Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the Fortinet NSE 5 Network Security Analyst NSE5_FMG-7.2 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam NSE5_FMG-7.2 Premium Access

View all detail and faqs for the NSE5_FMG-7.2 exam


671 Students Passed

89% Average Score

97% Same Questions
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

What will happen if FortiAnalyzer features are enabled on FortiManager?

Options:

A.

FortiManager will reboot

B.

FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager

C.

FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices

D.

FortiManager can be used only as a logging device.

Questions # 12:

In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator sent a device registration to FortiManager from a remote FortiGate. Which one of the following statements is true?

Options:

A.

The FortiGate will be added automatically to the default ADOM named FortiGate.

B.

The FortiGate will be automatically added to the Training ADOM.

C.

By default, the unregistered FortiGate will appear in the root ADOM.

D.

The FortiManager administrator must add the unregistered device manually to the unregistered device

manually to the Training ADOM using the Add Device wizard

Questions # 13:

An administrator would like to create an SD-WAN using central management in the Training ADOM.

To create an SD-WAN using central management, which two steps must be completed? (Choose two.)

Options:

A.

Specify a gateway address when you create a default SD-WAN static route

B.

Enable SD-WAN central management in the Training ADOM

C.

Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN

template settings

D.

Remove all the interface references such as routes or policies that will be a part of SD-WAN member

interfaces

Questions # 14:

What is the purpose of the Policy Check feature on FortiManager?

Options:

A.

To find and provide recommendation to combine multiple separate policy packages into one common

policy package

B.

To find and merge duplicate policies in the policy package

C.

To find and provide recommendation for optimizing policies in a policy package

D.

To find and delete disabled firewall policies in the policy package

Questions # 15:

Which two settings must be configured for SD-WAN Central Management? (Choose two.)

Options:

A.

SD-WAN must be enabled on per-ADOM basis

B.

You can create multiple SD-WAN interfaces per VDOM

C.

When you configure an SD-WAN, you must specify at least two member interfaces.

D.

The first step in creating an SD-WAN using FortiManager is to create two SD-WAN firewall policies.

Questions # 16:

An administrator would like to review, approve, or reject all the firewall policy changes made by the junior

administrators.

How should the Workspace mode be configured on FortiManager?

Options:

A.

Set to workflow and use the ADOM locking feature

B.

Set to read/write and use the policy locking feature

C.

Set to normal and use the policy locking feature

D.

Set to disable and use the policy locking feature

Questions # 17:

In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?

Options:

A.

Secondary device with highest priority will automatically be promoted to the primary role, and manually

reconfigure all other secondary devices to point to the new primary device

B.

Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.

C.

Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.

D.

FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.

Questions # 18:

View the following exhibit.

Question # 18

Which statement is true regarding this failed installation log?

Options:

A.

Policy ID 2 is installed without a source address

B.

Policy ID 2 will not be installed

C.

Policy ID 2 is installed in disabled state

D.

Policy ID 2 is installed without a source device

Questions # 19:

View the following exhibit.

Question # 19

If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)

Options:

A.

FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

B.

FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on

FortiGate under central management.

C.

During discovery, the FortiManager NATed IP address is not set by default on FortiGate.

D.

If the FCFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.

Questions # 20:

View the following exhibit.

Question # 20

Given the configurations shown in the exhibit, what can you conclude from the installation targets in the Install On column?

Options:

A.

Policy 3 will be installed on all FortiGate devices and vdom belongs to the ADOM.

B.

Policy seq.# 3 will be skipped because no installation targets are specified.

C.

Policy seq.# 3 will be installed on all managed devices and VDOMs that are listed under Installation Targets.

D.

Policy seq.# 2 will not be installed on the Local-FortiGate root VDOM because there is no root VDOM in the Installation Target.

E.

Policy seq # 1 will be installed on the Remote-FortiGate root[NAT] and Student[NAT] VDOMs only.

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.