パスできるNSE5_FMG-7.0試験最速合格保証2024問題集!
NSE5_FMG-7.0問題集完全版問題で試験学習ガイド
質問 # 37
What does the diagnose dvm check-integrity command do? (Choose two.)
- A. Verifies and corrects database schemas in all object tables
- B. Verifies and corrects unregistered, registered, and deleted device states
- C. Verifies and corrects duplicate VDOM entries
- D. Internally upgrades existing ADOMs to the same ADON version in order to clean up and correct the ADOM
syntax
正解:B、C
解説:
6.2 Study Guide page 305 verify and correct parts of the device manager databases, including: - inconsistent device-to-group and group-to-ADOM memberships - unregistered, registered, and deleted device states - device lock statuses - duplicate VDOM entries
質問 # 38
View the following exhibit.
Which one of the following statements is true regarding the object named ALL?
- A. FortiManager installed the object ALL with the updated value.
- B. FortiManager updated the object ALL using FortiManager's value in its database
- C. FortiManager updated the object ALL using FortiGate's value in its database
- D. FortiManager created the object ALL as a unique entity in its database, which can be only used by this managed FortiGate.
正解:C
質問 # 39
View the following exhibit.
What is the purpose of setting ADOM Mode to Advanced?
- A. This setting allows you to assign different VDOMs from the same FortiGate to different ADOMs.
- B. The setting allows automatic updates to the policy package configuration for a managed device
- C. The setting enables the ADOMs feature on FortiManager
- D. The setting disables concurrent ADOM access and adds ADOM locking
正解:A
質問 # 40
When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
- A. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
- B. FortiManager will revert and install a previous configuration revision on the managed FortiGate.
- C. FortiGate will reject the CLI commands that will cause the tunnel to go down.
- D. FortiManager will not push the CLI commands as a part of the installation that will cause the tunnel to go down.
正解:A
解説:
The configuration change will break the fgfm connection, causing the FortiGate unit to attempt to reconnect for 900 seconds. If the FortiGate cannot reconnect, it will rollback to its previous configuration.
質問 # 41
An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the managed FortiGate.
In which database will the configuration be saved?
- A. Device-level database
- B. Revision history database
- C. ADOM-level database
- D. Configuration-level database
正解:C
解説:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD47942
質問 # 42
Refer to the exhibit.
According to the error message why is FortiManager failing to add the FortiAnalyzer device?
- A. The administrator must use the Add Model Device section and discover the FortiAnalyzer device
- B. The administrator must use the correct user name and password of the FortiAnalyzer device
- C. The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
- D. The administrator must turn off the Use Legacy Device login and add the FortiAnalyzer device to the same network as Forti-Manager
正解:A
質問 # 43
Which two statements about the scheduled backup of FortiManager are true? (Choose two.)
- A. It can be configured using the CLI and GUI.
- B. It backs up all devices and the FortiGuard database.
- C. It supports FTP, SCP, and SFTP.
- D. It does not back up firmware images saved on FortiManager.
正解:C、D
質問 # 44
An administrator's PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.
How can the administrator unlock the ADOM?
- A. Log in as Super_User in order to unlock the ADOM.
- B. Delete the previous admin session manually through the FortiManager GUI or CLI.
- C. Log in using the same administrator account to unlock the ADOM.
- D. Restore the configuration from a previous backup.
正解:B
質問 # 45
Which configuration setting for FortiGate is part of an ADOM-level database on FortiManager?
- A. SNMP
- B. NSX-T Service Template
- C. Security profiles
- D. Routing
正解:D
質問 # 46
Refer to the exhibit.
Given the configuration shown in the exhibit, which two statements are true? (Choose two.)
- A. It disables concurrent read-write access to an ADOM.
- B. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.
- C. It allows the same administrator to lock more than one ADOM at the same time.
- D. It is used to validate administrator login attempts through external servers.
正解:A、C
質問 # 47
View the following exhibit.
An administrator is importing a new device to FortiManager and has selected the shown options. What will happen if the administrator makes the changes and installs the modified policy package on this managed FortiGate?
- A. The unused objects that are not tied to the firewall policies will remain as read-only locally on FortiGate
- B. The unused objects that are not tied to the firewall policies in policy package will be deleted from the
- C. The unused objects that are not tied to the firewall policies will be installed on FortiGate
- D. The unused objects that are not tied to the firewall policies locally on FortiGate will be deleted
正解:D
解説:
FortiManager database
質問 # 48
Refer to the exhibit.
Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)
- A. It supports the FortiManager script feature
- B. FortiManager automatically installs the configuration difference in revisions on the managed FortiGate
- C. It allows making configuration changes for managed devices on FortiManager panes
- D. You cannot assign the same ADOM to multiple administrators
正解:A、C
解説:
"FortiGate units in the ADOM will query their own configuration every 5 seconds. If there has been a configuration change, the FortiGate unit will send a diff revision on the change to the FortiManager using the FGFM protocol."
質問 # 49
An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the
managed FortiGate.
In which database will the configuration be saved?
- A. Device-level database
- B. Revision history database
- C. ADOM-level database
- D. Configuration-level database
正解:C
解説:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD47942
質問 # 50
Refer to the exhibit.
An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?
- A. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
- B. 10.200.1.0/24
- C. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
- D. 192.168.0.1/24
正解:B
解説:
FortiManager_6.4_Study_Guide-Online - page 209
In the example, the dynamic address object LocalLan refers to the internal network address of the managed firewalls. The object has a default value of 192.168.1.0/24. The mapping rules are defined per device. For Remote-FortiGate, the address object LocalLan referes to 10.10.11.0/24. The devices in the ADOM that do not have dynamic mapping for LocalLan have a default value of 192.168.1.0/2.
質問 # 51
View the following exhibit.
Which of the following statements are true based on this configuration setting? (Choose two.)
- A. This setting is applied globally to all ADOMs.
- B. This setting will enable the ADOMs feature on FortiManager.
- C. This setting will allow assigning different VDOMs from the same FortiGate to different ADOMs.
- D. This setting will allow automatic updates to the policy package configuration for a managed device.
正解:A、C
質問 # 52
Refer to the exhibit.
A junior administrator is troubleshooting a FortiManager connectivity issue that rs occurring with managed FortiGate devices Given the FortiManager device manager settings shown in the exhibit what can you conclude from the exhibit?
- A. FortiManager test internet connectivity therefore, both devices appear to be down
- B. The administrator can reclaim the FGFM tunnel to get both devices online
- C. The administrator had restored the FortiManager configuration file
- D. The administrator must refresh both devices to restore connectivity
正解:A
質問 # 53
View the following exhibit:
Which two statements are true if the script is executed using the Remote FortiGate Directly (via CLI) option? (Choose two.)
- A. FortiGate will auto-update the FortiManager's device-level database.
- B. FortiManager will create a new revision history.
- C. You must install these changes using Install Wizard
- D. FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.
正解:A、B
質問 # 54
Refer to the exhibit.
An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?
- A. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
- B. 192.168.0.1/24
- C. 10.200.1.0/24
- D. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
正解:B
質問 # 55
Refer to the exhibit.
According to the error message why is FortiManager failing to add the FortiAnalyzer device?
- A. The administrator must turn off the Use Legacy Device login and add the FortiAnaJyzer device to the same network as Forti-Manager
- B. The administrator must use the Add Model Device section and discover the FortiAnaJyzer device
- C. The administrator must use the correct user name and password of the FortiAnalyzer device
- D. The administrator must select the Forti-Manager administrative access checkbox on the FortiAnalyzer management interface
正解:B
質問 # 56
......
NSE 5 Network Security Analyst無料認定試験資料は82問:https://www.goshiken.com/Fortinet/NSE5_FMG-7.0-mondaishu.html
リアルなNSE5_FMG-7.0は100%カバーリアル試験問題を試そう:https://drive.google.com/open?id=1XkDQjctZo0lmif3BP3YoEdjHZM5XQNSh