsl.fortinet.com

D.

From public FDNI server with highest index number only

Question 6

Which configuration setting for FortiGate is part of a device-level database on FortiManager?

Options:

A.

VIP and IP Pools

B.

Firewall policies

C.

Security profiles

D.

Routing

Question 7

Refer to the exhibit.

You are using theQuick Installoption to install configuration changes on the managed FortiGate.

Which two statements correctly describe the result? (Choose two.)

Options:

A.

It will not create a new revision in the revision history

B.

It installs device-level changes to FortiGate without launching theInstall Wizard

C.

It cannot be canceled once initiated and changes will be installed on the managed device

D.

It provides the option to preview configuration changes prior to installing them

Question 8

Refer to the exhibit.

Which statement about the object named ALL is true?

Options:

A.

FortiManager updated the object ALL using the FortiGate value in its database.

B.

FortiManager installed the object ALL with the updated value.

C.

FortiManager created the object ALL as a unique entity in its database, which can be only used by this

managed FortiGate.

D.

FortiManager updated the object ALL using the FortiManager value in its database.

Question 9

An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?

Options:

A.

When creating a new policy package, the administrator can select the option to assign the global policy

package to the new policy package

B.

When a new policy package is created, the administrator needs to reapply the global policy package to

ADOM1.

C.

When a new policy package is created, the administrator must assign the global policy package from the global ADOM.

D.

When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Question 10

An administrator’s PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.

How can the administrator unlock the ADOM?

Options:

A.

Restore the configuration from a previous backup.

B.

Log in asSuper_Userin order to unlock the ADOM.

C.

Log in using the same administrator account to unlock the ADOM.

D.

Delete the previous admin session manually through the FortiManager GUI or CLI.

Question 11

Refer to the exhibit.

Which two statements about an ADOM set inNormalmode on FortiManager are true? (Choose two.)

Options:

A.

It supports the FortiManager script feature

B.

It allows making configuration changes for managed devices on FortiManager panes

C.

FortiManager automatically installs the configuration difference in revisions on the managed FortiGate

D.

You cannot assign the same ADOM to multiple administrators

Question 12

An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the

managed FortiGate.

In which database will the configuration be saved?

Options:

A.

Device-level database

B.

Revision history database

C.

ADOM-level database

D.

Configuration-level database

Question 13

An administrator has enabledService Accesson FortiManager.

What is the purpose ofService Accesson the FortiManager interface?

Options:

A.

Allows FortiManager to download IPS packages

B.

Allows FortiManager to respond to request for FortiGuard services from FortiGate devices

C.

Allows FortiManager to run real-time debugs on the managed devices

D.

Allows FortiManager to automatically configure a default route

Question 14

What will be the result of reverting to a previous revision version in the revision history?

Options:

A.

It will install configuration changes to managed device automatically

B.

It will tag the device settings status asAuto-Update

C.

It will generate a new versionIDand remove all other revision history versions

D.

It will modify the device-level database

Question 15

An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package,Fortinet, in the custom ADOM1.

Which statement about the global policy package assignment to the newly-created policy packageFortinetis true?

Options:

A.

When a new policy package is created, it automatically assigns the global policies to the new package.

B.

When a new policy package is created, you need to assign the global policy package from the global

ADOM.

C.

When a new policy package is created, you need to reapply the global policy package to the ADOM.

D.

When a new policy package is created, you can select the option to assign the global policies to the new package.

Question 16

Refer to the exhibit.

An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.

Which two reasons can explain why the FortiAnalyzer feature panesdo notappear? (Choose two.)

Options:

A.

The administrator logged in using the unsecure protocol HTTP, so the view is restricted.

B.

The administrator profile does not have full access privileges like theSuper_Userprofile.

C.

The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.

D.

FortiAnalyzer features are not enabled on FortiManager.

Question 17

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

Options:

A.

The Security Fabric license, group name and password are required for the FortiManager Security Fabric

integration

B.

TheFabric Viewmodule enables you to generate the Security Fabric ratings for Security Fabric devices

C.

The Security Fabric settings are part of the device level settings

D.

TheFabric Viewmodule enables you to view the Security Fabric ratings for Security Fabric devices

Question 18

What does a policy package status ofConflictindicate?

Options:

A.

The policy package reports inconsistencies and conflicts during aPolicy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Question 19

An administrator has added all the devices in a Security Fabric group to FortiManager.

How does the administrator identify the root FortiGate?

Options:

A.

By a dollar symbol ($) at the end of the device name

B.

By an at symbol (@) at the end of the device name

C.

By a QUESTION NO: mark(?) at the end of the device name

D.

By an Asterisk (*) at the end of the device name

Question 20

An administrator would like to create an SD-WAN using central management. What steps does the

administrator need to perform to create an SD-WAN using central management?

Options:

A.

First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route

B.

You must specify a gateway address when you create a default static route

C.

Remove all the interface references such as routes or policies

D.

Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.

Question 21

Which of the following statements are true regarding reverting to previous revision version from the revision history? (Choose two.)

Options:

A.

To push these changes to a managed device, it required an install operation to the managed FortiGate.

B.

Reverting to a previous revision history will generate a new versionIDand remove all other history

versions.

C.

Reverting to a previous revision history will tag the device settings status asAuto-Update.

D.

It will modify device-level database

Question 22

An administrator is in the process of moving the system template profile between ADOMs by running the following command:

execute improfile import-profile ADOM2 3547 /tmp/myfile

Where does the administrator import the file from?

Options:

A.

File system

B.

ADOM1

C.

ADOM2 object database

D.

ADOM2

Question 23

What will happen if FortiAnalyzer features are enabled on FortiManager?

Options:

A.

FortiManager will keep all the logs and reports on the FortiManager.

B.

FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.

C.

FortiManager will install the logging configuration to the managed devices

D.

FortiManager can be used only as a logging device.

Question 24

Refer to the exhibit.

According to the error message why is FortiManager failing to add the FortiAnalyzer device?

Options:

A.

The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager

B.

The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface

C.

The administrator must use the Add Model Device section and discover the FortiAnalyzer device

D.

The administrator must use the correct user name and password of the FortiAnalyzer device

Question 25

An administrator created a header and footer global policy package and assigned it to an ADOM.

What are two outcomes from this action? (Choose two.)

Options:

A.

You must manually move the header and footer policies after the policy assignment.

B.

After you assign the global policy package to an ADOM, the policy package is hidden from the ADOM and cannot be viewed.

C.

If you assign an additional global policy package to the same ADOM, FortiManaqer removes previously assigned policies.

D.

You can edit or delete all the global objects in the global ADOM.

Question 26

An administrator would like to create an SD-WAN default static route for a newly created SD-WAN using the FortiManager GUI. Both port1 and port2 are part of the SD-WAN member interfaces.

Which interface must the administrator select in the static route device drop-down list?

Options:

A.

port2

B.

virtual-wan-link

C.

port1

D.

auto-discovery