ExamGecko
Home Home / Fortinet / NSE5_FMG-7.2

Fortinet NSE5_FMG-7.2 Practice Test - Questions Answers, Page 9

Question list
Search
Search

List of questions

Search

Related questions











Refer to the exhibit.

An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.

When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

A.
192.168.0.1/24
A.
192.168.0.1/24
Answers
B.
10.200.1.0/24
B.
10.200.1.0/24
Answers
C.
It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
C.
It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
Answers
D.
Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
D.
Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
Answers
Suggested answer: A

Refer to the exhibit.

According to the error message why is FortiManager failing to add the FortiAnalyzer device?

A.
The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager
A.
The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager
Answers
B.
The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
B.
The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
Answers
C.
The administrator must use the Add Model Device section and discover the FortiAnalyzer device
C.
The administrator must use the Add Model Device section and discover the FortiAnalyzer device
Answers
D.
The administrator must use the correct user name and password of the FortiAnalyzer device
D.
The administrator must use the correct user name and password of the FortiAnalyzer device
Answers
Suggested answer: A

Push updates are failing on a FortiGate device that is located behind a NAT device Which two settings should the administrator check? (Choose two.)

A.
That the virtual IP address and correct ports are set on the NAT device
A.
That the virtual IP address and correct ports are set on the NAT device
Answers
B.
That the NAT device IP address and correct ports are configured on FortiManager
B.
That the NAT device IP address and correct ports are configured on FortiManager
Answers
C.
That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
C.
That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
Answers
D.
That the override server IP address is set on FortiManager and the NAT device
D.
That the override server IP address is set on FortiManager and the NAT device
Answers
Suggested answer: B, C

Refer to the exhibit.

You ate using the Quick install option to install configuration changes on the managed FortiGate

Which two statements correctly describe the result? (Choose two)

A.
It installs device-level changes on the FortiGate device without launching the Install Wizard
A.
It installs device-level changes on the FortiGate device without launching the Install Wizard
Answers
B.
It installs all the changes in the device database first and the administrator must reinstall the changes on the FodiGate device
B.
It installs all the changes in the device database first and the administrator must reinstall the changes on the FodiGate device
Answers
C.
It provides the option to preview only the policy package changes before installing them
C.
It provides the option to preview only the policy package changes before installing them
Answers
D.
It install provisioning template changes on the FortiGate device
D.
It install provisioning template changes on the FortiGate device
Answers
Suggested answer: A, D

Refer to the exhibit.

Which statement is true about the FortiManager ADOM policy tab based on the API request?

A.
The API command has enabled both central NAT and interface policy on the policy tab.
A.
The API command has enabled both central NAT and interface policy on the policy tab.
Answers
B.
The API command has requested the policy tab permissions information only.
B.
The API command has requested the policy tab permissions information only.
Answers
C.
The API command has failed when requesting policy tab permissions information.
C.
The API command has failed when requesting policy tab permissions information.
Answers
D.
The API command has applied to customer with ID: 200.
D.
The API command has applied to customer with ID: 200.
Answers
Suggested answer: A

In the event that one of the secondary FortiManager devices fails, which action must be performed to return the FortiManager HA manual mode to a working state?

A.
The FortiManaqer HA state transition is transparent to administrators and does not require any reconfiguration.
A.
The FortiManaqer HA state transition is transparent to administrators and does not require any reconfiguration.
Answers
B.
Manually promote one of the working secondary devices to the primary role, and reboot the old primary device to remove the peer IP of the failed device.
B.
Manually promote one of the working secondary devices to the primary role, and reboot the old primary device to remove the peer IP of the failed device.
Answers
C.
Reconfigure the primary device to remove the peer IP of the failed device.
C.
Reconfigure the primary device to remove the peer IP of the failed device.
Answers
D.
Reboot the failed device to remove its IP from the primary device.
D.
Reboot the failed device to remove its IP from the primary device.
Answers
Suggested answer: C

Which three settings are the factory default settings on FortiManager? (Choose three.)

A.
The administrative domain is disabled.
A.
The administrative domain is disabled.
Answers
B.
The Port1 interface IP address is 192.168.1.99/24.
B.
The Port1 interface IP address is 192.168.1.99/24.
Answers
C.
Management Extension applications are enabled.
C.
Management Extension applications are enabled.
Answers
D.
The FortiManager setup wizard is disabled.
D.
The FortiManager setup wizard is disabled.
Answers
E.
FortiAnalvzer features are disabled.
E.
FortiAnalvzer features are disabled.
Answers
Suggested answer: A, B, E

An administrator has enabled Service Access on FortiManager.

What is the purpose of Service Access on the FortiManager interface?

A.
Allows FortiManager to download IPS packages
A.
Allows FortiManager to download IPS packages
Answers
B.
Allows FortiManager to respond to request for FortiGuard services from FortiGate devices
B.
Allows FortiManager to respond to request for FortiGuard services from FortiGate devices
Answers
C.
Allows FortiManager to run real-time debugs on the managed devices
C.
Allows FortiManager to run real-time debugs on the managed devices
Answers
D.
Allows FortiManager to automatically configure a default route
D.
Allows FortiManager to automatically configure a default route
Answers
Suggested answer: B

Explanation:

FortiManager 6.2 Study guide page 350

Topic 3, Main Questions Pool C

What does the diagnose dvm check-integrity command do? (Choose two.)

A.
Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM syntax
A.
Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM syntax
Answers
B.
Verifies and corrects unregistered, registered, and deleted device states
B.
Verifies and corrects unregistered, registered, and deleted device states
Answers
C.
Verifies and corrects database schemas in all object tables
C.
Verifies and corrects database schemas in all object tables
Answers
D.
Verifies and corrects duplicate VDOM entries
D.
Verifies and corrects duplicate VDOM entries
Answers
Suggested answer: B, D

Explanation:

6.2 Study Guide page 305 verify and correct parts of the device manager databases, including: -- inconsistent device-to-group and group-to-ADOM memberships -- unregistered, registered, and deleted device states -- device lock statuses -- duplicate VDOM entries

Refer to the exhibit.

In the event that the monitored interface for the primary FortiManager device fails, which statement is true about FortiManager HA?

A.
Manually promote one of the working secondary devices to the primary role, and reboot the old primary device to remove the peer IP of the failed device.
A.
Manually promote one of the working secondary devices to the primary role, and reboot the old primary device to remove the peer IP of the failed device.
Answers
B.
Reboot the failed device to remove its IP from the primary device.
B.
Reboot the failed device to remove its IP from the primary device.
Answers
C.
Reconfigure the primary device lo remove the peer IP of the failed device.
C.
Reconfigure the primary device lo remove the peer IP of the failed device.
Answers
D.
The FortiManager HAfailover is transparent to administrators and does not require any reconfiguration.
D.
The FortiManager HAfailover is transparent to administrators and does not require any reconfiguration.
Answers
Suggested answer: D
Total 103 questions
Go to page: of 11