NSE5_FMG-6.2 Updated Exam Dumps [2021] Practice Valid Exam Dumps Question [Q40-Q60]

Share

NSE5_FMG-6.2 Updated Exam Dumps [2021] Practice Valid Exam Dumps Question

NSE5_FMG-6.2 Sample with Accurate & Updated Questions

NEW QUESTION 40
An administrator wants to delete an address object that is currently referenced in a firewall policy.
Which one of the following statements is true?

  • A. FortiManager will disable the status of the referenced firewall policy
  • B. FortiManager will replace the deleted address object with all address object in the referenced firewall policy
  • C. FortiManager will not allow the administrator to delete a referenced address object
  • D. FortiManager will replace the deleted address object with the none address object in the referenced firewall policy

Answer: D

Explanation:
On FortiManager, it is possible to delete a used object. FortiManager will display a warning message stating that the object is currently used by other firewall policies or objects. If you delete a used object, FortiManager will replace it with a none object. The none object is equal to null, which means any traffic that meets that firewall policy will be blocked.

 

NEW QUESTION 41
Refer to the exhibit. Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

  • A. FortiManager automatically installs the configuration difference in revisions on the managed FortiGate
  • B. It allows making configuration changes for managed devices on FortiManager panes
  • C. It supports the FortiManager script feature
  • D. You cannot assign the same ADOM to multiple administrators

Answer: A,B

 

NEW QUESTION 42
Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. The Device Settings Status will be tagged as Modified
  • B. The successful execution of a script on the Device Database will create a new revision history
  • C. The script history will show successful installation of the script on the remote FortiGate
  • D. You must install these changes using the Install Wizard to a managed device

Answer: B,C

 

NEW QUESTION 43
View the following exhibit.

Which one of the following statements is true regarding installation targets in use Install On column?

  • A. Policy seq=3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • B. Policy seq=3 will be not installed on any managed device
  • C. The Install On column value represents successful installation on the managed devices
  • D. Policy seq=3 will be installed on the Trainer[NAT] VDOM only

Answer: A

Explanation:
Seq #3 shows "Installation Targets" as the selected Install On Devices/VDOMs. This is the default icon/value which would default to ALL Devices/VDOMs listed in the 'Installation Targets' section in the Shared Package tree. This is what you would see if you've never changed the Install On "Installation Targets".
The default icon/value will change from Installation Targets to whichever Install On targets you select for that particular seq#. Therefore, for example, seq #1 will install on Remote-Fortigate > Student VDOM and Local-FortiGate > root VDOM. In seq #2 will install on Remote-FortiGate > Student VDOM only.

 

NEW QUESTION 44
Refer to the exhibit.

An administrator has created a firewall address object which is used in multiple policy packages for multiple FortiGate devices in an ADOM.
When the installation operation is performed, which IP/Netmask will be installed on managed devices for this firewall address object?

  • A. If no dynamic mapping is defined for other FortiGate devices, the object will not be installed
  • B. 10.200.1.0/24on Remote-FortiGate
  • C. 192.168.0.1/24on Remote-FortiGate
  • D. The FortiManager administrator can choose the value for the firewall address object in the Install Wizard for Remote-FortiGate

Answer: B

Explanation:
Explanation/Reference:

 

NEW QUESTION 45
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.
Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

  • A. When a new policy package is created, it automatically assigns the global policies to the new package.
  • B. When a new policy package is created, you need to reapply the global policy package to the ADOM.
  • C. When a new policy package is created, you need to assign the global policy package from the global ADOM.
  • D. When a new policy package is created, you can select the option to assign the global policies to the new package.

Answer: A

Explanation:
Explanation/Reference:

 

NEW QUESTION 46
View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

  • A. Provides the option to preview configuration changes prior to installing them
  • B. Installs device-level changes to FortiGate without launching the Install Wizard
  • C. Once initiated, the install process cannot be canceled and changes will be installed on the managed device
  • D. Will not create new revision in the revision history

Answer: B,C

 

NEW QUESTION 47
View the following exhibit. Which of the following statements are true based on this configuration setting? (Choose two.)

  • A. This setting will allow automatic updates to the policy package configuration for a managed device.
  • B. This setting is applied globally to all ADOMs.
  • C. This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.
  • D. This setting will enable the ADOMs feature on FortiManager.

Answer: B,C

 

NEW QUESTION 48
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Security Fabric settings are part of the device level settings
  • B. The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration
  • C. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
  • D. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices

Answer: A,C

 

NEW QUESTION 49
Refer to the exhibit.

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.
What is the purpose of this command?

  • A. It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.
  • B. It allows FortiGate to reboot and recover the previous configuration from its configuration file.
  • C. It allows FortiGate to unset central management settings.
  • D. It allows FortiGate to reboot and restore a previously working firmware image.

Answer: B

Explanation:
Reference:
https://docs.fortinet.com/document/fortimanager/6.2.0/fortigate-fortimanager-communicationsprotocol-guide/141304/fgfm-recovery-logic

 

NEW QUESTION 50
How are the points calculated when using FortiMeter to deploy FortiOS-VM? (Choose two.)

  • A. Based on the amount of traffic (per GB) passing through the FortiOS-VM.
  • B. Based on the number of sessions on the mgmt interface of FortiOS-VM.
  • C. Based on the traffic usage on port1 and port2 on FortiOS-VM.
  • D. Based on the FortiGuard service option enabled for FortiOS-VM.

Answer: C,D

Explanation:
Point calculations are based off of traffic passing through the FortiOS-VM interfaces. Points are used per terabyte of traffic and there is an increased point cost as you increase the FortiGuard services in use.
4 pts/TB for a FortiOS-VM tagged as "FW"
10 pts/TB for a FortiOS-VM tagged as "FW + URL"
25 pts/TB for a FortiOS-VM tagged as "UTM"
Reference: https://docs.fortinet.com/uploaded/files/4057/fortinetvm_on-demand_1.pdf

 

NEW QUESTION 51
Which of the following statements are true regarding SD-WAN Central Management? (Choose three.)

  • A. When you configure an SD-WAN, you must specify at least two member interfaces.
  • B. SD-WAN must be enabled on per-ADOM basis
  • C. You can create multiple SD-WAN interfaces per VDOM
  • D. SD-WAN settings can be installed on multiple FortiGate devices at the same time
  • E. The first step in creating an SD-WAN using FortiManager is to create two SD-WAN firewall policies.

Answer: A,B,D

 

NEW QUESTION 52
Refer to the exhibits. An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.


What can be the main reason for these unset commands?

  • A. The Training system template has other default settings
  • B. The Training system template does not have assigned devices
  • C. The DNS addresses in the default system settings are the same as the Training system template
  • D. The ADOM is locked by another administrator

Answer: A

 

NEW QUESTION 53
When statement correct compares FortiManager physical and virtual appliances?

  • A. Physical and virtual FortiManager appliances have an unrestricted daily logging rate.
  • B. Physical and virtual FortiManager appliances may manage unlimited devices and have unrestricted storage.
  • C. Physical and virtual FortiManager appliances use model types and licenses respectively, to differentiate managed device and storage capacity limits.
  • D. Physical and virtual FortiManager appliances use licenses to increase managed device and storage capacity limits.

Answer: C

 

NEW QUESTION 54
Which two statements are correct for configuration changes made by FortiManager scripts? (Choose two)

  • A. When run on managed devices directly, changes are automatically installed to the managed FortiGate devices.
  • B. When run on managed devices directly, you can install changes to the managed FortiGate devices using the installation wizard.
  • C. When run on the device database, you can install changes to the managed FortiGate devices using the installation wizard.
  • D. When run on the device database, changes are automatically installed to the managed FortiGate devices.

Answer: A,C

Explanation:
A script can make many changes to a managed device and are useful for bulk configuration changes and consistency across multiple managed devices. Scripts can be run in three different ways:
Device Database: By default, a script can be executed on the device database. It is recommended you run the changes on the device database (default setting), as this allows you to check what configuration changes you will send to the managed device. Once scripts are run on the device database you can then install these changes to a managed device using the installation wizard.
Policy Package, ADOM database: A script can be run here to create ADOM level objects that will be applied to your managed devices and can then be installed using the installation wizard.
Remote FortiGate Directly (via CLI): A script can be executed directly on the device and you don't need to install these changes using the installation wizard. As the changes are directly installed on the managed device, no option is provided to verify and check the configuration changes through FortiManager.

 

NEW QUESTION 55
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

  • A. Does not back up firmware images saved on FortiManager
  • B. Can be configured from the CLI and GUI
  • C. Backs up all devices and the FortiGuard database.
  • D. Supports FTP, SCP, and SFTP

Answer: A,D

 

NEW QUESTION 56
Refer to the exhibit.

An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.
Which two reasons can explain why the FortiAnalyzer feature panes do not appear? (Choose two.)

  • A. The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.
  • B. FortiAnalyzer features are not enabled on FortiManager.
  • C. The administrator profile does not have full access privileges like the Super_User profile.
  • D. The administrator logged in using the unsecure protocol HTTP, so the view is restricted.

Answer: A,B

 

NEW QUESTION 57
Refer to the exhibit.

Which statement about the object named ALL is true?

  • A. FortiManager updated the object ALL using the FortiGate value in its database.
  • B. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
  • C. FortiManager installed the object ALL with the updated value.
  • D. FortiManager updated the object ALL using the FortiManager value in its database.

Answer: A

 

NEW QUESTION 58
Which of the following are FortiManager features? (Choose two)

  • A. Cloud-based Management
  • B. Administrative Domains
  • C. Virtual Domains
  • D. Centralized Management

Answer: B,D

Explanation:
Explanation

 

NEW QUESTION 59
Refer to the exhibit.

You are using the Quick Install option to install configuration changes on the managed FortiGate.
Which two statements correctly describe the result? (Choose two.)

  • A. It installs device-level changes to FortiGate without launching the Install Wizard
  • B. It provides the option to preview configuration changes prior to installing them
  • C. It will not create a new revision in the revision history
  • D. It cannot be canceled once initiated and changes will be installed on the managed device

Answer: A,D

 

NEW QUESTION 60
......

Pass Fortinet NSE5_FMG-6.2 Premium Files Test Engine pdf - Free Dumps Collection: https://www.actualtests4sure.com/NSE5_FMG-6.2-test-questions.html