NSE5_FMG-7.2 Questions Prepare with Learning Information! 2024 Regularly updated
Get NSE5_FMG-7.2 Products Practice Material for NSE5_FMG-7.2 Exam Question Preparation
Fortinet NSE5_FMG-7.2 certification is an essential certification for network security professionals who want to demonstrate their expertise in managing multi-vendor and multi-device environments. Fortinet NSE 5 - FortiManager 7.2 certification is recognized by leading organizations around the world, and it is an excellent way for individuals to enhance their career prospects and earning potential.
NEW QUESTION # 31
Refer to the exhibit.
You ate using the Quick install option to install configuration changes on the managed FortiGate Which two statements correctly describe the result? (Choose two)
- A. It installs device-level changes on the FortiGate device without launching the Install Wizard
- B. It install provisioning template changes on the FortiGate device
- C. It installs all the changes in the device database first and the administrator must reinstall the changes on the FodiGate device
- D. It provides the option to preview only the policy package changes before installing them
Answer: A,B
NEW QUESTION # 32
Refer to the exhibit.
What can you conclude from the failed installation log shown in the exhibit?
- A. Policy ID 2 is installed without the remote user student.
- B. Policy ID 2 is installed without a source address.
- C. Policy ID 2 will not be installed.
- D. Policy ID 2 is installed in the disabled state.
Answer: A
NEW QUESTION # 33
An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message.
Which troubleshooting step should you take to resolve the issue?
- A. Make sure the administrator IP address is part of the trusted hosts.
- B. Make sure FortiManager Access is enabled in the administrator profile
- C. Make sure ADOMs are enabled and the administrator has access to the Global ADOM
- D. Make sure Offline Mode is disabled
Answer: A
Explanation:
Even if a user entered the correct userid/password, the FMG denies access if a user is logging in from an untrusted source IP subnets.
NEW QUESTION # 34
View the following exhibit.
An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?
- A. The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate
- B. The unused objects that are not tied to the firewall policies in policy package will be deleted from the
- C. The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted
- D. The unused objects that are not tied to the firewall policies will be installed on FortiGate
Answer: C
Explanation:
FortiManager database
NEW QUESTION # 35
An administrator would like to create an SD-WAN using central management in theTrainingADOM.
To create an SD-WAN using central management, which two steps must be completed? (Choose two.)
- A. Specify a gateway address when you create a default SD-WAN static route
- B. Enable SD-WAN central management in theTrainingADOM
- C. Remove all the interface references such as routes or policies that will be a part of SD-WAN member interfaces
- D. Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN template settings
Answer: B,C
Explanation:
Reference:https://docs.fortinet.com/document/fortigate/6.0.0/cookbook/676493/removing-existing-configuration
NEW QUESTION # 36
Refer to the exhibit.
Given the configuration shown in the exhibit, which two statements are true? (Choose two.)
- A. FortiManager is in workflow mode.
- B. An administrator can also lock the Local-FortiGate-1 policy package.
- C. The FortiManager ADOM workspace mode is set to Normal.
- D. The FortiManager ADOM is locked by the administrator.
Answer: B,D
NEW QUESTION # 37
View the following exhibit:
An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager.
What name will be used to display the firewall policy for port1?
- A. port1 on both FortiGate and FortiManager
- B. WAN zone on FortiGate and WAN zone on FortiManager
- C. port1 on FortiGate and WAN on FortiManager
- D. WAN zone on FortiGate and WAN interface on FortiManager
Answer: C
NEW QUESTION # 38
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package Fortinet in the custom ADOM1. What will happen to the Fortinet policy package when it is created?
- A. You can select the option to assign the global polices
- B. it automatically assigns the global policies
- C. You need to assign the global policy package from the global ADOM
- D. You need to reapply the global poky package to the ADOM
Answer: B
NEW QUESTION # 39
Refer to the exhibits.
Exhibit one.
Exhibit two.
An administrator created a new system template namedTrainingwith two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.
What can be the main reason for these unset commands?
- A. The ADOM is locked by another administrator
- B. The DNS addresses in the default system settings are the same as theTrainingsystem template
- C. TheTrainingsystem template has other default settings
- D. TheTrainingsystem template does not have assigned devices
Answer: C
NEW QUESTION # 40
What is the purpose of the Policy Check feature on FortiManager?
- A. It compares the policy packages with the revision history, and updates policy packages in the ADOM database.
- B. It merges and creates dynamic mappings for duplicate objects used in a policy package.
- C. It provides recommendations to combine similar policy packages within an ADOM into one single policy package.
- D. It provides recommendations for optimizing policies in a policy package.
Answer: D
NEW QUESTION # 41
An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?
- A. When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.
- B. When creating a new policy package, the administrator can select the option to assign the global policy package to the new policy package
- C. When a new policy package is created, the administrator must assign the global policy package from the global ADOM.
- D. When a new policy package is created, the administrator needs to reapply the global policy package to ADOM1.
Answer: B
Explanation:
Reference:https://help.fortinet.com/fmgr/50hlp/56/5-6-2/FortiManager_Admin_Guide/1200_Policy%20and%20O
NEW QUESTION # 42
An administrator would like to authorize a newly-installed AP using AP Manager. What steps does the administrator need to perform to authorize an AP?
- A. Authorize the new AP using AP Manager and install the device level settings on the managed FortiGate.
- B. Authorize the new AP using AP Manager and wait until the change is updated on the FortiAP. Changes to the AP's state do not require installation.
- C. Authorize the new AP using AP Manager and install the policy package changes on the managed FortiGate.
- D. Changes to the AP's state must be performed directly on the managed FortiGate.
Answer: A
NEW QUESTION # 43
View the following exhibit:
Which two statements are true if the script is executed using the Remote FortiGate Directly (via CLI) option? (Choose two.)
- A. FortiManager will create a new revision history.
- B. You must install these changes using Install Wizard
- C. FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.
- D. FortiGate will auto-update the FortiManager's device-level database.
Answer: A,D
NEW QUESTION # 44
Refer to the exhibit.
Which two statements are true if the script is executed using the Device Database option? (Choose two.)
- A. You must install these changes using the Install Wizard to a managed device
- B. The script history will show successful installation of the script on the remote FortiGate
- C. The successful execution of a script on the Device Database will create a new revision history
- D. The Device Settings Status will be tagged as Modified
Answer: A,D
NEW QUESTION # 45
View the following exhibit.
If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)
- A. During discovery, the FortiManager NATed IP address is not set by default on FortiGate.
- B. If the FCFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.
- C. FortiGate is discovered by FortiManager through the FortiGate NATed IP address.
- D. FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on FortiGate under central management.
Answer: A,C
Explanation:
Fortimanager can discover FortiGate through a NATed FortiGate IP address. If a FortiManager NATed IP address is configured on FortiGate, then FortiGate can announce itself to FortiManager. FortiManager will not attempt to re-establish the FGFM tunnel to the FortiGate NATed IP address, if the FGFM tunnel is interrupted.
Just like it was in the NATed FortiManager scenario, the FortiManager NATed IP address in this scenario is not configured under FortiGate central management configuration.
NEW QUESTION # 46
An administrator is in the process of moving the system template profile between ADOMs by running the following command:
execute improfile import-profile ADOM2 3547 /tmp/myfile
Where does the administrator import the file from?
- A. ADOM1
- B. ADOM2 object database
- C. File system
- D. ADOM2
Answer: C
NEW QUESTION # 47
Refer to the exhibit.
According to the error message why is FortiManager failing to add the FortiAnalyzer device?
- A. The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager
- B. The administrator must use the Add Model Device section and discover the FortiAnalyzer device
- C. The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
- D. The administrator must use the correct user name and password of the FortiAnalyzer device
Answer: A
NEW QUESTION # 48
......
Most Reliable Fortinet NSE5_FMG-7.2 Training Materials: https://www.exams4collection.com/NSE5_FMG-7.2-latest-braindumps.html
The Realest Study Materials NSE5_FMG-7.2 Dumps: https://drive.google.com/open?id=1QY8n3tsUKYVbhkCoHyH9jvV0iJ3JGw5O
