New Year Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

Fortinet NSE5_FMG-7.0 Fortinet NSE 5 - FortiManager 7.0 Exam Practice Test

Demo: 23 questions
Total 79 questions

Fortinet NSE 5 - FortiManager 7.0 Questions and Answers

Question 1

Refer to the exhibit.

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.

What is the purpose of this command?

Options:

A.

It allows FortiGate to unset central management settings.

B.

It allows FortiGate to reboot and recover the previous configuration from its configuration file.

C.

It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.

D.

It allows FortiGate to reboot and restore a previously working firmware image.

Question 2

Refer to the exhibit.

An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.

When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

Options:

A.

192.168.0.1/24

B.

10.200.1.0/24

C.

It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.

D.

Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.

Question 3

Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

Options:

A.

You must install these changes using the Install Wizard to a managed device

B.

The successful execution of a script on the Device Database will create a new revision history

C.

The script history will show successful installation of the script on the remote FortiGate

D.

The Device Settings Status will be tagged as Modified

Question 4

An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.

Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

Options:

A.

When a new policy package is created, it automatically assigns the global policies to the new package.

B.

When a new policy package is created, you need to assign the global policy package from the global

ADOM.

C.

When a new policy package is created, you need to reapply the global policy package to the ADOM.

D.

When a new policy package is created, you can select the option to assign the global policies to the new package.

Question 5

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

Options:

A.

The Security Fabric license, group name and password are required for the FortiManager Security Fabric

integration

B.

The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices

C.

The Security Fabric settings are part of the device level settings

D.

The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices

Question 6

Refer to the exhibit.

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

Options:

A.

It supports the FortiManager script feature

B.

It allows making configuration changes for managed devices on FortiManager panes

C.

FortiManager automatically installs the configuration difference in revisions on the managed FortiGate

D.

You cannot assign the same ADOM to multiple administrators

Question 7

Refer to the exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

Options:

A.

It allows two or more administrators to make configuration changes at the same time, in the same ADOM.

B.

It disables concurrent read-write access to an ADOM.

C.

It allows the same administrator to lock more than one ADOM at the same time.

D.

It is used to validate administrator login attempts through external servers.

Question 8

What will be the result of reverting to a previous revision version in the revision history?

Options:

A.

It will install configuration changes to managed device automatically

B.

It will tag the device settings status as Auto-Update

C.

It will generate a new version ID and remove all other revision history versions

D.

It will modify the device-level database

Question 9

Which two settings are required for FortiManager Management Extension Applications (MEA)? (Choose two.)

Options:

A.

When you configure MEA, you must open TCP or UDP port 540.

B.

You must open the ports to the Fortinet registry

C.

You must create a MEA special policy on FortiManager using the super user profile

D.

The administrator must have the super user profile.

Question 10

View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

Options:

A.

10.0.1.0/24

B.

It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values

C.

192.168.0.1/24

D.

Local-FortiGate will automatically choose an IP Network based on its network interface settings.

Question 11

View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

Options:

A.

Once initiated, the install process cannot be canceled and changes will be installed on the managed device

B.

Will not create new revision in the revision history

C.

Installs device-level changes to FortiGate without launching the Install Wizard

D.

Provides the option to preview configuration changes prior to installing them

Question 12

What does a policy package status of Modified indicate?

Options:

A.

FortiManager is unable to determine the policy package status

B.

The policy package was never imported after a device was registered on FortiManager

C.

The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

D.

The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

Question 13

Which configuration setting for FortiGate is part of an ADOM-level database on FortiManager?

Options:

A.

NSX-T Service Template

B.

Security profiles

C.

SNMP

D.

Routing

Question 14

Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)

Options:

A.

Managed gateways are devices managed by FortiManager in the same ADOM

B.

External gateways are third-party VPN gateway devices only

C.

Protected subnets are the subnets behind the device that you don’t want to allow access to over the IPsec

VPN

D.

Managed devices in other ADOMs must be treated as external gateways

Question 15

Refer to the exhibit.

According to the error message why is FortiManager failing to add the FortiAnalyzer device?

Options:

A.

The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager

B.

The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface

C.

The administrator must use the Add Model Device section and discover the FortiAnalyzer device

D.

The administrator must use the correct user name and password of the FortiAnalyzer device

Question 16

View the following exhibit:

An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager. What name will be used to display the firewall policy for port1?

Options:

A.

port1 on FortiGate and WAN on FortiManager

B.

port1 on both FortiGate and FortiManager

C.

WAN zone on FortiGate and WAN zone on FortiManager

D.

WAN zone on FortiGate and WAN interface on FortiManager

Question 17

Refer to the exhibit.

You are using the Quick Install option to install configuration changes on the managed FortiGate.

Which two statements correctly describe the result? (Choose two.)

Options:

A.

It will not create a new revision in the revision history

B.

It installs device-level changes to FortiGate without launching the Install Wizard

C.

It cannot be canceled once initiated and changes will be installed on the managed device

D.

It provides the option to preview configuration changes prior to installing them

Question 18

View the following exhibit:

How will FortiManager try to get updates for antivirus and IPS?

Options:

A.

From the list of configured override servers with ability to fall back to public FDN servers

B.

From the configured override server list only

C.

From the default server fdsl.fortinet.com

D.

From public FDNI server with highest index number only

Question 19

View the following exhibit:

Which two statements are true if the script is executed using the Remote FortiGate Directly (via CLI) option? (Choose two.)

Options:

A.

You must install these changes using Install Wizard

B.

FortiGate will auto-update the FortiManager’s device-level database.

C.

FortiManager will create a new revision history.

D.

FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.

Question 20

View the following exhibit.

An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

Options:

A.

The unused objects that are not tied to the firewall policies will be installed on FortiGate

B.

The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate

C.

The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted

D.

The unused objects that are not tied to the firewall policies in policy package will be deleted from the

FortiManager database

Question 21

Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

Options:

A.

When configuration revision is reverted to previous revision in the revision history

B.

When FortiManager installs device-level changes to a managed device

C.

When FortiManager is auto-updated with configuration changes made directly on a managed device

D.

When changes to device-level database is made on FortiManager

Question 22

View the following exhibit.

If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)

Options:

A.

FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

B.

FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on

FortiGate under central management.

C.

During discovery, the FortiManager NATed IP address is not set by default on FortiGate.

D.

If the FCFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.

Question 23

What are two outcomes of ADOM revisions? (Choose two.)

Options:

A.

ADOM revisions can significantly increase the size of the configuration backups.

B.

ADOM revisions can save the current size of the whole ADOM

C.

ADOM revisions can create System Checkpoints for the FortiManager configuration

D.

ADOM revisions can save the current state of all policy packages and objects for an ADOM

Demo: 23 questions
Total 79 questions