NSE5_FMG-7.2 Exam Questions Get Updated [2024] with Correct Answers
Practice NSE5_FMG-7.2 Questions With Certification guide Q&A from Training Expert BootcampPDF
Fortinet NSE5_FMG-7.2 exam covers a wide range of topics, including installation and configuration of FortiManager, device management, policy management, and troubleshooting. NSE5_FMG-7.2 exam is designed to test the candidate's ability to manage and configure FortiManager in a variety of scenarios. Candidates must demonstrate their ability to configure and manage policies, profiles, and templates, as well as troubleshoot common issues with FortiManager.
NEW QUESTION # 12
Refer to the exhibit.
An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.
Which two reasons can explain why the FortiAnalyzer feature panes do not appear? (Choose two.)
- A. The administrator logged in using the unsecure protocol HTTP, so the view is restricted.
- B. FortiAnalyzer features are not enabled on FortiManager.
- C. The administrator profile does not have full access privileges like the Super_User profile.
- D. The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.
Answer: B,C
NEW QUESTION # 13
Which configuration setting for FortiGate is part of an ADOM-level database on FortiManager?
- A. SNMP
- B. Security profiles
- C. Routing
- D. NSX-T Service Template
Answer: B
NEW QUESTION # 14
In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?
- A. Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.
- B. FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.
- C. Secondary device with highest priority will automatically be promoted to the primary role, and manually reconfigure all other secondary devices to point to the new primary device
- D. Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.
Answer: A
Explanation:
FortiManager_6.4_Study_Guide-Online - page 346
FortiManager HA doesn't support IP takeover where an HA state transition is transparent to administrators. If a failure of the primary occurs, the administrator must take corrective action to resolve the problem that may include invoking the state transition. If the primary device fails, the administrator must do the following in order to return the FortiManager HA to a working state:
1. Manually reconfigure one of the secondary devices to become the primary device
2. Reconfigure all other secondary devices to point to the new primary device
NEW QUESTION # 15
What is the advantage of using FortiManager to manage PortiAnalyzer?
- A. It allows FortiManager to manage all FortiGate devices
- B. It allows FortiManager to fun reports based on FortiAnalyzer
- C. It allows FortiManager to store all managed FortiGate device logs
- D. It allows FortiManager to act as a collector and FortiAnalyzer device
Answer: D
NEW QUESTION # 16
Refer to the exhibit.
In the event that the monitored interface for the primary FortiManager device fails, which statement is true about FortiManager HA?
- A. Reboot the failed device to remove its IP from the primary device.
- B. The FortiManager HAfailover is transparent to administrators and does not require any reconfiguration.
- C. Reconfigure the primary device lo remove the peer IP of the failed device.
- D. Manually promote one of the working secondary devices to the primary role, and reboot the old primary device to remove the peer IP of the failed device.
Answer: B
NEW QUESTION # 17
Which two conditions trigger FortiManager to create a new revision history? (Choose two.)
- A. When FortiManager is auto-updated with configuration changes made directly on a managed device
- B. When FortiManager installs device-level changes to a managed device
- C. When changes to device-level database is made on FortiManager
- D. When configuration revision is reverted to previous revision in the revision history
Answer: A,B
Explanation:
Reference:https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FortiManager_Admin_Guide/1000_Device%20Manage
NEW QUESTION # 18
Refer to the exhibit.
Which statement about the object named ALL is true?
- A. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
- B. FortiManager updated the object ALL using the FortiGate value in its database.
- C. FortiManager installed the object ALL with the updated value.
- D. FortiManager updated the object ALL using the FortiManager value in its database.
Answer: B
NEW QUESTION # 19
What is the purpose of the Policy Check feature on FortiManager?
- A. It merges and creates dynamic mappings for duplicate objects used in a policy package.
- B. It provides recommendations to combine similar policy packages within an ADOM into one single policy package.
- C. It provides recommendations for optimizing policies in a policy package.
- D. It compares the policy packages with the revision history, and updates policy packages in the ADOM database.
Answer: C
NEW QUESTION # 20
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)
- A. The Security Fabric settings are part of the device level settings
- B. TheFabric Viewmodule enables you to generate the Security Fabric ratings for Security Fabric devices
- C. TheFabric Viewmodule enables you to view the Security Fabric ratings for Security Fabric devices
- D. The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration
Answer: A,C
NEW QUESTION # 21
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)
- A. Supports FTP, SCP, and SFTP
- B. Can be configured from the CLI and GUI
- C. Backs up all devices and the FortiGuard database.
- D. Does not back up firmware images saved on FortiManager
Answer: A,D
NEW QUESTION # 22
View the following exhibit.
Which one of the following statements is true regarding the object named ALL?
- A. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
- B. FortiManager installed the object ALL with the updated value.
- C. FortiManager updated the object ALL using FortiManager's value in its database
- D. FortiManager updated the object ALL using FortiGate's value in its database
Answer: D
NEW QUESTION # 23
View the following exhibit:
Which two statements are true if the script is executed using theRemote FortiGate Directly (via CLI)option?
(Choose two.)
- A. You must install these changes usingInstall Wizard
- B. FortiManager will create a new revision history.
- C. FortiGate will auto-update the FortiManager's device-level database.
- D. FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.
Answer: B,C
NEW QUESTION # 24
An administrator has enabled Service Access on FortiManager. What is the purpose of Service Access on the FortiManager interface?
- A. It allows administrative access to FortiManager.
- B. It allows third-party applications to gain read/write access to FortiManager.
- C. It allows FortiManager to respond to requests for FortiGuard services from FortiGate devices.
- D. It allows FortiManager to determine the connection status of managed devices.
Answer: C
NEW QUESTION # 25
View the following exhibit.
Which one of the following statements is true regarding the object named ALL?
- A. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
- B. FortiManager installed the object ALL with the updated value.
- C. FortiManager updated the object ALL using FortiManager's value in its database
- D. FortiManager updated the object ALL using FortiGate's value in its database
Answer: D
NEW QUESTION # 26
What will happen if FortiAnalyzer features are enabled on FortiManager?
- A. FortiManager can be used only as a logging device.
- B. FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.
- C. FortiManager will keep all the logs and reports on the FortiManager.
- D. FortiManager will install the logging configuration to the managed devices
Answer: D
NEW QUESTION # 27
Which two conditions trigger FortiManager to create a new revision history? (Choose two.)
- A. When changes to the device-level database are made on FortiManager
- B. When a configuration revision is reverted to a previous revision in the revision history
- C. When FortiManager is auto-updated with configuration changes made directly on a managed device
- D. When FortiManager installs device-level changes on a managed device
Answer: A,D
NEW QUESTION # 28
Which two statements regarding device management on FortiManager are true? (Choose two.)
- A. FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.
- B. FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.
- C. The maximum number of managed devices for each ADOM is 500.
- D. FortiGate devices in HA cluster devices are counted as a single device.
Answer: B,D
NEW QUESTION # 29
Refer to the exhibit.
You ate using the Quick install option to install configuration changes on the managed FortiGate Which two statements correctly describe the result? (Choose two)
- A. It installs device-level changes on the FortiGate device without launching the Install Wizard
- B. It installs all the changes in the device database first and the administrator must reinstall the changes on the FodiGate device
- C. It provides the option to preview only the policy package changes before installing them
- D. It install provisioning template changes on the FortiGate device
Answer: A,D
NEW QUESTION # 30
An administrator is replacing a device on FortiManager by running the following command:
execute device replace sn <devname> <serialnum>.
What device name and serial number must the administrator use?
- A. Device name of the original device and serial number of the replacement device.
- B. Device name and serial number of the original device.
- C. Device name of the replacement device and serial number of the original device.
- D. Device name and serial number of the replacement device.
Answer: A
NEW QUESTION # 31
Refer to the exhibit.
Given the configuration shown in the exhibit, how did FortiManager handle the service category named General?
- A. FortiManager ignored the firewall service category General and updated the FortiGate duplicate value in the FortiGate database.
- B. FortiManager ignored the firewall service category general and deleted the duplicate value In Its database
- C. FortiManager ignored the firewall service category General but created a new service category in its database.
- D. FortiManager ignored the firewall service category General and did not update Its database with the value
Answer: D
NEW QUESTION # 32
View the following exhibit.
Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?
- A. Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
- B. The Install On column value represents successful installation on the managed devices
- C. Policy seq#3 will be installed on the Trainer[NAT] VDOM only
- D. Policy seq#3 will be not installed on any managed device
Answer: A
NEW QUESTION # 33
Refer to the exhibit.
On FortiManager, an administrator created a new system template named Training with two new DNS addresses. During the installation preview stage, the administrator notices that central-management settings need to be purged.
What can be the main reason for the central-management purge command?
- A. The ADOM is locked by another administrator.
- B. The Training system template has a default FortiGuard widget.
- C. The Remote-FortiGate device does not have any DNS server-list configured in the central-management settings.
- D. The DNS addresses in the default system settings are the same as the Training system template.
Answer: C
NEW QUESTION # 34
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?
- A. By a dollar symbol ($) at the end of the device name
- B. By an Asterisk (*) at the end of the device name
- C. By an at symbol (@) at the end of the device name
- D. Question mark(?) at the end of the device name
Answer: B
NEW QUESTION # 35
......
Fortinet NSE5_FMG-7.2 is an exam that tests the knowledge and skills of IT professionals in managing and configuring FortiManager 7.2. FortiManager is a centralized management solution that provides a single pane of glass to manage and configure Fortinet security products. NSE5_FMG-7.2 exam is designed for professionals who want to validate their knowledge in deploying, configuring, and managing Fortinet security products using FortiManager.
Preparing for the Fortinet NSE5_FMG-7.2 exam requires a thorough understanding of FortiManager and its capabilities. Candidates should be familiar with the various features and tools offered by FortiManager, as well as best practices for managing and configuring Fortinet security solutions. They should also have hands-on experience working with FortiManager in a production environment.
Prepare Top Fortinet NSE5_FMG-7.2 Exam Audio Study Guide Practice Questions Edition: https://www.bootcamppdf.com/NSE5_FMG-7.2_exam-dumps.html
Free Fortinet NSE5_FMG-7.2 Test Practice Test Questions Exam Dumps: https://drive.google.com/open?id=1WNskwnFHip36lrldThrPYEt6vkAIFTT1