This page was exported from Top Exam Collection [ http://blog.topexamcollection.com ] Export date:Thu Apr 3 2:37:32 2025 / +0000 GMT ___________________________________________________ Title: 2022 Updated Verified Pass NSE5_FMG-7.0 Exam - Real Questions & Answers [Q19-Q38] --------------------------------------------------- 2022 Updated Verified Pass NSE5_FMG-7.0 Exam - Real Questions and Answers Dumps Moneyack Guarantee - NSE5_FMG-7.0 Dumps Approved Dumps NEW QUESTION 19What does the diagnose dvm check-integrity command do? (Choose two.)  Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOMsyntax  Verifies and corrects unregistered, registered, and deleted device states  Verifies and corrects database schemas in all object tables  Verifies and corrects duplicate VDOM entries 6.2 Study Guide page 305 verify and correct parts of the device manager databases, including: – inconsistent device-to-group and group-to-ADOM memberships – unregistered, registered, and deleted device states – device lock statuses – duplicate VDOM entriesNEW QUESTION 20In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?  Secondary device with highest priority will automatically be promoted to the primary role, and manually reconfigure all other secondary devices to point to the new primary device  Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.  Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.  FortiManager HA state transition is transparent to administrators and does not require any reconfiguration. FortiManager_6.4_Study_Guide-Online – page 346FortiManager HA doesn’t support IP takeover where an HA state transition is transparent to administrators. If a failure of the primary occurs, the administrator must take corrective action to resolve the problem that may include invoking the state transition. If the primary device fails, the administrator must do the following in order to return the FortiManager HA to a working state:1. Manually reconfigure one of the secondary devices to become the primary device2. Reconfigure all other secondary devices to point to the new primary deviceNEW QUESTION 21View the following exhibit:How will FortiManager try to get updates for antivirus and IPS?  From the list of configured override servers with ability to fall back to public FDN servers  From the configured override server list only  From the default server fdsl.fortinet.com  From public FDNI server with highest index number only NEW QUESTION 22Which two items does an FGFM keepalive message include? (Choose two.)  FortiGate uptime  FortiGate license information  FortiGate IPS version  FortiGate configuration checksum NEW QUESTION 23Which two items are included in the FortiManager backup? (Choose two.)  FortiGuard database  Global database  Logs  All devices NEW QUESTION 24Refer to the exhibit.An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.What is the purpose of this command?  It allows FortiGate to unset central management settings.  It allows FortiGate to reboot and recover the previous configuration from its configuration file.  It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.  It allows FortiGate to reboot and restore a previously working firmware image. NEW QUESTION 25An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message.Which troubleshooting step should you take to resolve the issue?  Make sure FortiManager Access is enabled in the administrator profile  Make sure Offline Mode is disabled  Make sure the administrator IP address is part of the trusted hosts.  Make sure ADOMs are enabled and the administrator has access to the Global ADOM Even if a user entered the correct userid/password, the FMG denies access if a user is logging in from an untrusted source IP subnets.NEW QUESTION 26Refer to the exhibits.Exhibit one.Exhibit two.An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.What can be the main reason for these unset commands?  The DNS addresses in the default system settings are the same as the Training system template  The Training system template has other default settings  The ADOM is locked by another administrator  The Training system template does not have assigned devices NEW QUESTION 27An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to themanaged FortiGate.In which database will the configuration be saved?  Device-level database  Revision history database  ADOM-level database  Configuration-level database https://kb.fortinet.com/kb/documentLink.do?externalID=FD47942NEW QUESTION 28What will happen if FortiAnalyzer features are enabled on FortiManager?  FortiManager will reboot  FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager  FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices  FortiManager can be used only as a logging device. NEW QUESTION 29Which two settings are required for FortiManager Management Extension Applications (MEA)? (Choose two.)  When you configure MEA, you must open TCP or UDP port 540.  You must open the ports to the Fortinet registry  You must create a MEA special policy on FortiManager using the super user profile  The administrator must have the super user profile. NEW QUESTION 30View the following exhibit.Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?  The Install On column value represents successful installation on the managed devices  Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets  Policy seq#3 will be installed on the Trainer[NAT] VDOM only  Policy seq#3 will be not installed on any managed device NEW QUESTION 31View the following exhibit:An administrator used the value shown in the exhibit when importing a Local-FortiGate into FortiManager. What name will be used to display the firewall policy for port1?  port1 on FortiGate and WAN on FortiManager  port1 on both FortiGate and FortiManager  WAN zone on FortiGate and WAN zone on FortiManager  WAN zone on FortiGate and WAN interface on FortiManager NEW QUESTION 32Refer to the following exhibit:Which of the following statements are true based on this configuration? (Choose two.)  The same administrator can lock more than one ADOM at the same time  Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times out  Unlocking an ADOM will submit configuration changes automatically to the approval administrator  Unlocking an ADOM will install configuration automatically on managed devices NEW QUESTION 33An administrator has enabled Service Access on FortiManager.What is the purpose of Service Access on the FortiManager interface?  Allows FortiManager to download IPS packages  Allows FortiManager to respond to request for FortiGuard services from FortiGate devices  Allows FortiManager to run real-time debugs on the managed devices  Allows FortiManager to automatically configure a default route FortiManager 6.2 Study guide page 350NEW QUESTION 34Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)  Managed gateways are devices managed by FortiManager in the same ADOM  External gateways are third-party VPN gateway devices only  Protected subnets are the subnets behind the device that you don’t want to allow access to over the IPsec VPN  Managed devices in other ADOMs must be treated as external gateways NEW QUESTION 35An administrator run the reload failure command: diagnose test deploymanager reload config<deviceid> on FortiManager. What does this command do?  It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.  It installs the latest configuration on the specified FortiGate and update the revision history database.  It compares and provides differences in configuration on FortiManager with the current runningconfiguration of the specified FortiGate.  It installs the provisioning template configuration on the specified FortiGate. NEW QUESTION 36An administrator has enabled Service Access on FortiManager.What is the purpose of Service Access on the FortiManager interface?  Allows FortiManager to download IPS packages  Allows FortiManager to respond to request for FortiGuard services from FortiGate devices  Allows FortiManager to run real-time debugs on the managed devices  Allows FortiManager to automatically configure a default route NEW QUESTION 37What is the purpose of the Policy Check feature on FortiManager?  To find and provide recommendation to combine multiple separate policy packages into one common policy package  To find and merge duplicate policies in the policy package  To find and provide recommendation for optimizing policies in a policy package  To find and delete disabled firewall policies in the policy package NEW QUESTION 38Refer to the exhibit.According to the error message why is FortiManager failing to add the FortiAnalyzer device?  The administrator must turn off the Use Legacy Device login and add the FortiAnaJyzer device to the same network as Forti-Manager  The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface  The administrator must use the Add Model Device section and discover the FortiAnaJyzer device  The administrator must use the correct user name and password of the FortiAnalyzer device  Loading … Fortinet NSE5_FMG-7.0 Exam Syllabus Topics: TopicDetailsTopic 1Identify ADOM revisions and database versions Implement and troubleshoot FortiManager HATopic 2Use the global ADOM to envelop policy packages Perform initial configurationTopic 3Troubleshoot policy and object management Install configuration changes using scriptsTopic 4Perform the import and installation methods Diagnose issues using the revision history   Updated PDF (New 2022) Actual Fortinet NSE5_FMG-7.0 Exam Questions: https://www.topexamcollection.com/NSE5_FMG-7.0-vce-collection.html --------------------------------------------------- Images: https://blog.topexamcollection.com/wp-content/plugins/watu/loading.gif https://blog.topexamcollection.com/wp-content/plugins/watu/loading.gif --------------------------------------------------- --------------------------------------------------- Post date: 2022-12-18 13:06:27 Post date GMT: 2022-12-18 13:06:27 Post modified date: 2022-12-18 13:06:27 Post modified date GMT: 2022-12-18 13:06:27