Labour Day Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

NSE5_FMG-7.2 Exam Dumps - Fortinet NSE 5 - FortiManager 7.2

Question # 4

Which two items does an FGFM keepalive message include? (Choose two.)

A.

FortiGate uptime

B.

FortiGate license information

C.

FortiGate IPS version

D.

FortiGate configuration checksum

Full Access
Question # 5

Refer to the exhibit.

Which two statements about the output are true? (Choose two.)

A.

The latest revision history for the managed FortiGate does match with the FortiGate running configuration

B.

Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed

C.

The latest history for the managed FortiGate does not match with the device-level database

D.

Configuration changes directly made on the FortiGate have been automatically updated to device-level

database

Full Access
Question # 6

View the following exhibit, which shows theDownload Import Report:

Why it is failing to import firewall policy ID 2?

A.

The address object used in policy ID 2 already exist in ADON database with any as interface association and conflicts with address object interface association locally on the FortiGate

B.

Policy ID 2 is configured from interface any to port6 FortiManager rejects to import this policy because any interface does not exist on FortiManager

C.

Policy ID 2 does not have ADOM Interface mapping configured on FortiManager

D.

Policy ID 2 for this managed FortiGate already exists on FortiManager in policy package named Remote-FortiGate.

Full Access
Question # 7

View the following exhibit.

Which statement is true regarding this failed installation log?

A.

Policy ID 2 is installed without a source address

B.

Policy ID 2 will not be installed

C.

Policy ID 2 is installed in disabled state

D.

Policy ID 2 is installed without a source device

Full Access
Question # 8

An administrator run the reload failure command:diagnose test deploymanager reload config

on FortiManager. What does this command do?

A.

It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.

B.

It installs the latest configuration on the specified FortiGate and update the revision history database.

C.

It compares and provides differences in configuration on FortiManager with the current running

configuration of the specified FortiGate.

D.

It installs the provisioning template configuration on the specified FortiGate.

Full Access
Question # 9

An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?

A.

When creating a new policy package, the administrator can select the option to assign the global policy

package to the new policy package

B.

When a new policy package is created, the administrator needs to reapply the global policy package to

ADOM1.

C.

When a new policy package is created, the administrator must assign the global policy package from the global ADOM.

D.

When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Full Access
Question # 10

An administrator would like to review, approve, or reject all the firewall policy changes made by the junior

administrators.

How should the Workspace mode be configured on FortiManager?

A.

Set to workflow and use the ADOM locking feature

B.

Set to read/write and use the policy locking feature

C.

Set to normal and use the policy locking feature

D.

Set to disable and use the policy locking feature

Full Access
Question # 11

What are two outcomes of ADOM revisions? (Choose two.)

A.

ADOM revisions can significantly increase the size of the configuration backups.

B.

ADOM revisions can save the current size of the whole ADOM

C.

ADOM revisions can create System Checkpoints for the FortiManager configuration

D.

ADOM revisions can save the current state of all policy packages and objects for an ADOM

Full Access
Question # 12

What does a policy package status ofModifiedindicate?

A.

FortiManager is unable to determine the policy package status

B.

The policy package was never imported after a device was registered on FortiManager

C.

The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

D.

The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

Full Access
Question # 13

View the following exhibit.

Which of the following statements are true based on this configuration setting? (Choose two.)

A.

This setting will enable the ADOMs feature on FortiManager.

B.

This setting is applied globally to all ADOMs.

C.

This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.

D.

This setting will allow automatic updates to the policy package configuration for a managed device.

Full Access
Question # 14

An administrator is in the process of moving the system template profile between ADOMs by running the following command:

execute improfile import-profile ADOM2 3547 /tmp/myfile

Where does the administrator import the file from?

A.

File system

B.

ADOM1

C.

ADOM2 object database

D.

ADOM2

Full Access
Question # 15

View the following exhibit:

An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager. What name will be used to display the firewall policy for port1?

A.

port1 on FortiGate and WAN on FortiManager

B.

port1 on both FortiGate and FortiManager

C.

WAN zone on FortiGate and WAN zone on FortiManager

D.

WAN zone on FortiGate and WAN interface on FortiManager

Full Access
Question # 16

View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

A.

10.0.1.0/24

B.

It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values

C.

192.168.0.1/24

D.

Local-FortiGate will automatically choose an IP Network based on its network interface settings.

Full Access
Question # 17

What will happen if FortiAnalyzer features are enabled on FortiManager?

A.

FortiManager will keep all the logs and reports on the FortiManager.

B.

FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.

C.

FortiManager will install the logging configuration to the managed devices

D.

FortiManager can be used only as a logging device.

Full Access
Question # 18

View the following exhibit.

When usingInstall Configoption to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

A.

Once initiated, the install process cannot be canceled and changes will be installed on the managed device

B.

Will not create new revision in the revision history

C.

Installs device-level changes to FortiGate without launching theInstall Wizard

D.

Provides the option to preview configuration changes prior to installing them

Full Access
Question # 19

Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

A.

Backs up all devices and the FortiGuard database.

B.

Does not back up firmware images saved on FortiManager

C.

Supports FTP, SCP, and SFTP

D.

Can be configured from the CLI and GUI

Full Access
Question # 20

Refer to the exhibit.

How will FortiManager try to get updates for antivirus and IPS?

A.

From the list of configured override servers or public FDN servers

B.

From the default server fds1.fortinet.com

C.

From the configured override server IP address 10.0.1.50 only

D.

From public FDNI server IP address with the fourth highest octet only

Full Access
Question # 21

Refer to the exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

A.

It allows two or more administrators to make configuration changes at the same time, in the same ADOM.

B.

It disables concurrent read-write access to an ADOM.

C.

It allows the same administrator to lock more than one ADOM at the same time.

D.

It is used to validate administrator login attempts through external servers.

Full Access
Question # 22

Refer to the exhibit.

An administrator has created a firewall address object,Trainingwhich is used in the Local-FortiGate policy package.

When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for theTrainingfirewall address object?

A.

192.168.0.1/24

B.

10.200.1.0/24

C.

It will create a firewall address group on Local-FortiGate with192.168.0.1/24and10.0.1.0/24object values.

D.

Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.

Full Access
Question # 23

What does a policy package status ofConflictindicate?

A.

The policy package reports inconsistencies and conflicts during aPolicy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Full Access
Question # 24

An administrator has enabledService Accesson FortiManager.

What is the purpose ofService Accesson the FortiManager interface?

A.

Allows FortiManager to download IPS packages

B.

Allows FortiManager to respond to request for FortiGuard services from FortiGate devices

C.

Allows FortiManager to run real-time debugs on the managed devices

D.

Allows FortiManager to automatically configure a default route

Full Access
Question # 25

An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the

managed FortiGate.

In which database will the configuration be saved?

A.

Device-level database

B.

Revision history database

C.

ADOM-level database

D.

Configuration-level database

Full Access
Question # 26

Which two items are included in the FortiManager backup? (Choose two.)

A.

FortiGuard database

B.

Global database

C.

Logs

D.

All devices

Full Access