Buy Latest Jun 05, 2023 NSE5_FMG-7.0 Exam Q&A PDF - One Year Free Update [Q19-Q34]

Share

Buy Latest Jun 05, 2023 NSE5_FMG-7.0 Exam Q&A PDF - One Year Free Update

Download the Latest NSE5_FMG-7.0 Dump - 2023 NSE5_FMG-7.0 Exam Questions


The Fortinet NSE5_FMG-7.0 certification exam is a challenging exam that requires a significant amount of preparation and experience. The exam consists of 35 multiple-choice questions that must be answered in 60 minutes. The exam is available in multiple languages and can be taken online or in-person at a Fortinet authorized testing center. Upon passing the exam, the candidate will receive an official Fortinet NSE5_FMG-7.0 certification, which is valid for two years.

 

NEW QUESTION # 19
Refer to the exhibit.

Which two statements about the output are true? (Choose two.)

  • A. Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed
  • B. The latest history for the managed FortiGate does not match with the device-level database
  • C. The latest revision history for the managed FortiGate does match with the FortiGate running configuration
  • D. Configuration changes directly made on the FortiGate have been automatically updated to device-level

Answer: B,C

Explanation:
database
Explanation:
STATUS: dev-db: modified; conf: in sync; cond: pending; dm: retrieved; conn: up - dev-db: modified - This is the device setting status which indicates that configuration changes were made on FortiManager. - conf: in sync - This is the sync status which shows that the latest revision history is in sync with Fortigate's configuration. - cond: pending - This is the configuration status which says that configuration changes need to be installed.
Most probably a retrieve was done in the past (dm: retrieved) updating the revision history DB (conf: in sync) and FortiManager device level DB, now there is a new modification on FortiManager device level DB (dev-db: modified) which wasn't installed to FortiGate (cond: pending), hence; revision history DB is not aware of that modification and doesn't match device DB.
Conclusion: - Revision DB does match FortiGate. - No changes were installed to FortiGate yet. - Device DB doesn't match Revision DB. - No changes were done on FortiGate (auto-update) but configuration was retrieved instead After an Auto-Update or Retrieve: device database = latest revision = FGT Then after a manual change on FMG end (but no install yet): latest revision = FGT (still) but now device database has been modified (is different).
After reverting to a previous revision in revision history: device database = reverted revision != FGT


NEW QUESTION # 20
View the following exhibit.

Which statement is true regarding this failed installation log?

  • A. Policy ID 2 is installed in disabled state
  • B. Policy ID 2 is installed without a source address
  • C. Policy ID 2 is installed without a source device
  • D. Policy ID 2 will not be installed

Answer: C


NEW QUESTION # 21
View the following exhibit:

How will FortiManager try to get updates for antivirus and IPS?

  • A. From the default server fdsl.fortinet.com
  • B. From the list of configured override servers with ability to fall back to public FDN servers
  • C. From public FDNI server with highest index number only
  • D. From the configured override server list only

Answer: B


NEW QUESTION # 22
View the following exhibit.

Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?

  • A. Policy seq#3 will be not installed on any managed device
  • B. Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • C. Policy seq#3 will be installed on the Trainer[NAT] VDOM only
  • D. The Install On column value represents successful installation on the managed devices

Answer: B


NEW QUESTION # 23
What is the purpose of the Policy Check feature on FortiManager?

  • A. To find and provide recommendation to combine multiple separate policy packages into one common policy package
  • B. To find and delete disabled firewall policies in the policy package
  • C. To find and merge duplicate policies in the policy package
  • D. To find and provide recommendation for optimizing policies in a policy package

Answer: D


NEW QUESTION # 24
Refer to the exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

  • A. It allows the same administrator to lock more than one ADOM at the same time.
  • B. It is used to validate administrator login attempts through external servers.
  • C. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.
  • D. It disables concurrent read-write access to an ADOM.

Answer: A,D


NEW QUESTION # 25
What will happen if FortiAnalyzer features are enabled on FortiManager?

  • A. FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.
  • B. FortiManager will install the logging configuration to the managed devices
  • C. FortiManager can be used only as a logging device.
  • D. FortiManager will keep all the logs and reports on the FortiManager.

Answer: B


NEW QUESTION # 26
Refer to the exhibit.

An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. 10.200.1.0/24
  • B. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
  • C. 192.168.0.1/24
  • D. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.

Answer: C


NEW QUESTION # 27
Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. You must install these changes using the Install Wizard to a managed device
  • B. The script history will show successful installation of the script on the remote FortiGate
  • C. The Device Settings Status will be tagged as Modified
  • D. The successful execution of a script on the Device Database will create a new revision history

Answer: A,C


NEW QUESTION # 28
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will install configuration changes to managed device automatically
  • B. It will tag the device settings status as Auto-Update
  • C. It will modify the device-level database
  • D. It will generate a new version ID and remove all other revision history versions

Answer: C


NEW QUESTION # 29
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?

  • A. Remove all the interface references such as routes or policies
  • B. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • C. You must specify a gateway address when you create a default static route
  • D. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route

Answer: B


NEW QUESTION # 30
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?

  • A. By a dollar symbol ($) at the end of the device name
  • B. By an Asterisk (*) at the end of the device name
  • C. By an at symbol (@) at the end of the device name
  • D. By a

Answer: B


NEW QUESTION # 31
In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator sent a device registration to FortiManager from a remote FortiGate. Which one of the following statements is true?

  • A. By default, the unregistered FortiGate will appear in the root ADOM.
  • B. The FortiGate will be automatically added to the Training ADOM.
  • C. The FortiManager administrator must add the unregistered device manually to the unregistered device
  • D. The FortiGate will be added automatically to the default ADOM named FortiGate.

Answer: A

Explanation:
manually to the Training ADOM using the Add Device wizard


NEW QUESTION # 32
An administrator is replacing a device on FortiManager by running the following command:
execute device replace sn <devname> <serialnum>.
What device name and serial number must the administrator use?

  • A. Device name and serial number of the replacement device.
  • B. Device name of the original device and serial number of the replacement device.
  • C. Device name and serial number of the original device.
  • D. Device name of the replacement device and serial number of the original device.

Answer: B


NEW QUESTION # 33
What are two outcomes of ADOM revisions? (Choose two.)

  • A. ADOM revisions can save the current size of the whole ADOM
  • B. ADOM revisions can create System Checkpoints for the FortiManager configuration
  • C. ADOM revisions can significantly increase the size of the configuration backups.
  • D. ADOM revisions can save the current state of all policy packages and objects for an ADOM

Answer: C,D


NEW QUESTION # 34
......

Verified NSE5_FMG-7.0 Dumps Q&As - 1 Year Free & Quickly Updates: https://actualtests.trainingquiz.com/NSE5_FMG-7.0-training-materials.html