Practice Free NSE5_FMG-7.2 Exam Online Questions
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)
- A . Backs up all devices and the FortiGuard database.
- B . Does not back up firmware images saved on FortiManager
- C . Supports FTP, SCP, and SFTP
- D . Can be configured from the CLI and GUI
What will be the result of reverting to a previous revision version in the revision history?
- A . It will install configuration changes to managed device automatically
- B . It will tag the device settings status as Auto-Update
- C . It will generate a new version ID and remove all other revision history versions
- D . It will modify the device-level database
In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?
- A . Secondary device with highest priority will automatically be promoted to the primary role, and manually
reconfigure all other secondary devices to point to the new primary device - B . Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.
- C . Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.
- D . FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.
C
Explanation:
FortiManager_6.4_Study_Guide-Online C page 346
FortiManager HA doesn’t support IP takeover where an HA state transition is transparent to administrators. If a failure of the primary occurs, the administrator must take corrective action to resolve the problem that may include invoking the state transition. If the primary device fails, the administrator must do the following in order to return the FortiManager HA to a working state:
Which three settings are the factory default settings on FortiManager? (Choose three.)
- A . Username is admin
- B . Password is fortinet
- C . FortiAnalyzer features are disabled
- D . Reports and Event Monitor panes are enabled
- E . port1 interface IP address is 192.168.1.99/24
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)
- A . The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration
- B . The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices
- C . The Security Fabric settings are part of the device level settings
- D . The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
- A . After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
- B . FortiManager will revert and install a previous configuration revision on the managed FortiGate.
- C . FortiGate will reject the CLI commands that will cause the tunnel to go down.
- D . FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.
A
Explanation:
The configuration change will break the fgfm connection, causing the FortiGate unit to attempt to reconnect for 900 seconds. If the FortiGate cannot reconnect, it will rollback to its previous configuration.
When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
- A . After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
- B . FortiManager will revert and install a previous configuration revision on the managed FortiGate.
- C . FortiGate will reject the CLI commands that will cause the tunnel to go down.
- D . FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.
A
Explanation:
The configuration change will break the fgfm connection, causing the FortiGate unit to attempt to reconnect for 900 seconds. If the FortiGate cannot reconnect, it will rollback to its previous configuration.
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?
- A . By a dollar symbol ($) at the end of the device name
- B . By an at symbol (@) at the end of the device name
- C . By a QUESTION NO: mark(?) at the end of the device name
- D . By an Asterisk (*) at the end of the device name
Which of the following statements are true regarding reverting to previous revision version from the revision history? (Choose two.)
- A . To push these changes to a managed device, it required an install operation to the managed FortiGate.
- B . Reverting to a previous revision history will generate a new version ID and remove all other history versions.
- C . Reverting to a previous revision history will tag the device settings status as Auto-Update.
- D . It will modify device-level database
Which configuration setting for FortiGate is part of a device-level database on FortiManager?
- A . VIP and IP Pools
- B . Firewall policies
- C . Security profiles
- D . Routing
C
Explanation:
The FortiManager stores the FortiGate configuration details in two distinct databases. The device-level database includes configuration details related to device-level settings, such as interfaces, DNS, routing, and more. The ADOM-level database includes configuration details related to firewall policies, objects, and security profiles.