Winter Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

Hot Vendors

NSE5_FMG-7.2 Fortinet NSE 5 - FortiManager 7.2 Questions and Answers

Questions 4

An administrator wants to delete an address object that is currently referenced in a firewall policy.

What can the administrator expect to happen?

Options:

A.

FortiManager will not allow the administrator to delete a referenced address object

B.

FortiManager will disable the status of the referenced firewall policy

C.

FortiManager will replace the deleted address object with the none address object in the referenced

firewall policy

D.

FortiManager will replace the deleted address object with all address object in the referenced firewall policy

Buy Now
Questions 5

View the following exhibit.

NSE5_FMG-7.2 Question 5

What is the purpose of setting ADOM Mode to Advanced?

Options:

A.

The setting allows automatic updates to the policy package configuration for a managed device

B.

The setting enables the ADOMs feature on FortiManager

C.

This setting allows you to assign different VDOMs from the same FortiGate to different ADOMs.

D.

The setting disables concurrent ADOM access and adds ADOM locking

Buy Now
Questions 6

Refer to the exhibit.

NSE5_FMG-7.2 Question 6

Which two statements about the output are true? (Choose two.)

Options:

A.

The latest revision history for the managed FortiGate does match with the FortiGate running configuration

B.

Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed

C.

The latest history for the managed FortiGate does not match with the device-level database

D.

Configuration changes directly made on the FortiGate have been automatically updated to device-level

database

Buy Now
Questions 7

An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.

Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

Options:

A.

When a new policy package is created, it automatically assigns the global policies to the new package.

B.

When a new policy package is created, you need to assign the global policy package from the global

ADOM.

C.

When a new policy package is created, you need to reapply the global policy package to the ADOM.

D.

When a new policy package is created, you can select the option to assign the global policies to the new package.

Buy Now
Questions 8

An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the

managed FortiGate.

In which database will the configuration be saved?

Options:

A.

Device-level database

B.

Revision history database

C.

ADOM-level database

D.

Configuration-level database

Buy Now
Questions 9

What will be the result of reverting to a previous revision version in the revision history?

Options:

A.

It will install configuration changes to managed device automatically

B.

It will tag the device settings status as Auto-Update

C.

It will generate a new version ID and remove all other revision history versions

D.

It will modify the device-level database

Buy Now
Questions 10

Which two statements regarding device management on FortiManager are true? (Choose two.)

Options:

A.

FortiGate devices in HA cluster devices are counted as a single device.

B.

FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.

C.

FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.

D.

The maximum number of managed devices for each ADOM is 500.

Buy Now
Questions 11

Refer to the exhibit.

NSE5_FMG-7.2 Question 11

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

Options:

A.

It allows two or more administrators to make configuration changes at the same time, in the same ADOM.

B.

It disables concurrent read-write access to an ADOM.

C.

It allows the same administrator to lock more than one ADOM at the same time.

D.

It is used to validate administrator login attempts through external servers.

Buy Now
Questions 12

What does a policy package status of Conflict indicate?

Options:

A.

The policy package reports inconsistencies and conflicts during a Policy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Buy Now
Questions 13

Refer to the exhibit.

NSE5_FMG-7.2 Question 13

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.

What is the purpose of this command?

Options:

A.

It allows FortiGate to unset central management settings.

B.

It allows FortiGate to reboot and recover the previous configuration from its configuration file.

C.

It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.

D.

It allows FortiGate to reboot and restore a previously working firmware image.

Buy Now
Questions 14

What is the purpose of ADOM revisions?

Options:

A.

To create System Checkpoints for the FortiManager configuration.

B.

To save the current state of the whole ADOM.

C.

To save the current state of all policy packages and objects for an ADOM.

D.

To revert individual policy packages and device-level settings for a managed FortiGate by reverting to a specific ADOM revision

Buy Now
Questions 15

Refer to the exhibit.

NSE5_FMG-7.2 Question 15

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

Options:

A.

It supports the FortiManager script feature

B.

It allows making configuration changes for managed devices on FortiManager panes

C.

FortiManager automatically installs the configuration difference in revisions on the managed FortiGate

D.

You cannot assign the same ADOM to multiple administrators

Buy Now
Questions 16

Which two items are included in the FortiManager backup? (Choose two.)

Options:

A.

FortiGuard database

B.

Global database

C.

Logs

D.

All devices

Buy Now
Questions 17

What does a policy package status of Modified indicate?

Options:

A.

FortiManager is unable to determine the policy package status

B.

The policy package was never imported after a device was registered on FortiManager

C.

The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

D.

The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

Buy Now
Questions 18

An administrator would like to authorize a newly-installed AP using AP Manager. What steps does the administrator need to perform to authorize an AP?

Options:

A.

Authorize the new AP using AP Manager and wait until the change is updated on the FortiAP. Changes to the AP's state do not require installation.

B.

Changes to the AP's state must be performed directly on the managed FortiGate.

C.

Authorize the new AP using AP Manager and install the policy package changes on the managed FortiGate.

D.

Authorize the new AP using AP Manager and install the device level settings on the managed FortiGate.

Buy Now
Questions 19

View the following exhibit.

NSE5_FMG-7.2 Question 19

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

Options:

A.

10.0.1.0/24

B.

It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values

C.

192.168.0.1/24

D.

Local-FortiGate will automatically choose an IP Network based on its network interface settings.

Buy Now
Questions 20

Refer to the exhibit.

NSE5_FMG-7.2 Question 20

What can you conclude from the failed installation log shown in the exhibit?

Options:

A.

Policy ID 2 will not be installed.

B.

Policy ID 2 is installed in the disabled state.

C.

Policy ID 2 is installed without a source address.

D.

Policy ID 2 is installed without the remote user student.

Buy Now
Questions 21

Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

Options:

A.

When FortiManager is auto-updated with configuration changes made directly on a managed device

B.

When changes to the device-level database are made on FortiManager

C.

When FortiManager installs device-level changes on a managed device

D.

When a configuration revision is reverted to a previous revision in the revision history

Buy Now
Questions 22

An administrator has enabled Service Access on FortiManager. What is the purpose of Service Access on the FortiManager interface?

Options:

A.

It allows FortiManager to respond to requests for FortiGuard services from FortiGate devices.

B.

It allows FortiManager to determine the connection status of managed devices.

C.

It allows administrative access to FortiManager.

D.

It allows third-party applications to gain read/write access to FortiManager.

Buy Now
Questions 23

Refer to the exhibit.

NSE5_FMG-7.2 Question 23

An administrator would like to create three ADOMs on FortiManager with different access levels based on departments.

What two conclusions can you draw from the design shown in the exhibit? (Choose two.)

Options:

A.

Admin A can access VDOM2 and VDOM3 with the super user profile.

B.

The FortiManager policies and objects database can be shared between the Financial and HR ADOMs.

C.

The administrator must set the FortiManager ADOM mode to Advanced.

D.

The administrator must configure FortiManager in workspace mode.

Buy Now
Questions 24

What does a policy package status of Never Installed indicate?

Options:

A.

The policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager.

B.

FortiManager is unable to determine the policy package status.

C.

The policy configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

D.

The policy package was never imported after a device was registered on FortiManager

Buy Now
Questions 25

Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

Options:

A.

Backs up all devices and the FortiGuard database.

B.

Does not back up firmware images saved on FortiManager

C.

Supports FTP, SCP, and SFTP

D.

Can be configured from the CLI and GUI

Buy Now
Questions 26

Refer to the exhibit.

NSE5_FMG-7.2 Question 26

An administrator is about to add the FortiGate device to FortiManager using the discovery process FortiManager is operating behind a NAT device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings

What is the expected result?

Options:

A.

During discovery FortiManager sets trie FortiManager NATed IP address on FortiGate

B.

During discovery FortiManager sets both tie FortiManager NATed IP address and NAT device IP address on FortiGate

C.

During discovery FortiManager sets the NATed device IP address on FortiGate

D.

During discovery FortiManager uses only the FortiGate serial number to establish the connection

Buy Now
Questions 27

View the following exhibit.

NSE5_FMG-7.2 Question 27

If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)

Options:

A.

FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

B.

FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on

FortiGate under central management.

C.

During discovery, the FortiManager NATed IP address is not set by default on FortiGate.

D.

If the FCFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.

Buy Now
Questions 28

When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

Options:

A.

After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.

B.

FortiManager will revert and install a previous configuration revision on the managed FortiGate.

C.

FortiGate will reject the CLI commands that will cause the tunnel to go down.

D.

FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.

Buy Now
Questions 29

View the following exhibit:

NSE5_FMG-7.2 Question 29

How will FortiManager try to get updates for antivirus and IPS?

Options:

A.

From the list of configured override servers with ability to fall back to public FDN servers

B.

From the configured override server list only

C.

From the default server fdsl.fortinet.com

D.

From public FDNI server with highest index number only

Buy Now
Questions 30

View the following exhibit:

NSE5_FMG-7.2 Question 30

Which two statements are true if the script is executed using the Remote FortiGate Directly (via CLI) option? (Choose two.)

Options:

A.

You must install these changes using Install Wizard

B.

FortiGate will auto-update the FortiManager’s device-level database.

C.

FortiManager will create a new revision history.

D.

FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.

Buy Now
Exam Code: NSE5_FMG-7.2
Exam Name: Fortinet NSE 5 - FortiManager 7.2
Last Update: Nov 21, 2024
Questions: 101

PDF + Testing Engine

$56  $159.99

Testing Engine

$42  $119.99
buy now NSE5_FMG-7.2 testing engine

PDF (Q&A)

$35  $99.99
buy now NSE5_FMG-7.2 pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 21 Nov 2024