Labour Day Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: geek65

NSE5_FMG-7.2 Fortinet NSE 5 - FortiManager 7.2 Questions and Answers

Questions 4

In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator sent a device registration to FortiManager from a remote FortiGate. Which one of the following statements is true?

Options:

A.

The FortiGate will be added automatically to the default ADOM named FortiGate.

B.

The FortiGate will be automatically added to the Training ADOM.

C.

By default, the unregistered FortiGate will appear in the root ADOM.

D.

The FortiManager administrator must add the unregistered device manually to the unregistered device

manually to the Training ADOM using the Add Device wizard

Buy Now
Questions 5

An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message.

Which troubleshooting step should you take to resolve the issue?

Options:

A.

Make sure FortiManager Access is enabled in the administrator profile

B.

Make sure Offline Mode is disabled

C.

Make sure the administrator IP address is part of the trusted hosts.

D.

Make sure ADOMs are enabled and the administrator has access to the Global ADOM

Buy Now
Questions 6

Which two items does an FGFM keepalive message include? (Choose two.)

Options:

A.

FortiGate uptime

B.

FortiGate license information

C.

FortiGate IPS version

D.

FortiGate configuration checksum

Buy Now
Questions 7

View the following exhibit, which shows the Download Import Report:

Why it is failing to import firewall policy ID 2?

Options:

A.

The address object used in policy ID 2 already exist in ADON database with any as interface association and conflicts with address object interface association locally on the FortiGate

B.

Policy ID 2 is configured from interface any to port6 FortiManager rejects to import this policy because any interface does not exist on FortiManager

C.

Policy ID 2 does not have ADOM Interface mapping configured on FortiManager

D.

Policy ID 2 for this managed FortiGate already exists on FortiManager in policy package named Remote-FortiGate.

Buy Now
Questions 8

View the following exhibit.

Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?

Options:

A.

The Install On column value represents successful installation on the managed devices

B.

Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets

C.

Policy seq#3 will be installed on the Trainer[NAT] VDOM only

D.

Policy seq#3 will be not installed on any managed device

Buy Now
Questions 9

Refer to the exhibit.

Which statement about the object named ALL is true?

Options:

A.

FortiManager updated the object ALL using the FortiGate value in its database.

B.

FortiManager installed the object ALL with the updated value.

C.

FortiManager created the object ALL as a unique entity in its database, which can be only used by this

managed FortiGate.

D.

FortiManager updated the object ALL using the FortiManager value in its database.

Buy Now
Questions 10

What will be the result of reverting to a previous revision version in the revision history?

Options:

A.

It will install configuration changes to managed device automatically

B.

It will tag the device settings status as Auto-Update

C.

It will generate a new version ID and remove all other revision history versions

D.

It will modify the device-level database

Buy Now
Questions 11

Which two items are included in the FortiManager backup? (Choose two.)

Options:

A.

FortiGuard database

B.

Global database

C.

Logs

D.

All devices

Buy Now
Questions 12

What does a policy package status of Conflict indicate?

Options:

A.

The policy package reports inconsistencies and conflicts during a Policy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Buy Now
Questions 13

An administrator’s PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.

How can the administrator unlock the ADOM?

Options:

A.

Restore the configuration from a previous backup.

B.

Log in as Super_User in order to unlock the ADOM.

C.

Log in using the same administrator account to unlock the ADOM.

D.

Delete the previous admin session manually through the FortiManager GUI or CLI.

Buy Now
Questions 14

Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

Options:

A.

You must install these changes using the Install Wizard to a managed device

B.

The successful execution of a script on the Device Database will create a new revision history

C.

The script history will show successful installation of the script on the remote FortiGate

D.

The Device Settings Status will be tagged as Modified

Buy Now
Questions 15

Which two statements regarding device management on FortiManager are true? (Choose two.)

Options:

A.

FortiGate devices in HA cluster devices are counted as a single device.

B.

FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.

C.

FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.

D.

The maximum number of managed devices for each ADOM is 500.

Buy Now
Questions 16

An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.

Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

Options:

A.

When a new policy package is created, it automatically assigns the global policies to the new package.

B.

When a new policy package is created, you need to assign the global policy package from the global

ADOM.

C.

When a new policy package is created, you need to reapply the global policy package to the ADOM.

D.

When a new policy package is created, you can select the option to assign the global policies to the new package.

Buy Now
Questions 17

Refer to the exhibit.

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

Options:

A.

It supports the FortiManager script feature

B.

It allows making configuration changes for managed devices on FortiManager panes

C.

FortiManager automatically installs the configuration difference in revisions on the managed FortiGate

D.

You cannot assign the same ADOM to multiple administrators

Buy Now
Questions 18

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

Options:

A.

The Security Fabric license, group name and password are required for the FortiManager Security Fabric

integration

B.

The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices

C.

The Security Fabric settings are part of the device level settings

D.

The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices

Buy Now
Questions 19

An administrator is replacing a device on FortiManager by running the following command:

execute device replace sn .

What device name and serial number must the administrator use?

Options:

A.

Device name and serial number of the original device.

B.

Device name and serial number of the replacement device.

C.

Device name of the replacement device and serial number of the original device.

D.

Device name of the original device and serial number of the replacement device.

Buy Now
Questions 20

An administrator would like to create an SD-WAN default static route for a newly created SD-WAN using the FortiManager GUI. Both port1 and port2 are part of the SD-WAN member interfaces.

Which interface must the administrator select in the static route device drop-down list?

Options:

A.

port2

B.

virtual-wan-link

C.

port1

D.

auto-discovery

Buy Now
Questions 21

Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

Options:

A.

Backs up all devices and the FortiGuard database.

B.

Does not back up firmware images saved on FortiManager

C.

Supports FTP, SCP, and SFTP

D.

Can be configured from the CLI and GUI

Buy Now
Questions 22

Refer to the exhibit.

A junior administrator is troubleshooting a FortiManager connectivity issue that rs occurring with managed FortiGate devices

Given the FortiManager device manager settings shown in the exhibit what can you conclude from the exhibit?

Options:

A.

The administrator had restored the FortiManager configuration file

B.

The administrator must refresh both devices to restore connectivity

C.

FortiManager test internet connectivity therefore, both devices appear to be down

D.

The administrator can reclaim the FGFM tunnel to get both devices online

Buy Now
Questions 23

An administrator is in the process of moving the system template profile between ADOMs by running the following command:

execute improfile import-profile ADOM2 3547 /tmp/myfile

Where does the administrator import the file from?

Options:

A.

File system

B.

ADOM1

C.

ADOM2 object database

D.

ADOM2

Buy Now
Questions 24

View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

Options:

A.

Once initiated, the install process cannot be canceled and changes will be installed on the managed device

B.

Will not create new revision in the revision history

C.

Installs device-level changes to FortiGate without launching the Install Wizard

D.

Provides the option to preview configuration changes prior to installing them

Buy Now
Questions 25

Which of the following statements are true regarding reverting to previous revision version from the revision history? (Choose two.)

Options:

A.

To push these changes to a managed device, it required an install operation to the managed FortiGate.

B.

Reverting to a previous revision history will generate a new version ID and remove all other history

versions.

C.

Reverting to a previous revision history will tag the device settings status as Auto-Update.

D.

It will modify device-level database

Buy Now
Questions 26

Which of the following statements are true regarding VPN Manager? (Choose three.)

Options:

A.

VPN Manager must be enabled on a per ADOM basis.

B.

VPN Manager automatically adds newly-registered devices to a VPN community.

C.

VPN Manager can install common IPsec VPN settings on multiple FortiGate devices at the same time.

D.

Common IPsec settings need to be configured only once in a VPN Community for all managed gateways.

E.

VPN Manager automatically creates all the necessary firewall policies for traffic to be tunneled by IPsec.

Buy Now
Questions 27

An administrator would like to create an SD-WAN using central management. What steps does the

administrator need to perform to create an SD-WAN using central management?

Options:

A.

First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route

B.

You must specify a gateway address when you create a default static route

C.

Remove all the interface references such as routes or policies

D.

Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.

Buy Now
Questions 28

Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)

Options:

A.

Managed gateways are devices managed by FortiManager in the same ADOM

B.

External gateways are third-party VPN gateway devices only

C.

Protected subnets are the subnets behind the device that you don’t want to allow access to over the IPsec

VPN

D.

Managed devices in other ADOMs must be treated as external gateways

Buy Now
Questions 29

An administrator would like to authorize a newly-installed AP using AP Manager. What steps does the administrator need to perform to authorize an AP?

Options:

A.

Authorize the new AP using AP Manager and wait until the change is updated on the FortiAP. Changes to the AP's state do not require installation.

B.

Changes to the AP's state must be performed directly on the managed FortiGate.

C.

Authorize the new AP using AP Manager and install the policy package changes on the managed FortiGate.

D.

Authorize the new AP using AP Manager and install the device level settings on the managed FortiGate.

Buy Now
Exam Code: NSE5_FMG-7.2
Exam Name: Fortinet NSE 5 - FortiManager 7.2
Last Update: May 6, 2024
Questions: 97
NSE5_FMG-7.2 pdf

NSE5_FMG-7.2 PDF

$28  $80
NSE5_FMG-7.2 Engine

NSE5_FMG-7.2 Testing Engine

$33.25  $95
NSE5_FMG-7.2 PDF + Engine

NSE5_FMG-7.2 PDF + Testing Engine

$45.5  $130