Get NSE5_FMG-7.2 Braindumps & NSE5_FMG-7.2 Real Exam Questions [Q42-Q59]

Share

Get NSE5_FMG-7.2 Braindumps & NSE5_FMG-7.2 Real Exam Questions

Fortinet NSE5_FMG-7.2 Actual Questions and Braindumps


Fortinet NSE5_FMG-7.2 exam is intended for network and security professionals who are responsible for managing Fortinet security infrastructure. NSE5_FMG-7.2 exam tests the candidate's ability to deploy and configure FortiManager, manage FortiGate devices using FortiManager, configure device groups and templates, and perform troubleshooting and maintenance tasks. NSE5_FMG-7.2 exam is designed to validate the candidate's knowledge of FortiManager 7.2 and its features and capabilities.

 

NEW QUESTION # 42
Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

  • A. When changes to the device-level database are made on FortiManager
  • B. When FortiManager is auto-updated with configuration changes made directly on a managed device
  • C. When FortiManager installs device-level changes on a managed device
  • D. When a configuration revision is reverted to a previous revision in the revision history

Answer: A,C


NEW QUESTION # 43
View the following exhibit:

How will FortiManager try to get updates for antivirus and IPS?

  • A. From the default serverfdsl.fortinet.com
  • B. From public FDNI server with highest index number only
  • C. From the configured override server list only
  • D. From the list of configured override servers with ability to fall back to public FDN servers

Answer: D

Explanation:
Reference:https://community.fortinet.com/t5/Fortinet-Forum/Clarification-of-FortiManager-s-quot-Server-Overr


NEW QUESTION # 44
An administrator would like to authorize a newly-installed AP using AP Manager. What steps does the administrator need to perform to authorize an AP?

  • A. Authorize the new AP using AP Manager and wait until the change is updated on the FortiAP. Changes to the AP's state do not require installation.
  • B. Changes to the AP's state must be performed directly on the managed FortiGate.
  • C. Authorize the new AP using AP Manager and install the device level settings on the managed FortiGate.
  • D. Authorize the new AP using AP Manager and install the policy package changes on the managed FortiGate.

Answer: C


NEW QUESTION # 45
Which two statements regarding device management on FortiManager are true? (Choose two.)

  • A. The maximum number of managed devices for each ADOM is 500.
  • B. FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.
  • C. FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.
  • D. FortiGate devices in HA cluster devices are counted as a single device.

Answer: C,D


NEW QUESTION # 46
What is the purpose of thePolicy Checkfeature on FortiManager?

  • A. To find and merge duplicate policies in the policy package
  • B. To find and provide recommendation to combine multiple separate policy packages into one common policy package
  • C. To find and provide recommendation for optimizing policies in a policy package
  • D. To find and delete disabled firewall policies in the policy package

Answer: C

Explanation:
Reference:https://help.fortinet.com/fmgr/50hlp/56/5-6-2/FortiManager_Admin_Guide/1200_Policy%20and%20O


NEW QUESTION # 47
In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator authorized the FortiGate device on FortiManager using the Fortinet Security Fabric.
Given the administrator's actions, which statement correctly describes the expected result?

  • A. The authorized FortiGate can be added to the Training ADOM using FortiGate Fabric Connectors.
  • B. The authorized FortiGate will be automatically added to the Training ADOM.
  • C. The authorized FortiGate will appear in the root ADOM.
  • D. The FortiManager administrator must add the authorized device to the Training ADOM using the Add Device wizard only.

Answer: C


NEW QUESTION # 48
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will modify the device-level database
  • B. It will install configuration changes to managed device automatically
  • C. It will generate a new versionIDand remove all other revision history versions
  • D. It will tag the device settings status asAuto-Update

Answer: A


NEW QUESTION # 49
What will happen if FortiAnalyzer features are enabled on FortiManager?

  • A. FortiManager will install the logging configuration to the managed devices
  • B. FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.
  • C. FortiManager will keep all the logs and reports on the FortiManager.
  • D. FortiManager can be used only as a logging device.

Answer: A


NEW QUESTION # 50
Which two items does an FGFM keepalive message include? (Choose two.)

  • A. FortiGate configuration checksum
  • B. FortiGate license information
  • C. FortiGate uptime
  • D. FortiGate IPS version

Answer: A,D

Explanation:
Reference:https://docs.fortinet.com/document/fortimanager/6.2.0/fortigate-fortimanager-communications-protoc


NEW QUESTION # 51
An administrator's PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.
How can the administrator unlock the ADOM?

  • A. Log in asSuper_Userin order to unlock the ADOM.
  • B. Delete the previous admin session manually through the FortiManager GUI or CLI.
  • C. Restore the configuration from a previous backup.
  • D. Log in using the same administrator account to unlock the ADOM.

Answer: B


NEW QUESTION # 52
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?

  • A. You must specify a gateway address when you create a default static route
  • B. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • C. Remove all the interface references such as routes or policies
  • D. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route

Answer: B


NEW QUESTION # 53
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

  • A. Does not back up firmware images saved on FortiManager
  • B. Supports FTP, SCP, and SFTP
  • C. Can be configured from the CLI and GUI
  • D. Backs up all devices and the FortiGuard database.

Answer: A,B


NEW QUESTION # 54
Which two settings must be configured for SD-WAN Central Management? (Choose two.)

  • A. You can create multiple SD-WAN interfaces per VDOM
  • B. When you configure an SD-WAN, you must specify at least two member interfaces.
  • C. SD-WAN must be enabled on per-ADOM basis
  • D. The first step in creating an SD-WAN using FortiManager is to create two SD-WAN firewall policies.

Answer: B,C


NEW QUESTION # 55
View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. 10.0.1.0/24
  • B. Local-FortiGate will automatically choose an IP Network based on its network interface settings.
  • C. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
  • D. 192.168.0.1/24

Answer: A


NEW QUESTION # 56
Refer to the exhibit.

An administrator is about to add the FortiGate device to FortiManager using the discovery process FortiManager is operating behind a NAT device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings What is the expected result?

  • A. During discovery FortiManager sets both tie FortiManager NATed IP address and NAT device IP address on FortiGate
  • B. During discovery FortiManager uses only the FortiGate serial number to establish the connection
  • C. During discovery FortiManager sets trie FortiManager NATed IP address on FortiGate
  • D. During discovery FortiManager sets the NATed device IP address on FortiGate

Answer: D


NEW QUESTION # 57
Refer to the exhibit.

An administrator has created a firewall address object,Trainingwhich is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for theTrainingfirewall address object?

  • A. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
  • B. 10.200.1.0/24
  • C. It will create a firewall address group on Local-FortiGate with192.168.0.1/24and10.0.1.0/24object values.
  • D. 192.168.0.1/24

Answer: D


NEW QUESTION # 58
An administrator has enabledService Accesson FortiManager.
What is the purpose ofService Accesson the FortiManager interface?

  • A. Allows FortiManager to automatically configure a default route
  • B. Allows FortiManager to run real-time debugs on the managed devices
  • C. Allows FortiManager to download IPS packages
  • D. Allows FortiManager to respond to request for FortiGuard services from FortiGate devices

Answer: D

Explanation:
FortiManager 6.2 Study guide page 350


NEW QUESTION # 59
......

NSE5_FMG-7.2 Dumps To Pass Fortinet Exam in 24 Hours - PDFDumps: https://freetorrent.pdfdumps.com/NSE5_FMG-7.2-valid-exam.html