Labour Day Special - 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: c4sdisc65

NSE5_FMG-7.2 PDF

$38.5

$109.99

3 Months Free Update

  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions

NSE5_FMG-7.2 PDF + Testing Engine

$61.6

$175.99

3 Months Free Update

  • Exam Name: Fortinet NSE 5 - FortiManager 7.2
  • Last Update: May 1, 2024
  • Questions and Answers: 88
  • Free Real Questions Demo
  • Recommended by Industry Experts
  • Best Economical Package
  • Immediate Access

NSE5_FMG-7.2 Engine

$46.2

$131.99

3 Months Free Update

  • Best Testing Engine
  • One Click installation
  • Recommended by Teachers
  • Easy to use
  • 3 Modes of Learning
  • State of Art Technology
  • 100% Real Questions included

NSE5_FMG-7.2 Practice Exam Questions with Answers Fortinet NSE 5 - FortiManager 7.2 Certification

Question # 6

Refer to the exhibit.

NSE5_FMG-7.2 question answer

Which two statements are true if the script is executed using theDevice Databaseoption? (Choose two.)

A.

You must install these changes using theInstall Wizardto a managed device

B.

The successful execution of a script on theDevice Databasewill create a new revision history

C.

The script history will show successful installation of the script on the remote FortiGate

D.

TheDevice Settings Statuswill be tagged asModified

Full Access
Question # 7

Which two statements regarding device management on FortiManager are true? (Choose two.)

A.

FortiGate devices in HA cluster devices are counted as a single device.

B.

FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.

C.

FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.

D.

The maximum number of managed devices for each ADOM is 500.

Full Access
Question # 8

An administrator has enabledService Accesson FortiManager.

What is the purpose ofService Accesson the FortiManager interface?

A.

Allows FortiManager to download IPS packages

B.

Allows FortiManager to respond to request for FortiGuard services from FortiGate devices

C.

Allows FortiManager to run real-time debugs on the managed devices

D.

Allows FortiManager to automatically configure a default route

Full Access
Question # 9

What does a policy package status ofConflictindicate?

A.

The policy package reports inconsistencies and conflicts during aPolicy Consistency Check.

B.

The policy package does not have a FortiGate as the installation target.

C.

The policy package configuration has been changed on both FortiManager and the managed device

independently.

D.

The policy configuration has never been imported after a device was registered on FortiManager.

Full Access
Question # 10

Refer to the exhibit.

NSE5_FMG-7.2 question answer

Which statement about the object named ALL is true?

A.

FortiManager updated the object ALL using the FortiGate value in its database.

B.

FortiManager installed the object ALL with the updated value.

C.

FortiManager created the object ALL as a unique entity in its database, which can be only used by this

managed FortiGate.

D.

FortiManager updated the object ALL using the FortiManager value in its database.

Full Access
Question # 11

Refer to the exhibit.

NSE5_FMG-7.2 question answer

Which two statements about the output are true? (Choose two.)

A.

The latest revision history for the managed FortiGate does match with the FortiGate running configuration

B.

Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed

C.

The latest history for the managed FortiGate does not match with the device-level database

D.

Configuration changes directly made on the FortiGate have been automatically updated to device-level

database

Full Access
Question # 12

View the following exhibit.

NSE5_FMG-7.2 question answer

An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

A.

The unused objects that are not tied to the firewall policies will be installed on FortiGate

B.

The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate

C.

The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted

D.

The unused objects that are not tied to the firewall policies in policy package will be deleted from the

FortiManager database

Full Access
Question # 13

In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?

A.

Secondary device with highest priority will automatically be promoted to the primary role, and manually

reconfigure all other secondary devices to point to the new primary device

B.

Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.

C.

Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.

D.

FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.

Full Access
Question # 14

Refer to the following exhibit:

NSE5_FMG-7.2 question answer

Which of the following statements are true based on this configuration? (Choose two.)

A.

The same administrator can lock more than one ADOM at the same time

B.

Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times out

C.

Unlocking an ADOM will submit configuration changes automatically to the approval administrator

D.

Unlocking an ADOM will install configuration automatically on managed devices

Full Access
Question # 15

Which two settings must be configured for SD-WAN Central Management? (Choose two.)

A.

SD-WAN must be enabled on per-ADOM basis

B.

You can create multiple SD-WAN interfaces per VDOM

C.

When you configure an SD-WAN, you must specify at least two member interfaces.

D.

The first step in creating an SD-WAN using FortiManager is to create two SD-WAN firewall policies.

Full Access
Question # 16

An administrator would like to create an SD-WAN using central management in theTrainingADOM.

To create an SD-WAN using central management, which two steps must be completed? (Choose two.)

A.

Specify a gateway address when you create a default SD-WAN static route

B.

Enable SD-WAN central management in theTrainingADOM

C.

Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN

template settings

D.

Remove all the interface references such as routes or policies that will be a part of SD-WAN member

interfaces

Full Access
Question # 17

View the following exhibit, which shows theDownload Import Report:

NSE5_FMG-7.2 question answer

Why it is failing to import firewall policy ID 2?

A.

The address object used in policy ID 2 already exist in ADON database with any as interface association and conflicts with address object interface association locally on the FortiGate

B.

Policy ID 2 is configured from interface any to port6 FortiManager rejects to import this policy because any interface does not exist on FortiManager

C.

Policy ID 2 does not have ADOM Interface mapping configured on FortiManager

D.

Policy ID 2 for this managed FortiGate already exists on FortiManager in policy package named Remote-FortiGate.

Full Access
Question # 18

Which two items does an FGFM keepalive message include? (Choose two.)

A.

FortiGate uptime

B.

FortiGate license information

C.

FortiGate IPS version

D.

FortiGate configuration checksum

Full Access
Question # 19

What does a policy package status ofModifiedindicate?

A.

FortiManager is unable to determine the policy package status

B.

The policy package was never imported after a device was registered on FortiManager

C.

The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

D.

The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.

Full Access
Question # 20

Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

A.

Backs up all devices and the FortiGuard database.

B.

Does not back up firmware images saved on FortiManager

C.

Supports FTP, SCP, and SFTP

D.

Can be configured from the CLI and GUI

Full Access
Question # 21

What is the advantage of using FortiManager to manage PortiAnalyzer?

A.

It allows FortiManager to manage all FortiGate devices

B.

It allows FortiManager to fun reports based on FortiAnalyzer

C.

It allows FortiManager to store all managed FortiGate device logs

D.

It allows FortiManager to act as a collector and FortiAnalyzer device

Full Access
Question # 22

An administrator is replacing a failed device on FortiManager by running the following command:

execute device replace sn .

Which device name and serial number must the administrator use?

A.

The device name of the new device and serial number of the failed device

B.

The device name and serial number of the failed device

C.

The device name of the failed device and serial number of the new device

D.

The device name and serial number of the new device

Full Access
Question # 23

An administrator has added all the devices in a Security Fabric group to FortiManager.

How does the administrator identify the root FortiGate?

A.

By a dollar symbol ($) at the end of the device name

B.

By an at symbol (@) at the end of the device name

C.

By a QUESTION NO: mark(?) at the end of the device name

D.

By an Asterisk (*) at the end of the device name

Full Access
Question # 24

Refer to the exhibit.

NSE5_FMG-7.2 question answer

How will FortiManager try to get updates for antivirus and IPS?

A.

From the list of configured override servers or public FDN servers

B.

From the default server fds1.fortinet.com

C.

From the configured override server IP address 10.0.1.50 only

D.

From public FDNI server IP address with the fourth highest octet only

Full Access
Question # 25

Which of the following statements are true regarding VPN Manager? (Choose three.)

A.

VPN Manager must be enabled on a per ADOM basis.

B.

VPN Manager automatically adds newly-registered devices to a VPN community.

C.

VPN Manager can install common IPsec VPN settings on multiple FortiGate devices at the same time.

D.

Common IPsec settings need to be configured only once in a VPN Community for all managed gateways.

E.

VPN Manager automatically creates all the necessary firewall policies for traffic to be tunneled by IPsec.

Full Access
Question # 26

Which two settings are required for FortiManager Management Extension Applications (MEA)? (Choose two.)

A.

When you configure MEA, you must open TCP or UDP port 540.

B.

You must open the ports to the Fortinet registry

C.

You must create a MEA special policy on FortiManager using the super user profile

D.

The administrator must have the super user profile.

Full Access