合格目指せNSE5_FMG-7.0試験最新のNSE5_FMG-7.0試験問題集PDF 2024年更新 [Q27-Q52]

Share

合格目指せNSE5_FMG-7.0試験最新のNSE5_FMG-7.0試験問題集PDF 2024年更新

NSE5_FMG-7.0試験問題集、365日更新無料サンプル


Fortinet NSE5_FMG-7.0 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • Troubleshoot device settings
  • Register devices in ADOMs
  • Configure FortiGuard services
トピック 2
  • Perform the import and installation methods
  • Diagnose issues using the revision history
トピック 3
  • Configure various management panes and extensions
  • Configure administrative domains (ADOMs)
トピック 4
  • Use the global ADOM to envelop policy packages
  • Perform initial configuration

 

質問 # 27
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?

  • A. By an Asterisk (*) at the end of the device name
  • B. By a Question:
  • C. By an at symbol (@) at the end of the device name
  • D. By a dollar symbol ($) at the end of the device name

正解:A


質問 # 28
View the following exhibit.

Which one of the following statements is true regarding the object named ALL?

  • A. FortiManager updated the object ALL using FortiManager's value in its database
  • B. FortiManager updated the object ALL using FortiGate's value in its database
  • C. FortiManager created the object ALL as a unique entity in its database, which can be only used by this
    managed FortiGate.
  • D. FortiManager installed the object ALL with the updated value.

正解:B


質問 # 29
View the following exhibit.

When using Install Config option to install configuration changes to managed FortiGate, which of the following statements are true? (Choose two.)

  • A. Provides the option to preview configuration changes prior to installing them
  • B. Installs device-level changes to FortiGate without launching the Install Wizard
  • C. Will not create new revision in the revision history
  • D. Once initiated, the install process cannot be canceled and changes will be installed on the managed device

正解:B、D


質問 # 30
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?

  • A. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • B. Remove all the interface references such as routes or policies
  • C. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
  • D. You must specify a gateway address when you create a default static route

正解:A


質問 # 31
View the following exhibit.

What is the purpose of setting ADOM Mode to Advanced?

  • A. The setting disables concurrent ADOM access and adds ADOM locking
  • B. The setting allows automatic updates to the policy package configuration for a managed device
  • C. The setting enables the ADOMs feature on FortiManager
  • D. This setting allows you to assign different VDOMs from the same FortiGate to different ADOMs.

正解:D


質問 # 32
View the following exhibit.

Which one of the following statements is true regarding the object named ALL?

  • A. FortiManager updated the object ALL using FortiManager's value in its database
  • B. FortiManager updated the object ALL using FortiGate's value in its database
  • C. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
  • D. FortiManager installed the object ALL with the updated value.

正解:B


質問 # 33
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

  • A. Can be configured from the CLI and GUI
  • B. Backs up all devices and the FortiGuard database.
  • C. Does not back up firmware images saved on FortiManager
  • D. Supports FTP, SCP, and SFTP

正解:C、D


質問 # 34
When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

  • A. FortiManager will revert and install a previous configuration revision on the managed FortiGate.
  • B. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
  • C. FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.
  • D. FortiGate will reject the CLI commands that will cause the tunnel to go down.

正解:B


質問 # 35
View the following exhibit.

Which statement is true regarding this failed installation log?

  • A. Policy ID 2 is installed in disabled state
  • B. Policy ID 2 will not be installed
  • C. Policy ID 2 is installed without a source device
  • D. Policy ID 2 is installed without a source address

正解:C


質問 # 36
Refer to the exhibit.

Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)

  • A. It allows making configuration changes for managed devices on FortiManager panes
  • B. It supports the FortiManager script feature
  • C. FortiManager automatically installs the configuration difference in revisions on the managed FortiGate
  • D. You cannot assign the same ADOM to multiple administrators

正解:A、B

解説:
"FortiGate units in the ADOM will query their own configuration every 5 seconds. If there has been a configuration change, the FortiGate unit will send a diff revision on the change to the FortiManager using the FGFM protocol."


質問 # 37
Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

  • A. When changes to device-level database is made on FortiManager
  • B. When FortiManager is auto-updated with configuration changes made directly on a managed device
  • C. When FortiManager installs device-level changes to a managed device
  • D. When configuration revision is reverted to previous revision in the revision history

正解:B、C


質問 # 38
Which of the following statements are true regarding reverting to previous revision version from the revision history? (Choose two.)

  • A. To push these changes to a managed device, it required an install operation to the managed FortiGate.
  • B. It will modify device-level database
  • C. Reverting to a previous revision history will tag the device settings status as Auto-Update.
  • D. Reverting to a previous revision history will generate a new version ID and remove all other history

正解:A、B


質問 # 39
What is the purpose of the Policy Check feature on FortiManager?

  • A. To find and delete disabled firewall policies in the policy package
  • B. To find and merge duplicate policies in the policy package
  • C. To find and provide recommendation for optimizing policies in a policy package
  • D. To find and provide recommendation to combine multiple separate policy packages into one common
    policy package

正解:C


質問 # 40
Refer to the exhibit.

An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit.
Which two reasons can explain why the FortiAnalyzer feature panes do not appear? (Choose two.)

  • A. The administrator profile does not have full access privileges like the Super_User profile.
  • B. FortiAnalyzer features are not enabled on FortiManager.
  • C. The administrator IP address is not a part of the trusted hosts configured on FortiManager interfaces.
  • D. The administrator logged in using the unsecure protocol HTTP, so the view is restricted.

正解:A、B


質問 # 41
An administrator would like to review, approve, or reject all the firewall policy changes made by the junior administrators.
How should the Workspace mode be configured on FortiManager?

  • A. Set to read/write and use the policy locking feature
  • B. Set to disable and use the policy locking feature
  • C. Set to normal and use the policy locking feature
  • D. Set to workflow and use the ADOM locking feature

正解:D


質問 # 42
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Security Fabric settings are part of the device level settings
  • B. The Security Fabric license, group name and password are required for the FortiManager Security Fabric
    integration
  • C. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
  • D. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices

正解:A、C


質問 # 43
An administrator would like to create an SD-WAN using central management. What steps does the
administrator need to perform to create an SD-WAN using central management?

  • A. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • B. Remove all the interface references such as routes or policies
  • C. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
  • D. You must specify a gateway address when you create a default static route

正解:A


質問 # 44
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will tag the device settings status as Auto-Update
  • B. It will modify the device-level database
  • C. It will generate a new version ID and remove all other revision history versions
  • D. It will install configuration changes to managed device automatically

正解:B


質問 # 45
Refer to the exhibit.

According to the error message why is FortiManager failing to add the FortiAnalyzer device?

  • A. The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
  • B. The administrator must use the correct user name and password of the FortiAnalyzer device
  • C. The administrator must use the Add Model Device section and discover the FortiAnaJyzer device
  • D. The administrator must turn off the Use Legacy Device login and add the FortiAnaJyzer device to the same network as Forti-Manager

正解:A


質問 # 46
Refer to the exhibit.

According to the error message why is FortiManager failing to add the FortiAnalyzer device?

  • A. The administrator must use the Add Model Device section and discover the FortiAnaJyzer device
  • B. The administrator must use the correct user name and password of the FortiAnalyzer device
  • C. The administrator must turn off the Use Legacy Device login and add the FortiAnaJyzer device to the same network as Forti-Manager
  • D. The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface

正解:A


質問 # 47
An administrator wants to delete an address object that is currently referenced in a firewall policy.
What can the administrator expect to happen?

  • A. FortiManager will replace the deleted address object with all address object in the referenced firewall policy
  • B. FortiManager will disable the status of the referenced firewall policy
  • C. FortiManager will replace the deleted address object with the none address object in the referenced
    firewall policy
  • D. FortiManager will not allow the administrator to delete a referenced address object

正解:C


質問 # 48
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1.
Which statement about the global policy package assignment to the newly-created policy package Fortinet is true?

  • A. When a new policy package is created, you need to reapply the global policy package to the ADOM.
  • B. When a new policy package is created, you can select the option to assign the global policies to the new package.
  • C. When a new policy package is created, you need to assign the global policy package from the global ADOM.
  • D. When a new policy package is created, it automatically assigns the global policies to the new package.

正解:D

解説:
Global Policy Package is applied at the ADOM level and you have the option to choose which ADOM policy packages you want to exclude (there is no option to choose Policy Packages to include).


質問 # 49
Refer to the exhibit.

Which statement about the object named ALL is true?

  • A. FortiManager updated the object ALL using the FortiGate value in its database.
  • B. FortiManager updated the object ALL using the FortiManager value in its database.
  • C. FortiManager created the object ALL as a unique entity in its database, which can be only used by this
    managed FortiGate.
  • D. FortiManager installed the object ALL with the updated value.

正解:A


質問 # 50
View the following exhibit.

Which of the following statements are true based on this configuration setting? (Choose two.)

  • A. This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.
  • B. This setting will enable the ADOMs feature on FortiManager.
  • C. This setting is applied globally to all ADOMs.
  • D. This setting will allow automatic updates to the policy package configuration for a managed device.

正解:A、C


質問 # 51
Refer to the exhibit.

An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
  • B. 10.200.1.0/24
  • C. 192.168.0.1/24
  • D. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.

正解:C


質問 # 52
......

NSE5_FMG-7.0問題集、あなたを合格させる認証試験:https://www.jpntest.com/shiken/NSE5_FMG-7.0-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡