Get instant access to NSE5_FMG-6.2 Practice Tests 2021 Free Updated Today! [Q36-Q55]

Share

Get instant access to NSE5_FMG-6.2 Practice Tests 2021 Free Updated Today!

Welcome to download the newest PassLeader NSE5_FMG-6.2 PDF dumps ( 85  Q&As)

NEW QUESTION 36
Which of the following conditions trigger FortiManager to create a new revision history? (Choose two.)

  • A. When FortiManager is auto-updated with configuration changes made directly on a managed device
  • B. When FortiManager installs device-level changes to a managed device
  • C. When configuration revision is reverted to previous revision in the revision history
  • D. When changes to device-level database is made on FortiManager

Answer: A,B

 

NEW QUESTION 37
View the following exhibit.

Based on the configuration setting, which one of the following statements is true?

  • A. The setting enables the ADOMs feature on FortiManager
  • B. This setting allows you to assign different VDOMs from the same FortiGate to different ADOMs.
  • C. The setting allows automatic updates to the policy package configuration for a managed device
  • D. The setting disables concurrent ADOM access and adds ADOM locking

Answer: B

 

NEW QUESTION 38
Refer to the exhibit. Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

  • A. It disables concurrent read-write access to an ADOM.
  • B. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.
  • C. It allows the same administrator to lock more than one ADOM at the same time.
  • D. It is used to validate administrator login attempts through external servers.

Answer: A,C

 

NEW QUESTION 39
Which of the following items does an FGFM keepalive message include? (Choose two.)

  • A. FortiGate uptime
  • B. FortiGate IPS version
  • C. FortiGate configuration checksum
  • D. FortiGate license information

Answer: B,C

 

NEW QUESTION 40
Which of the following items does an FGFM keepalive message include? (Choose two.)

  • A. FortiGate IPS version
  • B. FortiGate license information
  • C. FortiGate uptime
  • D. FortiGate configuration checksum

Answer: B,D

Explanation:
FGFM Keepalive Messages configured on FortiManager. Only FortiGate sends a keepalive message to FortiManager, regardless of which device established the FGFM tunnel. FortiGate also sends a configuration checksum to confirm synchronization as a part of keepalive.

 

NEW QUESTION 41
Refer to the exhibit.

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.
What is the purpose of this command?

  • A. It allows FortiGate to reboot and recover the previous configuration from its configuration file.
  • B. It allows FortiGate to unset central management settings.
  • C. It allows FortiGate to reboot and restore a previously working firmware image.
  • D. It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.

Answer: A

Explanation:
Explanation/Reference:
Reference: https://docs.fortinet.com/document/fortimanager/6.2.0/fortigate-fortimanager-communications- protocol-guide/141304/fgfm-recovery-logic

 

NEW QUESTION 42
You are moving managed FortiGate devices from one ADOM to a new ADOM.
Which statement correctly describes the expected result?

  • A. The shared policy package will not be moved to the new ADOM
  • B. Any pending device settings will be installed automatically
  • C. Any unused objects from a previous ADOM are moved to the new ADOM automatically
  • D. Policy packages will be imported into the new ADOM automaticallyD

Answer: D

 

NEW QUESTION 43
As a result of enabling FortiAnalyzer features on FortiManager, which of the following statements is true?

  • A. FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices
  • B. FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager
  • C. FortiManager can be used only as a logging device.
  • D. FortiManager will reboot

Answer: D

 

NEW QUESTION 44
An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?

  • A. When creating a new policy package, the administrator can select the option to assign the global policy package to the new policy package
  • B. When a new policy package is created, the administrator needs to reapply the global policy package to ADOM1.
  • C. When a new policy package is created, the administrator must assign the global policy package from the global ADOM.
  • D. When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Answer: A

Explanation:
https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FortiManager_Admin_Guide/1200_Policy%20and%20Objects/0800_Managing%20policy%20packages/1200_Assign
%20a%20global%20policy%20package.htm

 

NEW QUESTION 45
View the following exhibit. Which of the following statements are true based on this configuration setting? (Choose two.)

  • A. This setting is applied globally to all ADOMs.
  • B. This setting will enable the ADOMs feature on FortiManager.
  • C. This setting will allow automatic updates to the policy package configuration for a managed device.
  • D. This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.

Answer: A,D

 

NEW QUESTION 46
View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
  • B. Local-FortiGate will automatically choose an IP Network based on its network interface settings.
  • C. 192.168.0.1/24
  • D. 10.0.1.0/24

Answer: D

 

NEW QUESTION 47
An administrator would like to create an SD-WAN using central management in the Training ADOM.
To create an SD-WAN using central management, which two steps must be completed? (Choose two.)

  • A. Specify a gateway address when you create a default SD-WAN static route
  • B. Enable SD-WAN central management in the Training ADOM
  • C. Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN template settings
  • D. Remove all the interface references such as routes or policies that will be a part of SD-WAN member interfaces

Answer: B,D

 

NEW QUESTION 48
Refer to the exhibits.
Exhibit one.

Exhibit two.

An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.
What can be the main reason for these unset commands?

  • A. The DNS addresses in the default system settings are the same as the Training system template
  • B. The ADOM is locked by another administrator
  • C. The Training system template does not have assigned devices
  • D. The Training system template has other default settings

Answer: D

 

NEW QUESTION 49
What configuration setting for FortiGate is part of a device-level database on FortiManager?

  • A. Security profiles
  • B. VIP and IP Pools
  • C. Firewall policies
  • D. Routing

Answer: D

 

NEW QUESTION 50
What does the diagnose dvm check-integrity command do? (Choose two.)

  • A. Verifies and corrects duplicate VDOM entries
  • B. Verifies and corrects unregistered, registered, and deleted device states
  • C. Verifies and corrects database schemas in all object tables
  • D. Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM syntax

Answer: A,B

Explanation:
6.2 Study Guide page 305
verify and correct parts of the device manager databases, including:
- inconsistent device-to-group and group-to-ADOM memberships
- unregistered, registered, and deleted device states
- device lock statuses
- duplicate VDOM entries

 

NEW QUESTION 51
An administrator wants to delete an address object that is currently referenced in a firewall policy.
Which one of the following statements is true?

  • A. FortiManager will replace the deleted address object with the none address object in the referenced firewall policy
  • B. FortiManager will replace the deleted address object with all address object in the referenced firewall policy
  • C. FortiManager will not allow the administrator to delete a referenced address object
  • D. FortiManager will disable the status of the referenced firewall policy

Answer: A

Explanation:
On FortiManager, it is possible to delete a used object. FortiManager will display a warning message stating that the object is currently used by other firewall policies or objects. If you delete a used object, FortiManager will replace it with a none object. The none object is equal to null, which means any traffic that meets that firewall policy will be blocked.

 

NEW QUESTION 52
Refer to the exhibit. Which statement is correct?

  • A. FortiManager will update its object database for service category General with the object value from FortiGate.
  • B. FortiManager will delete service category General from its ADOM object database.
  • C. A FortiManager administrator must select view details to modify and match the value between FortiGate and FortiManager.
  • D. FortiManager will keep its existing object value for service category General in the ADOM object database and will consider it a duplicate entry.

Answer: A

 

NEW QUESTION 53
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices
  • B. The Security Fabric settings are part of the device level settings
  • C. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
  • D. The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration

Answer: B,C

 

NEW QUESTION 54
View the following exhibit.

Which one of the following statements is true regarding installation targets in use Install On column?

  • A. The Install On column value represents successful installation on the managed devices
  • B. Policy seq=3 will be not installed on any managed device
  • C. Policy seq=3 will be installed on the Trainer[NAT] VDOM only
  • D. Policy seq=3 will be installed on all managed devices and VDOMs that are listed under Installation Targets

Answer: D

 

NEW QUESTION 55
......

Sep-2021 Latest Prep4pass NSE5_FMG-6.2 Exam Dumps with PDF and Exam Engine: https://www.prep4pass.com/NSE5_FMG-6.2_exam-braindumps.html