ExamGecko
Home Home / Fortinet / FCP_FMG_AD-7.4

Fortinet FCP_FMG_AD-7.4 Practice Test - Questions Answers, Page 3

Question list
Search
Search

Push updates are failing on a FortiGate device that is located behind a NAT device. Which two settings should the administrator check? (Choose two.)

A.
That the override server IP address is set on FortiManager and the NAT device
A.
That the override server IP address is set on FortiManager and the NAT device
Answers
B.
That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
B.
That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
Answers
C.
That the NAT device IP address and correct ports are configured on FortiManager
C.
That the NAT device IP address and correct ports are configured on FortiManager
Answers
D.
That the virtual IP address and correct ports are set on the NAT device
D.
That the virtual IP address and correct ports are set on the NAT device
Answers
Suggested answer: C, D

Exhibit.

What is true about the objects highlighted in the image?

A.
They can be set to optional or required.
A.
They can be set to optional or required.
Answers
B.
They are available across all ADOMs by default.
B.
They are available across all ADOMs by default.
Answers
C.
They can be used as variables in scripts.
C.
They can be used as variables in scripts.
Answers
D.
They cannot be created in the global database ADOM.
D.
They cannot be created in the global database ADOM.
Answers
Suggested answer: C

An administrator configures a new OSPF area on FortiManager and has not yet pushed the changes to the managed FortiGate device. In which database will the configuration be saved?

A.
Device-level database
A.
Device-level database
Answers
B.
ADOM-level database
B.
ADOM-level database
Answers
C.
Configuration-level database
C.
Configuration-level database
Answers
D.
Revision history database
D.
Revision history database
Answers
Suggested answer: A

Refer to the exhibit which shows the Download Import Report.

Why is FortiManager failing to import firewall policy ID 1?

A.
Policy ID 1 is configured from the interface any to port6. FortiManager rejects the request to import this policy because the any interface does not exist on FortiManager
A.
Policy ID 1 is configured from the interface any to port6. FortiManager rejects the request to import this policy because the any interface does not exist on FortiManager
Answers
B.
Policy ID 1 for this managed FortiGate already exists on FortiManager in the policy package named Remote-FortlGate.
B.
Policy ID 1 for this managed FortiGate already exists on FortiManager in the policy package named Remote-FortlGate.
Answers
C.
Policy ID 1 has an address object that already exists in the ADOM database with any as the interface association, and conflicts with the address object interface association locally on FortiGate.
C.
Policy ID 1 has an address object that already exists in the ADOM database with any as the interface association, and conflicts with the address object interface association locally on FortiGate.
Answers
D.
Policy ID 1 does not have the ADOM Interface mapping configured on FortiManager.
D.
Policy ID 1 does not have the ADOM Interface mapping configured on FortiManager.
Answers
Suggested answer: B

What must you consider before deciding to use FortiManager to manage a FortiAnalyzer device?

A.
Confirm that FortiManager has enough storage capacity for the expected logs.
A.
Confirm that FortiManager has enough storage capacity for the expected logs.
Answers
B.
Ensure that FortiAnalyzer features are installed in advance.
B.
Ensure that FortiAnalyzer features are installed in advance.
Answers
C.
Check whether FortiManager is part of a high availability (HA) cluster.
C.
Check whether FortiManager is part of a high availability (HA) cluster.
Answers
D.
Determine whether the VDOMs of the same FortiGate will be assigned to different ADOMs.
D.
Determine whether the VDOMs of the same FortiGate will be assigned to different ADOMs.
Answers
Suggested answer: B

Refer to the exhibit.

An administrator is about to add the FortiGate device to FortiManager using the discovery process.

FortiManager is operating behind a NAT device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings.

What is the expected result?

A.
During discovery. FortiManager uses only the FortiGate serial number to establish the connection.
A.
During discovery. FortiManager uses only the FortiGate serial number to establish the connection.
Answers
B.
During discovery, FortiManager sets both the FortiManager NATed IP address and NAT device IP address on FortiGate.
B.
During discovery, FortiManager sets both the FortiManager NATed IP address and NAT device IP address on FortiGate.
Answers
C.
During discovery. FortiManager sets the NATed device IP address on FortiGate.
C.
During discovery. FortiManager sets the NATed device IP address on FortiGate.
Answers
D.
During discovery, FortiManager sets the FortiManager NATed IP address on FortiGate.
D.
During discovery, FortiManager sets the FortiManager NATed IP address on FortiGate.
Answers
Suggested answer: D

An administrator is in the process of copying a system template profile between ADOMs by running the following command: execute fmprofile import-profile ADOM2 3547 /tmp/myfile Where does this command import the system template profile from?

A.
FortiManager file system
A.
FortiManager file system
Answers
B.
ADOM2 object database
B.
ADOM2 object database
Answers
C.
ADOM2 device database
C.
ADOM2 device database
Answers
D.
Source ADOM policy database
D.
Source ADOM policy database
Answers
Suggested answer: A

Which API method is used to create objects or overwrite existing ones?

A.
Set
A.
Set
Answers
B.
Add
B.
Add
Answers
C.
Exec
C.
Exec
Answers
D.
Update
D.
Update
Answers
Suggested answer: A

What is a characteristic of the FortiManager high availability (HA) feature?

A.
When a secondary unit is removed, FortiManager updates the managed devices using TCP port 5199.
A.
When a secondary unit is removed, FortiManager updates the managed devices using TCP port 5199.
Answers
B.
The primary unit synchronizes all configuration revision with the seconday units.
B.
The primary unit synchronizes all configuration revision with the seconday units.
Answers
C.
All secondary units must be in the same network as the primary unit.
C.
All secondary units must be in the same network as the primary unit.
Answers
D.
Each cluster member must be upgraded manually, starting with the primary unit.
D.
Each cluster member must be upgraded manually, starting with the primary unit.
Answers
Suggested answer: B

Which two items are included in the FortiManager backup? (Choose two.)

A.
All devices
A.
All devices
Answers
B.
Firmware images
B.
Firmware images
Answers
C.
FortiGuard database
C.
FortiGuard database
Answers
D.
Flash configuration
D.
Flash configuration
Answers
Suggested answer: A, D
Total 35 questions
Go to page: of 4