Fortinet NSE 5 - FortiManager 7.2 v1.0 (NSE5_FMG-7.2)

Page:    1 / 5   
Total 63 questions

Which two items are included in the FortiManager backup? (Choose two.)

  • A. FortiGuard database
  • B. Firmware images
  • C. Flash configuration
  • D. All devices


Answer : CD

An administrator’s PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.

How can the administrator unlock the ADOM?

  • A. Restore the configuration from a previous backup.
  • B. Delete the previous admin session manually through the FortiManager GUI or CLI.
  • C. Log in as Super_User in order to unlock the ADOM.
  • D. Log in using the same administrator account to unlock the ADOM.


Answer : B

An administrator configures a new OSPF route on FortiManager and has not yet pushed the changes to the managed FortiGate device.

In which database will the configuration be saved?

  • A. Revision history database
  • B. ADOM-level database
  • C. Configuration-level database
  • D. Device-level database


Answer : D

Refer to the exhibit.



An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.

What is the purpose of this command?

  • A. It allows FortiManager to unset the new configuration through CLI and reboot FortiGate.
  • B. It allows FortiManager to revert and install a previous configuration revision on the managed FortiGate.
  • C. It allows FortiGate to reboot and recover the previous configuration from its configuration file.
  • D. It allows FortiGate to reboot and restore a previously working firmware image.


Answer : C

What is the purpose of ADOM revisions?

  • A. To save the FortiManager configuration in the System Checkpoints
  • B. To revert individual policy packages and device-level settings for a managed FortiGate
  • C. To save the current state of the whole ADOM
  • D. To save the current state of all policy packages and objects for an ADOM


Answer : D

Refer to the exhibit.



Given the configuration shown in the exhibit, what are two results from this configuration? (Choose two.)

  • A. Two or more administrators can make configuration changes at the same time, in the same ADOM.
  • B. The same administrator can lock more than one ADOM at the same time.
  • C. Concurrent read-write access to an ADOM is disabled.
  • D. You can validate administrator login attempts through external servers.


Answer : BC

Refer to the exhibit.



An administrator is about to add the FortiGate device to FortiManager using the discovery process. FortiManager is operating behind a NAT device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings.

What is the expected result?

  • A. During discovery, FortiManager uses only the FortiGate serial number to establish the connection.
  • B. During discovery, FortiManager sets the FortiManager NATed IP address on FortiGate.
  • C. During discovery, FortiManager sets the NATed device IP address on FortiGate.
  • D. During discovery, FortiManager sets both the FortiManager NATed IP address and NAT device IP address on FortiGate.


Answer : B

An administrator has enabled Service Access on FortiManager.

What is the purpose of Service Access on the FortiManager interface?

  • A. It allows FortiManager to determine the connection status of managed devices.
  • B. It allows administrative access to FortiManager.
  • C. It allows third-party applications to gain read/write access to FortiManager.
  • D. It allows FortiManager to respond to requests for FortiGuard services from FortiGate devices.


Answer : D

Push updates are failing on a FortiGate device that is located behind a NAT device.

Which two settings should the administrator check? (Choose two.)

  • A. That the virtual IP address and correct ports are set on the NAT device
  • B. That the override server IP address is set on FortiManager and the NAT device
  • C. That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
  • D. That the NAT device IP address and correct ports are configured on FortiManager


Answer : AD

What does a policy package status of Conflict indicate?

  • A. The policy configuration has never been imported after a device was registered on FortiManager.
  • B. The policy package does not have FortiGate as the installation target.
  • C. The policy package configuration has been changed on both FortiManager and the managed device independently.
  • D. The policy package reports inconsistencies and conflicts during a Policy Consistency Check.


Answer : C

An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.

What will happen to the Fortinet policy package when it is created?

  • A. You need to assign the global policy package from the global ADOM.
  • B. You can select the option to assign the global policies.
  • C. You need to reapply the global policy package to the ADOM.
  • D. It automatically assigns the global policies.


Answer : C

Refer to the exhibit.



A service provider administrator has assigned a global policy package to a managed customer ADOM named My_ADOM, which has four policy packages. The customer administrator has access only to My_ADOM.

How can customer or service provider administrators remove both global header and footer policies from the policy package named Shared_Package?

  • A. The customer administrator can unassign both polices by locking My_ADOM
  • B. The customer administrator can unassign both global polices from My_ADOM
  • C. The service provider administrator can unassign both global policies from My_ADOM
  • D. The service provider administrator can unassign both policies from the global ADOM


Answer : D

Refer to the exhibit.



An administrator wants to create a policy on the Staging ADOM in backup mode, and install it on the FortiGate device in the same ADOM.

How can the administrator perform this task?

  • A. The administrator must change the ADOM mode to Advanced to bring the FortiManager online.
  • B. The administrator must disable the FortiManager offline mode first.
  • C. The administrator must use the Policy & Objects section to create a policy first.
  • D. The administrator must use the FortiManager script.


Answer : A

What is the advantage of using FortiManager to manage FortiAnalyzer?

  • A. It allows FortiManager to manage all FortiGate devices.
  • B. It allows FortiManager to run reports based on FortiAnalyzer.
  • C. It allows FortiManager to store all managed FortiGate device logs.
  • D. It allows FortiManager to act as a collector and FortiAnalyzer device.


Answer : B

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices.
  • B. The Security Fabric settings are part of the device-level settings.
  • C. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices.
  • D. The Security Fabric license, group name, and password are required for the FortiManager Security Fabric integration.


Answer : BC

Page:    1 / 5   
Total 63 questions