Fortinet NSE5_FMG-5.4 - FortiManager 5.4 Specialist Exam

Question #1 (Topic: Topic 1)
When installation is performed from the FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
A. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down. B. FortiGate will reject the CLI commands that will cause the tunnel to go down. C. FortiManager will revert and install a previous configuration revision on the managed FortiGate. D. FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.
Answer: C
Question #2 (Topic: Topic 1)
Which of the following statements are true regarding VPN Manager? (Choose three.)
A. VPN Manager must be enabled on a per ADOM basis. B. VPN Manager automatically adds newly-registered devices to a VPN community. C. VPN Manager can install common IPsec VPN settings on multiple FortiGate devices at the same time. D. Common IPsec settings need to be configured only once in a VPN Community for all managed gateways. E. VPN Manager automatically creates all the necessary firewall policies for traffic to be tunneled by IPsec.
Answer: ACD
Question #3 (Topic: Topic 1)
View the following exhibit:
[Fortinet-NSE5-FMG-5.4-1.0/xmlfile-3_1.jpg]
When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)
A. Will not create new revision in the revision history. B. Provides the option to preview configuration changes prior to installing them. C. Installs device-level changes to FortiGate without launching the Install Wizard. D. Once installed, the install process cannot be canceled and changes will be installed on the managed device.
Answer: BC
Question #4 (Topic: Topic 1)
View the following exhibit:
[Fortinet-NSE5-FMG-5.4-1.0/xmlfile-4_1.png]
Which of the following statements are true if both FortiManager and FortiGate are behind the NAT devices? (Choose two.)
A. FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on FortiGate under central management. B. If the FGFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel. C. FortiGate is discovered by FortiManager through the FortiGate NATed IP address. D. During discovery, the FortiManager NATed IP address is not set by default on FortiGate.
Answer: BC
Question #5 (Topic: Topic 1)
What is the purpose of the Policy Check feature on FortiManager?
A. To find and merge duplicate policies in the policy package. B. To find and provide recommendation to combine multiple separate policy packages into one common policy package. C. To find and delete disabled firewall policies in the policy package. D. To find and provide recommendation for optimizing policies in a policy package.
Answer: A
Download Exam
Page: 1 / 12
Total 56 questions