Buy Latest Jun 05, 2023 NSE5_FMG-7.0 Exam Q&A PDF - One Year Free Update
Download the Latest NSE5_FMG-7.0 Dump - 2023 NSE5_FMG-7.0 Exam Questions
The Fortinet NSE5_FMG-7.0 certification exam is a challenging exam that requires a significant amount of preparation and experience. The exam consists of 35 multiple-choice questions that must be answered in 60 minutes. The exam is available in multiple languages and can be taken online or in-person at a Fortinet authorized testing center. Upon passing the exam, the candidate will receive an official Fortinet NSE5_FMG-7.0 certification, which is valid for two years.
NEW QUESTION # 19
Refer to the exhibit.
Which two statements about the output are true? (Choose two.)
- A. Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed
- B. The latest history for the managed FortiGate does not match with the device-level database
- C. The latest revision history for the managed FortiGate does match with the FortiGate running configuration
- D. Configuration changes directly made on the FortiGate have been automatically updated to device-level
Answer: B,C
Explanation:
database
Explanation:
STATUS: dev-db: modified; conf: in sync; cond: pending; dm: retrieved; conn: up - dev-db: modified - This is the device setting status which indicates that configuration changes were made on FortiManager. - conf: in sync - This is the sync status which shows that the latest revision history is in sync with Fortigate's configuration. - cond: pending - This is the configuration status which says that configuration changes need to be installed.
Most probably a retrieve was done in the past (dm: retrieved) updating the revision history DB (conf: in sync) and FortiManager device level DB, now there is a new modification on FortiManager device level DB (dev-db: modified) which wasn't installed to FortiGate (cond: pending), hence; revision history DB is not aware of that modification and doesn't match device DB.
Conclusion: - Revision DB does match FortiGate. - No changes were installed to FortiGate yet. - Device DB doesn't match Revision DB. - No changes were done on FortiGate (auto-update) but configuration was retrieved instead After an Auto-Update or Retrieve: device database = latest revision = FGT Then after a manual change on FMG end (but no install yet): latest revision = FGT (still) but now device database has been modified (is different).
After reverting to a previous revision in revision history: device database = reverted revision != FGT
NEW QUESTION # 20
View the following exhibit.
Which statement is true regarding this failed installation log?
- A. Policy ID 2 is installed in disabled state
- B. Policy ID 2 is installed without a source address
- C. Policy ID 2 is installed without a source device
- D. Policy ID 2 will not be installed
Answer: C
NEW QUESTION # 21
View the following exhibit:
How will FortiManager try to get updates for antivirus and IPS?
- A. From the default server fdsl.fortinet.com
- B. From the list of configured override servers with ability to fall back to public FDN servers
- C. From public FDNI server with highest index number only
- D. From the configured override server list only
Answer: B
NEW QUESTION # 22
View the following exhibit.
Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?
- A. Policy seq#3 will be not installed on any managed device
- B. Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
- C. Policy seq#3 will be installed on the Trainer[NAT] VDOM only
- D. The Install On column value represents successful installation on the managed devices
Answer: B
NEW QUESTION # 23
What is the purpose of the Policy Check feature on FortiManager?
- A. To find and provide recommendation to combine multiple separate policy packages into one common policy package
- B. To find and delete disabled firewall policies in the policy package
- C. To find and merge duplicate policies in the policy package
- D. To find and provide recommendation for optimizing policies in a policy package
Answer: D
NEW QUESTION # 24
Refer to the exhibit.
Given the configuration shown in the exhibit, which two statements are true? (Choose two.)
- A. It allows the same administrator to lock more than one ADOM at the same time.
- B. It is used to validate administrator login attempts through external servers.
- C. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.
- D. It disables concurrent read-write access to an ADOM.
Answer: A,D
NEW QUESTION # 25
What will happen if FortiAnalyzer features are enabled on FortiManager?
- A. FortiManager will enable ADOMs to collect logs automatically from non-FortiGate devices.
- B. FortiManager will install the logging configuration to the managed devices
- C. FortiManager can be used only as a logging device.
- D. FortiManager will keep all the logs and reports on the FortiManager.
Answer: B
NEW QUESTION # 26
Refer to the exhibit.
An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?
- A. 10.200.1.0/24
- B. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
- C. 192.168.0.1/24
- D. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
Answer: C
NEW QUESTION # 27
Refer to the exhibit.
Which two statements are true if the script is executed using the Device Database option? (Choose two.)
- A. You must install these changes using the Install Wizard to a managed device
- B. The script history will show successful installation of the script on the remote FortiGate
- C. The Device Settings Status will be tagged as Modified
- D. The successful execution of a script on the Device Database will create a new revision history
Answer: A,C
NEW QUESTION # 28
What will be the result of reverting to a previous revision version in the revision history?
- A. It will install configuration changes to managed device automatically
- B. It will tag the device settings status as Auto-Update
- C. It will modify the device-level database
- D. It will generate a new version ID and remove all other revision history versions
Answer: C
NEW QUESTION # 29
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?
- A. Remove all the interface references such as routes or policies
- B. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
- C. You must specify a gateway address when you create a default static route
- D. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
Answer: B
NEW QUESTION # 30
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?
- A. By a dollar symbol ($) at the end of the device name
- B. By an Asterisk (*) at the end of the device name
- C. By an at symbol (@) at the end of the device name
- D. By a
Answer: B
NEW QUESTION # 31
In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator sent a device registration to FortiManager from a remote FortiGate. Which one of the following statements is true?
- A. By default, the unregistered FortiGate will appear in the root ADOM.
- B. The FortiGate will be automatically added to the Training ADOM.
- C. The FortiManager administrator must add the unregistered device manually to the unregistered device
- D. The FortiGate will be added automatically to the default ADOM named FortiGate.
Answer: A
Explanation:
manually to the Training ADOM using the Add Device wizard
NEW QUESTION # 32
An administrator is replacing a device on FortiManager by running the following command:
execute device replace sn <devname> <serialnum>.
What device name and serial number must the administrator use?
- A. Device name and serial number of the replacement device.
- B. Device name of the original device and serial number of the replacement device.
- C. Device name and serial number of the original device.
- D. Device name of the replacement device and serial number of the original device.
Answer: B
NEW QUESTION # 33
What are two outcomes of ADOM revisions? (Choose two.)
- A. ADOM revisions can save the current size of the whole ADOM
- B. ADOM revisions can create System Checkpoints for the FortiManager configuration
- C. ADOM revisions can significantly increase the size of the configuration backups.
- D. ADOM revisions can save the current state of all policy packages and objects for an ADOM
Answer: C,D
NEW QUESTION # 34
......
Verified NSE5_FMG-7.0 Dumps Q&As - 1 Year Free & Quickly Updates: https://actualtests.trainingquiz.com/NSE5_FMG-7.0-training-materials.html

