NSE5_FMG-6.2 Dumps To Pass Fortinet Exam in 24 Hours - TestInsides [Q31-Q55]

Share

NSE5_FMG-6.2 Dumps To Pass Fortinet Exam in 24 Hours - TestInsides

Buy Latest NSE5_FMG-6.2 Exam Q&A PDF - One Year Free Update

NEW QUESTION 31
A FortiGate device is imported to FortiManager using the settings given in the exhibit.

An administrator subsequently modifies and installs the policy package.
Which two statements are correct regarding the scenario? (Choose two)

  • A. The FortiManager imported all unused objects to the ADOM object database. These objects can be used by referencing in the policies on FortiManager and installing to the managed devices.
  • B. The orphan (unused) objects that are not tied to policies locally on the FortiGate will not be deleted on install.
  • C. The orphan (unused) objects that are not tied to policies locally on the FortiGate will be deleted on install.
  • D. The FortiManager did not import unused objects to the ADOM object database. These objects cannot be used by referencing in the policies on FortiManager and installing to the managed devices.

Answer: C,D

 

NEW QUESTION 32
View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

  • A. Provides the option to preview configuration changes prior to installing them
  • B. Will not create new revision in the revision history
  • C. Installs device-level changes to FortiGate without launching the Install Wizard
  • D. Once initiated, the install process cannot be canceled and changes will be installed on the managed device

Answer: C,D

 

NEW QUESTION 33
Refer to the exhibit. You are using the Quick Install option to install configuration changes on the managed FortiGate.

Which two statements correctly describe the result? (Choose two.)

  • A. It will not create a new revision in the revision history
  • B. It installs device-level changes to FortiGate without launching the Install Wizard
  • C. It provides the option to preview configuration changes prior to installing them
  • D. It cannot be canceled once initiated and changes will be installed on the managed device

Answer: B,D

 

NEW QUESTION 34
An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message.
Which troubleshooting step should you take to resolve the issue?

  • A. Make sure ADOMs are enabled and the administrator has access to the Global ADOM
  • B. Make sure FortiManager Access is enabled in the administrator profile
  • C. Make sure the administrator IP address is part of the trusted hosts.
  • D. Make sure Offline Mode is disabled

Answer: C

 

NEW QUESTION 35
Refer to the exhibit.

Which statement about the object named ALL is true?

  • A. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
  • B. FortiManager installed the object ALL with the updated value.
  • C. FortiManager updated the object ALL using the FortiManager value in its database.
  • D. FortiManager updated the object ALL using the FortiGate value in its database.

Answer: D

 

NEW QUESTION 36
Refer to the exhibit.

Which two statements about the output are true? (Choose two.)

  • A. Configuration changes directly made on FortiGate have been automatically updated to the device-level database.
  • B. The latest revision history for the managed FortiGate does match with the FortiGate running configuration.
  • C. Configuration changes have been installed on FortiGate, which means the FortiGate configuration has been changed.
  • D. The latest revision history for the managed FortiGate does not match with the device-level database.

Answer: B,D

 

NEW QUESTION 37
Refer to the exhibits.
Exhibit one.

Exhibit two.

An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.
What can be the main reason for these unset commands?

  • A. The Training system template does not have assigned devices
  • B. The DNS addresses in the default system settings are the same as the Training system template
  • C. The Training system template has other default settings
  • D. The ADOM is locked by another administrator

Answer: C

 

NEW QUESTION 38
When a FortiManager HA primary device fails, which two statements are correct for promoting a secondary device to the primary role? (Choose two)

  • A. The FortiManager HA suports IP takeover where an HA state transition does not require manual intervention.
  • B. Must manually reconfigure one of the secondary devices to become the master device.
  • C. Reboot is required when promoting from secondary to primary.
  • D. All other secondary devices must be reconfigured to point to new primary device.

Answer: B,D

 

NEW QUESTION 39
An administrator would like to create an SD-WAN default static route for a newly created SD-WAN using the FortiManager GUI. Both port1 and port2 are part of the SD-WAN member interfaces.
Which interface must the administrator select in the static route device drop-down list?

  • A. port1
  • B. virtual-wan-link
  • C. port2
  • D. auto-discovery

Answer: B

 

NEW QUESTION 40
As a result of enabling FortiAnalyzer features on FortiManager, which of the following statements is true?

  • A. FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager
  • B. FortiManager can be used only as a logging device.
  • C. FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices
  • D. FortiManager will reboot

Answer: D

 

NEW QUESTION 41
Refer to the exhibit. If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)

  • A. If the FGFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.
  • B. During discovery, the FortiManager NATed IP address is not set by default on FortiGate.
  • C. FortiGate can announce itself to FortiManager only if the FortiManager non-NATed IP address is configured on FortiGate under central management.
  • D. FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

Answer: B,D

Explanation:
Fortimanager can discover FortiGate through a NATed FortiGate IP address. If a FortiManager NATed IP address is configured on FortiGate, then FortiGate can announce itself to FortiManager. FortiManager will not attempt to re-establish the FGFM tunnel to the FortiGate NATed IP address, if the FGFM tunnel is interrupted. Just like it was in the NATed FortiManager scenario, the FortiManager NATed IP address in this scenario is not configured under FortiGate central management configuration.

 

NEW QUESTION 42
An administrator has added all the devices in a Security Fabric group to FortiManager. How does the administrator identify the root FortiGate?

  • A. By an Asterisk (*) at the end of the device name
  • B. By a dollar symbol ($) at the end of the device name
  • C. By an at symbol (@) at the end of the device name
  • D. By a Question: mark(?) at the end of the device name

Answer: A

 

NEW QUESTION 43
An administrator is replacing a device on FortiManager by running the following command:
execute device replace sn <devname> <serialnum>.
What device name and serial number must the administrator use?

  • A. Device name of the replacement device and serial number of the original device.
  • B. Device name and serial number of the replacement device.
  • C. Device name and serial number of the original device.
  • D. Device name of the original device and serial number of the replacement device.

Answer: D

 

NEW QUESTION 44
Refer to the exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

  • A. It disables concurrent read-write access to an ADOM.
  • B. It allows the same administrator to lock more than one ADOM at the same time.
  • C. It is used to validate administrator login attempts through external servers.
  • D. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.

Answer: A,B

Explanation:
Reference:
https://docs.fortinet.com/document/fortimanager/6.0.4/administration-guide/86456/concurrentadom-access

 

NEW QUESTION 45
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.
Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

  • A. When a new policy package is created, it automatically assigns the global policies to the new package.
  • B. When a new policy package is created, you need to reapply the global policy package to the ADOM.
  • C. When a new policy package is created, you can select the option to assign the global policies to the new package.
  • D. When a new policy package is created, you need to assign the global policy package from the global ADOM.

Answer: A

 

NEW QUESTION 46
View the following exhibit.

Which one of the following statements is true regarding installation targets in use Install On column?

  • A. Policy seq=3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • B. Policy seq=3 will be installed on the Trainer[NAT] VDOM only
  • C. Policy seq=3 will be not installed on any managed device
  • D. The Install On column value represents successful installation on the managed devices

Answer: A

 

NEW QUESTION 47
You are moving managed FortiGate devices from one ADOM to a new ADOM.
Which statement correctly describes the expected result?

  • A. Policy packages will be imported into the new ADOM automatically
  • B. The shared policy package will not be moved to the new ADOM
  • C. Any pending device settings will be installed automatically
  • D. Any unused objects from a previous ADOM are moved to the new ADOM automatically

Answer: A

 

NEW QUESTION 48
Refer to the exhibits. An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.


What can be the main reason for these unset commands?

  • A. The Training system template does not have assigned devices
  • B. The DNS addresses in the default system settings are the same as the Training system template
  • C. The Training system template has other default settings
  • D. The ADOM is locked by another administrator

Answer: C

 

NEW QUESTION 49
Which two items are included in the FortiManager backup? (Choose two.)

  • A. FortiGuard database
  • B. All devices
  • C. Global database
  • D. Logs

Answer: B,C

Explanation:
Reference:
https://kb.fortinet.com/kb/viewContent.do?externalId=FD34549

 

NEW QUESTION 50
Refer to the exhibit. An administrator has created a firewall address object which is used in multiple policy packages for multiple FortiGate devices in an ADOM.

When the installation operation is performed, which IP/Netmask will be installed on managed devices for this firewall address object?

  • A. 10.200.1.0/24 on Remote-FortiGate
  • B. If no dynamic mapping is defined for other FortiGate devices, the object will not be installed
  • C. The FortiManager administrator can choose the value for the firewall address object in the Install Wizard for Remote-FortiGate
  • D. 192.168.0.1/24 on Remote-FortiGate

Answer: A

 

NEW QUESTION 51
Refer to the exhibit.

An administrator is importing a new device to FortiManager and has selected the options shown in the exhibit.
What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

  • A. The unused objects that are not tied to the firewall policies will be installed on FortiGate.
  • B. The unused objects that are not tied to the firewall policies in the policy package will be deleted from the FortiManager database.
  • C. The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted.
  • D. The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate.

Answer: C

 

NEW QUESTION 52
Refer to the exhibit. Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. The script history will show successful installation of the script on the remote FortiGate
  • B. You must install these changes using the Install Wizard to a managed device
  • C. The successful execution of a script on the Device Database will create a new revision history
  • D. The Device Settings Status will be tagged as Modified

Answer: A,C

 

NEW QUESTION 53
Refer to the exhibit. An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.

What is the purpose of this command?

  • A. It allows FortiGate to reboot and recover the previous configuration from its configuration file.
  • B. It allows FortiGate to reboot and restore a previously working firmware image.
  • C. It allows FortiGate to unset central management settings.
  • D. It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.

Answer: A

 

NEW QUESTION 54
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?

  • A. By an Asterisk (*) at the end of the device name
  • B. By a question no mark(?) at the end of the device name
  • C. By a dollar symbol ($) at the end of the device name
  • D. By an at symbol (@) at the end of the device name

Answer: A

 

NEW QUESTION 55
......

Download the Latest NSE5_FMG-6.2 Dump - 2021 NSE5_FMG-6.2 Exam Question Bank: https://www.testinsides.top/NSE5_FMG-6.2-dumps-review.html