Labour Day Special - 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: c4sdisc65

Note! NSE5_FMG-7.0 has been withdrawn. The new exam code is NSE5_FMG-7.2

NSE5_FMG-7.0 Practice Exam Questions with Answers Fortinet NSE 5 - FortiManager 7.0 Certification

Question # 6

Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

A.

When configuration revision is reverted to previous revision in the revision history

B.

When FortiManager installs device-level changes to a managed device

C.

When FortiManager is auto-updated with configuration changes made directly on a managed device

D.

When changes to device-level database is made on FortiManager

Full Access
Question # 7

What will happen if FortiAnalyzer features are enabled on FortiManager?

A.

FortiManager will keep all the logs and reports on the FortiManager.

B.

FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.

C.

FortiManager will install the logging configuration to the managed devices

D.

FortiManager can be used only as a logging device.

Full Access
Question # 8

View the following exhibit.

NSE5_FMG-7.0 question answer

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

A.

Once initiated, the install process cannot be canceled and changes will be installed on the managed device

B.

Will not create new revision in the revision history

C.

Installs device-level changes to FortiGate without launching the Install Wizard

D.

Provides the option to preview configuration changes prior to installing them

Full Access
Question # 9

View the following exhibit.

NSE5_FMG-7.0 question answer

An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

A.

The unused objects that are not tied to the firewall policies will be installed on FortiGate

B.

The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate

C.

The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted

D.

The unused objects that are not tied to the firewall policies in policy package will be deleted from the

FortiManager database

Full Access
Question # 10

Refer to the exhibit.

NSE5_FMG-7.0 question answer

Which statement about the object named ALL is true?

A.

FortiManager updated the object ALL using the FortiGate value in its database.

B.

FortiManager installed the object ALL with the updated value.

C.

FortiManager created the object ALL as a unique entity in its database, which can be only used by this

managed FortiGate.

D.

FortiManager updated the object ALL using the FortiManager value in its database.

Full Access
Question # 11

You are moving managed FortiGate devices from one ADOM to a new ADOM.

Which statement correctly describes the expected result?

A.

Any pending device settings will be installed automatically

B.

Any unused objects from a previous ADOM are moved to the new ADOM automatically

C.

The shared policy package will not be moved to the new ADOM

D.

Policy packages will be imported into the new ADOM automaticallyD

Full Access
Question # 12

An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message.

Which troubleshooting step should you take to resolve the issue?

A.

Make sure FortiManager Access is enabled in the administrator profile

B.

Make sure Offline Mode is disabled

C.

Make sure the administrator IP address is part of the trusted hosts.

D.

Make sure ADOMs are enabled and the administrator has access to the Global ADOM

Full Access
Question # 13

An administrator wants to delete an address object that is currently referenced in a firewall policy.

What can the administrator expect to happen?

A.

FortiManager will not allow the administrator to delete a referenced address object

B.

FortiManager will disable the status of the referenced firewall policy

C.

FortiManager will replace the deleted address object with the none address object in the referenced

firewall policy

D.

FortiManager will replace the deleted address object with all address object in the referenced firewall policy

Full Access
Question # 14

An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?

A.

When creating a new policy package, the administrator can select the option to assign the global policy

package to the new policy package

B.

When a new policy package is created, the administrator needs to reapply the global policy package to

ADOM1.

C.

When a new policy package is created, the administrator must assign the global policy package from the global ADOM.

D.

When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Full Access
Question # 15

What does a policy package status of Modified indicate?

A.

FortiManager is unable to determine the policy package status

B.

The policy package was never imported after a device was registered on FortiManager

C.

The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

D.

The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

Full Access
Question # 16

What does the diagnose dvm check-integrity command do? (Choose two.)

A.

Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM

syntax

B.

Verifies and corrects unregistered, registered, and deleted device states

C.

Verifies and corrects database schemas in all object tables

D.

Verifies and corrects duplicate VDOM entries

Full Access
Question # 17

Refer to the exhibit.

NSE5_FMG-7.0 question answer

An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.

Which two reasons can explain why the FortiAnalyzer feature panes do not appear? (Choose two.)

A.

The administrator logged in using the unsecure protocol HTTP, so the view is restricted.

B.

The administrator profile does not have full access privileges like the Super_User profile.

C.

The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.

D.

FortiAnalyzer features are not enabled on FortiManager.

Full Access
Question # 18

Refer to the exhibit.

NSE5_FMG-7.0 question answer

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

A.

It allows two or more administrators to make configuration changes at the same time, in the same ADOM.

B.

It disables concurrent read-write access to an ADOM.

C.

It allows the same administrator to lock more than one ADOM at the same time.

D.

It is used to validate administrator login attempts through external servers.

Full Access
Question # 19

Which two items are included in the FortiManager backup? (Choose two.)

A.

FortiGuard database

B.

Global database

C.

Logs

D.

All devices

Full Access
Question # 20

Refer to the exhibit.

NSE5_FMG-7.0 question answer

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

A.

It supports the FortiManager script feature

B.

It allows making configuration changes for managed devices on FortiManager panes

C.

FortiManager automatically installs the configuration difference in revisions on the managed FortiGate

D.

You cannot assign the same ADOM to multiple administrators

Full Access
Question # 21

What does a policy package status of Conflict indicate?

A.

The policy package reports inconsistencies and conflicts during a Policy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Full Access
Question # 22

Refer to the exhibit.

NSE5_FMG-7.0 question answer

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.

What is the purpose of this command?

A.

It allows FortiGate to unset central management settings.

B.

It allows FortiGate to reboot and recover the previous configuration from its configuration file.

C.

It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.

D.

It allows FortiGate to reboot and restore a previously working firmware image.

Full Access
Question # 23

An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the

managed FortiGate.

In which database will the configuration be saved?

A.

Device-level database

B.

Revision history database

C.

ADOM-level database

D.

Configuration-level database

Full Access