Latest Fortinet NSE5_FMG-7.0 Practice Test Questions, Fortinet NSE 5 - FortiManager 7.0 Exam Dumps [Q38-Q63]

Share

Latest Fortinet NSE5_FMG-7.0 Practice Test Questions, Fortinet NSE 5 - FortiManager 7.0 Exam Dumps

May-2024 Pass Fortinet NSE5_FMG-7.0 Exam in First Attempt Easily


Fortinet NSE5_FMG-7.0 certification exam covers a wide range of topics, including FortiManager installation and configuration, device management, policy management, user management, and reporting. NSE5_FMG-7.0 exam also includes questions on advanced topics such as automation, scripting, and integration with other security solutions.


Fortinet NSE5_FMG-7.0 exam is a certification exam designed for IT professionals who want to prove their expertise in managing and administering FortiManager 7.0. FortiManager is a centralized management platform that is used to manage and configure Fortinet’s security devices, including firewalls, switches, and access points. The NSE5_FMG-7.0 exam is intended to test the candidate’s knowledge and skills in implementing and managing FortiManager 7.0.

 

NEW QUESTION # 38
Refer to the exhibit.

Given the configuration shown in the exhibit, how did FortiManager handle the service category named General?

  • A. FortiManager ignored the firewall service category General but created a new service category in its database.
  • B. FortiManager ignored the firewall service category General and did not update Its database with the value
  • C. FortiManager ignored the firewall service category General and updated the FortiGate duplicate value in the FortiGate database.
  • D. FortiManager ignored the firewall service category general and deleted the duplicate value In Its database

Answer: C


NEW QUESTION # 39
An administrator run the reload failure command: diagnose test deploymanager reload config
<deviceid> on FortiManager. What does this command do?

  • A. It installs the provisioning template configuration on the specified FortiGate.
  • B. It installs the latest configuration on the specified FortiGate and update the revision history database.
  • C. It compares and provides differences in configuration on FortiManager with the current running configuration of the specified FortiGate.
  • D. It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.

Answer: D


NEW QUESTION # 40
An administrator wants to delete an address object that is currently referenced in a firewall policy.
What can the administrator expect to happen?

  • A. FortiManager will replace the deleted address object with the none address object in the referenced
    firewall policy
  • B. FortiManager will not allow the administrator to delete a referenced address object
  • C. FortiManager will disable the status of the referenced firewall policy
  • D. FortiManager will replace the deleted address object with all address object in the referenced firewall policy

Answer: A


NEW QUESTION # 41
View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. Local-FortiGate will automatically choose an IP Network based on its network interface settings.
  • B. 192.168.0.1/24
  • C. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
  • D. 10.0.1.0/24

Answer: D


NEW QUESTION # 42
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?

  • A. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
  • B. You must specify a gateway address when you create a default static route
  • C. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • D. Remove all the interface references such as routes or policies

Answer: C


NEW QUESTION # 43
Refer to the exhibit.

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

  • A. It allows making configuration changes for managed devices on FortiManager panes
  • B. You cannot assign the same ADOM to multiple administrators
  • C. FortiManager automatically installs the configuration difference in revisions on the managed FortiGate
  • D. It supports the FortiManager script feature

Answer: A,D

Explanation:
"FortiGate units in the ADOM will query their own configuration every 5 seconds. If there has been a configuration change, the FortiGate unit will send a diff revision on the change to the FortiManager using the FGFM protocol."


NEW QUESTION # 44
View the following exhibit.

Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?

  • A. Policy seq#3 will be not installed on any managed device
  • B. Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • C. Policy seq#3 will be installed on the Trainer[NAT] VDOM only
  • D. The Install On column value represents successful installation on the managed devices

Answer: B


NEW QUESTION # 45
View the following exhibit.

An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

  • A. The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate
  • B. The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted
  • C. The unused objects that are not tied to the firewall policies in policy package will be deleted from the
  • D. The unused objects that are not tied to the firewall policies will be installed on FortiGate

Answer: B

Explanation:
FortiManager database


NEW QUESTION # 46
View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. Local-FortiGate will automatically choose an IP Network based on its network interface settings.
  • B. 192.168.0.1/24
  • C. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
  • D. 10.0.1.0/24

Answer: D


NEW QUESTION # 47
Refer to the exhibit.

Given the configuration shown in the exhibit, how did FortiManager handle the service category named General?

  • A. FortiManager ignored the firewall service category General but created a new service category in its database.
  • B. FortiManager ignored the firewall service category General and did not update Its database with the value
  • C. FortiManager ignored the firewall service category General and updated the FortiGate duplicate value in the FortiGate database.
  • D. FortiManager ignored the firewall service category general and deleted the duplicate value In Its database

Answer: C


NEW QUESTION # 48
View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

  • A. Once initiated, the install process cannot be canceled and changes will be installed on the managed device
  • B. Will not create new revision in the revision history
  • C. Installs device-level changes to FortiGate without launching the Install Wizard
  • D. Provides the option to preview configuration changes prior to installing them

Answer: A,C


NEW QUESTION # 49
View the following exhibit.

Which of the following statements are true based on this configuration setting? (Choose two.)

  • A. This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.
  • B. This setting is applied globally to all ADOMs.
  • C. This setting will allow automatic updates to the policy package configuration for a managed device.
  • D. This setting will enable the ADOMs feature on FortiManager.

Answer: A,B


NEW QUESTION # 50
View the following exhibit:

An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager. What name will be used to display the firewall policy for port1?

  • A. WAN zone on FortiGate and WAN interface on FortiManager
  • B. port1 on both FortiGate and FortiManager
  • C. port1 on FortiGate and WAN on FortiManager
  • D. WAN zone on FortiGate and WAN zone on FortiManager

Answer: C


NEW QUESTION # 51
What will happen if FortiAnalyzer features are enabled on FortiManager?

  • A. FortiManager will install the logging configuration to the managed devices
  • B. FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.
  • C. FortiManager can be used only as a logging device.
  • D. FortiManager will keep all the logs and reports on the FortiManager.

Answer: A


NEW QUESTION # 52
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
  • B. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices
  • C. The Security Fabric settings are part of the device level settings
  • D. The Security Fabric license, group name and password are required for the FortiManager Security Fabric
    integration

Answer: A,C


NEW QUESTION # 53
Refer to the exhibit.

Which statement about the object named ALL is true?

  • A. FortiManager updated the object ALL using the FortiManager value in its database.
  • B. FortiManager updated the object ALL using the FortiGate value in its database.
  • C. FortiManager created the object ALL as a unique entity in its database, which can be only used by this
    managed FortiGate.
  • D. FortiManager installed the object ALL with the updated value.

Answer: B


NEW QUESTION # 54
Refer to the exhibit.

An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.
Which two reasons can explain why the FortiAnalyzer feature panes do not appear? (Choose two.)

  • A. The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.
  • B. The administrator profile does not have full access privileges like the Super_User profile.
  • C. FortiAnalyzer features are not enabled on FortiManager.
  • D. The administrator logged in using the unsecure protocol HTTP, so the view is restricted.

Answer: B,C


NEW QUESTION # 55
View the following exhibit:

An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager. What name will be used to display the firewall policy for port1?

  • A. WAN zone on FortiGate and WAN interface on FortiManager
  • B. port1 on both FortiGate and FortiManager
  • C. port1 on FortiGate and WAN on FortiManager
  • D. WAN zone on FortiGate and WAN zone on FortiManager

Answer: C


NEW QUESTION # 56
Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. The successful execution of a script on the Device Database will create a new revision history
  • B. The script history will show successful installation of the script on the remote FortiGate
  • C. You must install these changes using the Install Wizard to a managed device
  • D. The Device Settings Status will be tagged as Modified

Answer: C,D


NEW QUESTION # 57
What does the diagnose dvm check-integrity command do? (Choose two.)

  • A. Verifies and corrects unregistered, registered, and deleted device states
  • B. Verifies and corrects duplicate VDOM entries
  • C. Verifies and corrects database schemas in all object tables
  • D. Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM syntax

Answer: A,B

Explanation:
6.2 Study Guide page 305 verify and correct parts of the device manager databases, including: - inconsistent device-to-group and group-to-ADOM memberships - unregistered, registered, and deleted device states - device lock statuses - duplicate VDOM entries


NEW QUESTION # 58
Refer to the exhibit.

You are using the Quick Install option to install configuration changes on the managed FortiGate.
Which two statements correctly describe the result? (Choose two.)

  • A. It installs device-level changes to FortiGate without launching the Install Wizard
  • B. It provides the option to preview configuration changes prior to installing them
  • C. It will not create a new revision in the revision history
  • D. It cannot be canceled once initiated and changes will be installed on the managed device

Answer: A,D

Explanation:
FortiManager_6.4_Study_Guide-Online - page 164
The Install Config option allows you to perform a quick installation of device-level settings without launching the Install Wizard. When you use this option, you cannot preview the changes prior to committing. Administrator should be certain of the changes before using this install option, because the install can't be cancelled after the process is initiated.


NEW QUESTION # 59
An administrator would like to create an SD-WAN using central management. What steps does the
administrator need to perform to create an SD-WAN using central management?

  • A. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
  • B. You must specify a gateway address when you create a default static route
  • C. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • D. Remove all the interface references such as routes or policies

Answer: C


NEW QUESTION # 60
View the following exhibit.

Which one of the following statements is true regarding the object named ALL?

  • A. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
  • B. FortiManager updated the object ALL using FortiManager's value in its database
  • C. FortiManager installed the object ALL with the updated value.
  • D. FortiManager updated the object ALL using FortiGate's value in its database

Answer: D


NEW QUESTION # 61
Which two settings must be configured for SD-WAN Central Management? (Choose two.)

  • A. When you configure an SD-WAN, you must specify at least two member interfaces.
  • B. You can create multiple SD-WAN interfaces per VDOM
  • C. The first step in creating an SD-WAN using FortiManager is to create two SD-WAN firewall policies.
  • D. SD-WAN must be enabled on per-ADOM basis

Answer: A,D


NEW QUESTION # 62
Refer to the exhibit.

Given the configuration shown in the exhibit, what can you conclude from the installation targets m the Install On column? (Choose two)

  • A. Policy 3 will be installed on all FortiGate devices and vdom belongs to the ADOM
  • B. Policy seq # 1 will be installed on the Remoto-FortiGate root[NAT] and Student[NAT] VDOMs only
  • C. Policy seq # 3 will be skipped because no installation targets are specified
  • D. Policy seq # 3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • E. Policy seq # 2 will not be installed on the Local-FortiGate root VDOM because there is no root VDOM in the Installation Target

Answer: B,D


NEW QUESTION # 63
......


Fortinet NSE5_FMG-7.0 Exam Syllabus Topics:

TopicDetails
Topic 1
  • Use the global ADOM to envelop policy packages
  • Perform initial configuration
Topic 2
  • Troubleshoot import and installation issues
  • Perform policy and object management
Topic 3
  • Troubleshoot policy and object management
  • Install configuration changes using scripts
Topic 4
  • Perform the import and installation methods
  • Diagnose issues using the revision history
Topic 5
  • Troubleshoot device settings
  • Register devices in ADOMs
  • Configure FortiGuard services
Topic 6
  • Configure different administrative access levels using the workspace
  • Troubleshoot FortiManager deployment scenarios

 

Free NSE5_FMG-7.0 Exam Files Downloaded Instantly 100% Dumps & Practice Exam: https://www.dumpsking.com/NSE5_FMG-7.0-testking-dumps.html

Updated Verified NSE5_FMG-7.0 dumps Q&As - 100% Pass Guaranteed: https://drive.google.com/open?id=1U-ynkmZjAYPSLunG0DLve--TSKVIkHuK