Free NSE5_FMG-6.2 braindumps download (NSE5_FMG-6.2 exam dumps Free Updated Dec 18, 2021) [Q50-Q67]

Share

Free NSE5_FMG-6.2 braindumps download (NSE5_FMG-6.2 exam dumps Free Updated Dec 18, 2021)

NSE5_FMG-6.2 Dumps for Pass Guaranteed - Pass NSE5_FMG-6.2 Exam 2021

NEW QUESTION 50
An administrator with the Super_Userprofile is unable to log in to FortiManager because of an authentication failure message.
Which troubleshooting step should you take to resolve the issue?

  • A. Make sure ADOMs are enabled and the administrator has access to the Global ADOM
  • B. Make sure FortiManager Access is enabled in the administrator profile
  • C. Make sure the administrator IP address is part of the trusted hosts
  • D. Make sure Offline Mode is disabled

Answer: C

Explanation:
Explanation

 

NEW QUESTION 51
Refer to the exhibit.

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

  • A. It supports the FortiManager script feature
  • B. It allows making configuration changes for managed devices on FortiManager panes
  • C. FortiManager automatically installs the configuration difference in revisions on the managed FortiGate
  • D. You cannot assign the same ADOM to multiple administrators

Answer: B,C

 

NEW QUESTION 52
Which of the following are FortiManager features? (Choose two)

  • A. Cloud-based Management
  • B. Administrative Domains
  • C. Virtual Domains
  • D. Centralized Management

Answer: B,D

Explanation:
Explanation

 

NEW QUESTION 53
View the following exhibit. Which statement is true regarding this failed installation log?

  • A. Policy ID 2 will not be installed
  • B. Policy ID 2 is installed without a source device
  • C. Policy ID 2 is installed without a source address
  • D. Policy ID 2 is installed in disabled state

Answer: B

Explanation:
Confirmed on FortiGate using CLI cmds above. The policy created above will be created and shows up in the "IPv4 Policy" section (so it is enabled), but does not have a device listed as the source device.

 

NEW QUESTION 54
When installation is performed from the FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

  • A. FortiManager will revert and install a previous configuration revision on the managed FortiGate.
  • B. FortiGate will reject the CLI commands that will cause the tunnel to go down.
  • C. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
  • D. FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.

Answer: C

Explanation:
The point of this question is "recovery logic". The only real issue of concern is whether the FGFM tunnel goes down because of the config pushed from FM to FG.
If the tunnel goes down because of this pushed change, FM cannot do anything about it....because the tunnel is now down.
The only way to have recovery logic when change was pushed from FM to FG, is to provide FG with a mechanism to determine if the changes it received caused the tunnel to go down. Therefore, the answer has to involve what the FG will do. FM's role is simply to provide FG with both SET operations for the change and UNSET options to roll back. Roll back occurs after 15min. FG will test tunnel condition and if it is down it will issue the UNSET cmd on those changes that it received. If this still does not resolve the tunnel down issue, the FG will reboot. Changes at this point are held in running (volitle) memory and will be lost (and therefore reverted) when FG reboots.

 

NEW QUESTION 55
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will tag the device settings status as Auto-Update
  • B. It will generate a new version ID and remove all other revision history versions
  • C. It will install configuration changes to managed device automatically
  • D. It will modify the device-level database

Answer: D

 

NEW QUESTION 56
Which two items are included in the FortiManager backup? (Choose two.)

  • A. FortiGuard database
  • B. All devices
  • C. Global database
  • D. Logs

Answer: B,C

Explanation:
Reference:
https://kb.fortinet.com/kb/viewContent.do?externalId=FD34549

 

NEW QUESTION 57
An administrator would like to create an SD-WAN using central management in the Training ADOM.
To create an SD-WAN using central management, which two steps must be completed? (Choose two.)

  • A. Remove all the interface references such as routes or policies that will be a part of SD-WAN member interfaces
  • B. Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN template settings
  • C. Specify a gateway address when you create a default SD-WAN static route
  • D. Enable SD-WAN central management in the Training ADOM

Answer: A,D

 

NEW QUESTION 58
In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?

  • A. Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.
  • B. Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.
  • C. Secondary device with highest priority will automatically be promoted to the primary role, and manually reconfigure all other secondary devices to point to the new primary device
  • D. FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.

Answer: A

Explanation:
If the primary FortiManager unit fails you must manually configure one of the backup units to become the primary unit. The new primary unit will have the same IP addresses as it did when it was the backup unit Reconfigure the cluster by removing the failed unit from the cluster configuration. If the primary unit has failed, this means configuring one of the backup units to be the primary unit and adding peer IPs for all of the remaining backup units to the new primary unit configuration.

 

NEW QUESTION 59
Which two statements are correct regarding FortiGuard features on FortiManager?(Choose two)

  • A. FortiManager can function as a local FortiGuard Distribution Server (FDS).
  • B. When FortiManager is configured for closed network operation, it can connect to public FDS servers to obtain managed device information and sync packages.
  • C. FortiGuard information is not synchronized across a FortiManager cluster.
  • D. In FortiManger HA only master FortiManager can act as an FDS server.

Answer: A,C

 

NEW QUESTION 60
View the following exhibit.

An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?

  • A. The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate
  • B. The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted
  • C. The unused objects that are not tied to the firewall policies in policy package will be deleted from the FortiManager database
  • D. The unused objects that are not tied to the firewall policies will be installed on FortiGate

Answer: B

 

NEW QUESTION 61
Refer to the exhibit.

An administrator has created a firewall address object which is used in multiple policy packages for multiple FortiGate devices in an ADOM.
When the installation operation is performed, which IP/Netmask will be installed on managed devices for this firewall address object?

  • A. 10.200.1.0/24 on Remote-FortiGate
  • B. If no dynamic mapping is defined for other FortiGate devices, the object will not be installed
  • C. The FortiManager administrator can choose the value for the firewall address object in the Install Wizard for Remote-FortiGate
  • D. 192.168.0.1/24 on Remote-FortiGate

Answer: A

 

NEW QUESTION 62
Refer to the exhibit. If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)

  • A. If the FGFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.
  • B. During discovery, the FortiManager NATed IP address is not set by default on FortiGate.
  • C. FortiGate can announce itself to FortiManager only if the FortiManager non-NATed IP address is configured on FortiGate under central management.
  • D. FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

Answer: B,D

Explanation:
Fortimanager can discover FortiGate through a NATed FortiGate IP address. If a FortiManager NATed IP address is configured on FortiGate, then FortiGate can announce itself to FortiManager. FortiManager will not attempt to re-establish the FGFM tunnel to the FortiGate NATed IP address, if the FGFM tunnel is interrupted. Just like it was in the NATed FortiManager scenario, the FortiManager NATed IP address in this scenario is not configured under FortiGate central management configuration.

 

NEW QUESTION 63
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.
Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

  • A. When a new policy package is created, it automatically assigns the global policies to the new package.
  • B. When a new policy package is created, you need to reapply the global policy package to the ADOM.
  • C. When a new policy package is created, you can select the option to assign the global policies to the new package.
  • D. When a new policy package is created, you need to assign the global policy package from the global ADOM.

Answer: A

 

NEW QUESTION 64
Which of the following conditions trigger FortiManager to create a new revision history? (Choose two.)

  • A. When FortiManager is auto-updated with configuration changes made directly on a managed device
  • B. When changes to device-level database is made on FortiManager
  • C. When configuration revision is reverted to previous revision in the revision history
  • D. When FortiManager installs device-level changes to a managed device

Answer: A,D

Explanation:
When a new configuration is installed, FortiManager compares the latest revision history running on the device with the changes made on FortiManager.
FortiManager then creates a new revision in the revision history and installs these changes on the managed device. Modifying configuration directly on a managed device creates automatically new revision.

 

NEW QUESTION 65
Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. The script history will show successful installation of the script on the remote FortiGate
  • B. You must install these changes using the Install Wizard to a managed device
  • C. The successful execution of a script on the Device Database will create a new revision history
  • D. The Device Settings Status will be tagged as Modified

Answer: A,C

 

NEW QUESTION 66
What configuration setting for FortiGate is part of a device-level database on FortiManager?

  • A. Firewall policies
  • B. VIP and IP Pools
  • C. Routing
  • D. Security profiles

Answer: C

 

NEW QUESTION 67
......

Verified NSE5_FMG-6.2 dumps Q&As - Pass Guarantee Exam Dumps Test Engine: https://www.realvce.com/NSE5_FMG-6.2_free-dumps.html

Verified NSE5_FMG-6.2 dumps and 85 unique questions: https://drive.google.com/open?id=1owo4sJVMrK1reNGcQrKIWiT-oNLmW3Sd