Weekend Special - 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save75geek

NSE6_FMG_AD-7.6 Fortinet NSE 6 - FortiManager 7.6 Administrator Questions and Answers

Questions 4

Which FortiGate configuration settings is part of an ADOM-level database on FortiManager?

Options:

A.

NSX-T service template

B.

Security template

C.

Routing

D.

SNMP

Buy Now
Questions 5

Refer to the exhibit.

FortiManager is operating behind a network address translation (NAT) device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings.

What is the expected result during discovery?

Options:

A.

FortiManager sets both the 100.65.0.120 IP address and 10.0.13.120 IP address on FortiGate.

B.

FortiManager sets both the 100.65.0.120 IP address and 100.65.0.101 IP address on FortiGate.

C.

FortiManager sets the 100.65.0.101 IP address on FortiGate.

D.

FortiManager sets the 100.65.0.120 IP address on FortiGate.

Buy Now
Questions 6

Refer to the exhibits.

An administrator needs to push a FortiToken Mobile to assign it to HR_user in the HQ-NGFW-1.

However, when installing the policy package, they receive the following error message:

Why is the administrator not able to install the FortiToken on the HQ-NGFW-1 firewall?

Options:

A.

The administrator must use a user local meta field to assign FortiToken.

B.

The administrator must use a valid FortiToken that exists on HQ-NGFW-1.

C.

The administrator must use a metadata variable to assign the same FortiToken to multiple users in FortiManager.

D.

The administrator must use per-device mapping to assign the FortiToken to HQ-NGFW-1.

Buy Now
Questions 7

An administrator has assigned a global policy package to a new ADOM named ADOM1.

What will happen if the administrator tries to create a new policy package in ADOM1?

Options:

A.

The administrator will be able to select the option to assign the global policy package to the new policy package.

B.

FortiManager will automatically assign the global policy package to the new policy package.

C.

FortiManager will automatically install policies on the policy package in ADOM1.

D.

The administrator will have to assign the global policy package from the global ADOM.

Buy Now
Questions 8

An administrator upgrades FortiManager with workspace mode per ADOM enabled to the latest version but notices that the ADOM versions did not change.

Why were the ADOMs not upgraded?

Options:

A.

The administrator did not run the database integrity check before performing the upgrade.

B.

FortiManager does not automatically upgrade ADOMs after a firmware upgrade.

C.

A FortiManager process task is stuck and blocking the ADOM upgrade, so the administrator must fix it.

D.

A user had all ADOMs locked before the upgrade, which stopped them from being upgraded.

Buy Now
Questions 9

What is the purpose of ADOM revisions?

Options:

A.

ADOM revisions find unused, duplicate, and unnecessary firewall policies and objects.

B.

ADOM revisions show specific changes in a policy package when it is installed.

C.

ADOM revisions compare previous snapshots of the Policy Package and ADOM-level objects with the device-level database.

D.

ADOM revisions save the current state of all policy packages and objects for an ADOM.

Buy Now
Questions 10

What is the best explanation of how FortiManager helps with mass provisioning?

Options:

A.

It upgrades the OS of each FortiGate device.

B.

It provides local FortiGuard Distribution Server (FDS) services to the network.

C.

It uses templates to configure the same settings on many devices simultaneously.

D.

It sends email alerts when new devices connect.

Buy Now
Questions 11

While attempting to push a NetFlow configuration script through the FortiManager policy package: an administrator encounters an error stating that an object is unrecognized in line 4.

What must the administrator do to successfully apply the NetFlow configuration script and avoid the object unrecognized error?

Options:

A.

Make sure the user running the script has full access to the VDOM—AGEUSR.

B.

Run the script on the device database.

C.

Use metadata variables if they use VDOMs in the script.

D.

Create a normalized interface on the policy layer before running the script.

Buy Now
Questions 12

After correcting a policy package configuration issue, you want to prevent administrators from repeating the mistake that caused the issue.

Which FortiManager approach best meets this need?

Options:

A.

Configure an TCL script to run locally on FortiManager for each FortiGate.

B.

Restrict administrators with an administration profile from viewing the revision history to limit who can make changes.

C.

Enable the change note to require administrators to add a note whenever they change object configurations.

D.

Enable a workflow requiring approval before installing policy packages on any FortiGate.

Buy Now
Questions 13

Refer to Exhibit:

An administrator admin used the Configuration Revision History window to revert the FortiGate device configuration to revision ID 6. After running the reinstall policy package, the administrator noticed problems with the firewall policy- they could not see the unset comment on policy ID 1.

Why did FortiManager not remove the comment from policy ID 1 when the administrator ran reinstall policy package?

Options:

A.

Because the administrator student must install the configuration changes to correctly see the expected results.

B.

Because the administrator must import the firewall policies to update the firewall policy package.

C.

Because every time the administrator uses the revert config file, they must use the Install Wizard instead of running the reinstall policy package.

D.

Because the administrator used the Revision Diff view, which shows what changed, not what will be installed.

Buy Now
Questions 14

What are two expected results when both FortiManager and FortiGate are behind network address translation NAT devices? Choose two answers

Options:

A.

FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

B.

During discovery, the FortiManager NATed IP address is not set by default on FortiGate.

C.

FortiGate can announce itself to FortiManager only if the FortiManager non-NATed IP address is configured on FortiGate under central management.

D.

If the FortiGate–FortiManager communication protocol FGFM tunnel is torn down, FortiManager will try to reestablish the FGFM tunnel.

Buy Now
Questions 15

Refer to the exhibit.

What are two results from the configuration shown in the exhibit? (Choose two.)

Options:

A.

Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times out.

B.

The administrator can lock policy blocks and FortiManager global ADOM.

C.

The same administrator can lock more than one ADOM at the same time.

D.

The administrator must have access to the ADOM to approve changes.

Buy Now
Questions 16

An administrator is copying a system template profile between ADOMs by running the following command:

execute fmprofile export-profile ADOM 3547 /tmp/Backup_File

output dump to file: [/tmp/Backup_File]

Where does this command export the system template profile from?

Options:

A.

FortiManager /tmp/Backup_File folder

B.

FortiManager ADOM policy database

C.

ADOM device database

D.

FortiManager configuration backup file

Buy Now
Questions 17

Refer to the exhibit.

An administrator has assigned the default system template to install all devices with the FortiAnalyzer IP address 10.0.13.12. However, not all FortiGate devices can reach FortiAnalyzer using the default interface. Some devices may use the LAN interface, while others may use the WAN interface. How can the administrator change the source interface for FortiGate devices using the default system template? Choose one answer

Options:

A.

Use per-device dynamic object configurations at the ADOM level and apply them in the template.

B.

Configure a metadata variable at the ADOM level and use it in the template.

C.

Create a different system template for each FortiGate, if the configuration is different.

D.

Create a meta field on FortiManager system settings of type Device and use it in the template.

Buy Now
Questions 18

Refer to the exhibits.

An administrator runs the reload failure command diagnose test deploymanager reloadconf 262 on FortiManager.

Why does the administrator receive an error message?

Options:

A.

The administrator must use the FortiGate name instead of the ID number.

B.

The administrator just recently added FortiGate HQ-NGFW as a model device.

C.

FortiManager requires the FortiGate serial number instead of the ID number.

D.

FortiManager does not support FortiOS version 7.0.

Buy Now
Questions 19

Refer to the exhibit.

An administrator added a FortiGate device to FortiManager with the default object settings at the ADOM layer.

What can you conclude from the import policy package process of the HQ-NGFW- 1 device?

Options:

A.

The administrator must select Per Platform for all interfaces to correctly detect all interfaces from HQ-NGFW-1.

B.

The administrator must manually create the port4 interface on the ADOM layer to avoid import policy errors.

C.

FortiManager will create LAN, port4, and port6 as normalized interfaces at the ADOM layer.

D.

FortiGate may not work as expected when the administrator does not import all objects.

Buy Now
Exam Code: NSE6_FMG_AD-7.6
Exam Name: Fortinet NSE 6 - FortiManager 7.6 Administrator
Last Update: Aug 22, 2026
Questions: 65
NSE6_FMG_AD-7.6 pdf

NSE6_FMG_AD-7.6 PDF

$21.25  $84.99
NSE6_FMG_AD-7.6 Engine

NSE6_FMG_AD-7.6 Testing Engine

$25  $99.99
NSE6_FMG_AD-7.6 PDF + Engine

NSE6_FMG_AD-7.6 PDF + Testing Engine

$33.75  $134.99