試験準備には欠かさない!NSE5_FMG-7.0問題解答でNSE5_FMG-7.0試験問題集 [Q21-Q43]

Share

試験準備には欠かさない!NSE5_FMG-7.0問題解答でNSE5_FMG-7.0試験問題集

リアルFortinet NSE5_FMG-7.0試験問題 [更新されたのは2023年]

質問 21
An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?

  • A. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route
  • B. Remove all the interface references such as routes or policies
  • C. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.
  • D. You must specify a gateway address when you create a default static route

正解: C

 

質問 22
What is the purpose of the Policy Check feature on FortiManager?

  • A. To find and provide recommendation to combine multiple separate policy packages into one common policy package
  • B. To find and provide recommendation for optimizing policies in a policy package
  • C. To find and delete disabled firewall policies in the policy package
  • D. To find and merge duplicate policies in the policy package

正解: B

 

質問 23
Refer to the exhibit.

Which two statements are true if the script is executed using the Device Database option? (Choose two.)

  • A. You must install these changes using the Install Wizard to a managed device
  • B. The successful execution of a script on the Device Database will create a new revision history
  • C. The Device Settings Status will be tagged as Modified
  • D. The script history will show successful installation of the script on the remote FortiGate

正解: A,C

 

質問 24
Refer to the exhibit.

Which statement about the object named ALL is true?

  • A. FortiManager updated the object ALL using the FortiManager value in its database.
  • B. FortiManager installed the object ALL with the updated value.
  • C. FortiManager updated the object ALL using the FortiGate value in its database.
  • D. FortiManager created the object ALL as a unique entity in its database, which can be only used by this
    managed FortiGate.

正解: C

 

質問 25
An administrator would like to authorize a newly-installed AP using AP Manager. What steps does the administrator need to perform to authorize an AP?

  • A. Authorize the new AP using AP Manager and install the device level settings on the managed FortiGate.
  • B. Changes to the AP's state must be performed directly on the managed FortiGate.
  • C. Authorize the new AP using AP Manager and install the policy package changes on the managed FortiGate.
  • D. Authorize the new AP using AP Manager and wait until the change is updated on the FortiAP. Changes to the AP's state do not require installation.

正解: A

 

質問 26
An administrator run the reload failure command: diagnose test deploymanager reload config
<deviceid> on FortiManager. What does this command do?

  • A. It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.
  • B. It installs the provisioning template configuration on the specified FortiGate.
  • C. It compares and provides differences in configuration on FortiManager with the current running
    configuration of the specified FortiGate.
  • D. It installs the latest configuration on the specified FortiGate and update the revision history database.

正解: A

 

質問 27
Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)

  • A. Managed devices in other ADOMs must be treated as external gateways
  • B. External gateways are third-party VPN gateway devices only
  • C. Managed gateways are devices managed by FortiManager in the same ADOM
  • D. Protected subnets are the subnets behind the device that you don't want to allow access to over the IPsec
    VPN

正解: A,C

 

質問 28
An administrator, Trainer, who is assigned the Super_User profile, is trying to approve a workflow session that was submitted by another administrator, Student. However, Trainer is unable to approve the workflow session.
What can prevent an admin account that has Super_User rights over the device from approving a workflow session?

  • A. Trainer does not have full rights over this ADOM
  • B. Student, who submitted the workflow session, must first self-approve the request
  • C. Trainer must close Student's workflow session before approving the request
  • D. Trainer is not a part of workflow approval group

正解: D

 

質問 29
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will modify the device-level database
  • B. It will install configuration changes to managed device automatically
  • C. It will tag the device settings status as Auto-Update
  • D. It will generate a new version ID and remove all other revision history versions

正解: A

 

質問 30
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Security Fabric settings are part of the device level settings
  • B. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices
  • C. The Security Fabric license, group name and password are required for the FortiManager Security Fabric
    integration
  • D. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices

正解: A,D

 

質問 31
What will happen if FortiAnalyzer features are enabled on FortiManager?

  • A. FortiManager can be used only as a logging device.
  • B. FortiManager will reboot
  • C. FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices
  • D. FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager

正解: B

 

質問 32
What does a policy package status of Modified indicate?

  • A. The policy package was never imported after a device was registered on FortiManager
  • B. The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.
  • C. FortiManager is unable to determine the policy package status
  • D. The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager

正解: B

 

質問 33
What is the purpose of the Policy Check feature on FortiManager?

  • A. To find and provide recommendation for optimizing policies in a policy package
  • B. To find and delete disabled firewall policies in the policy package
  • C. To find and provide recommendation to combine multiple separate policy packages into one common
    policy package
  • D. To find and merge duplicate policies in the policy package

正解: A

 

質問 34
Refer to the exhibit.

An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed FortiGate that causes the FGFM tunnel to go down for more than 15 minutes.
What is the purpose of this command?

  • A. It allows FortiGate to reboot and recover the previous configuration from its configuration file.
  • B. It allows FortiGate to unset central management settings.
  • C. It allows the FortiManager to revert and install a previous configuration revision on the managed FortiGate.
  • D. It allows FortiGate to reboot and restore a previously working firmware image.

正解: A

 

質問 35
An administrator run the reload failure command: diagnose test deploymanager reload config
<deviceid> on FortiManager. What does this command do?

  • A. It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.
  • B. It installs the provisioning template configuration on the specified FortiGate.
  • C. It compares and provides differences in configuration on FortiManager with the current running configuration of the specified FortiGate.
  • D. It installs the latest configuration on the specified FortiGate and update the revision history database.

正解: A

 

質問 36
Refer to the exhibit.

An administrator has created a firewall address object, Training which is used in the Local-FortiGate policy package.
When the installation operation is performed, which IP/Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. Local-FortiGate will automatically choose an IP/Netmask based on its network interface settings.
  • B. It will create a firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values.
  • C. 192.168.0.1/24
  • D. 10.200.1.0/24

正解: C

 

質問 37
Which two statements regarding device management on FortiManager are true? (Choose two.)

  • A. FortiGate in transparent mode configurations are not counted toward the device count on FortiManager.
  • B. FortiGate devices in an HA cluster that has five VDOMs are counted as five separate devices.
  • C. The maximum number of managed devices for each ADOM is 500.
  • D. FortiGate devices in HA cluster devices are counted as a single device.

正解: B,D

 

質問 38
An administrator's PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked from the session before the crash.
How can the administrator unlock the ADOM?

  • A. Restore the configuration from a previous backup.
  • B. Log in using the same administrator account to unlock the ADOM.
  • C. Delete the previous admin session manually through the FortiManager GUI or CLI.
  • D. Log in as Super_User in order to unlock the ADOM.

正解: C

 

質問 39
Which three settings are the factory default settings on FortiManager? (Choose three.)

  • A. Password is fortinet
  • B. port1 interface IP address is 192.168.1.99/24
  • C. FortiAnalyzer features are disabled
  • D. Username is admin
  • E. Reports and Event Monitor panes are enabled

正解: B,C,D

 

質問 40
An administrator has added all the devices in a Security Fabric group to FortiManager.
How does the administrator identify the root FortiGate?

  • A. By a Question:
  • B. By a dollar symbol ($) at the end of the device name
  • C. By an Asterisk (*) at the end of the device name
  • D. By an at symbol (@) at the end of the device name

正解: C

 

質問 41
You are moving managed FortiGate devices from one ADOM to a new ADOM.
Which statement correctly describes the expected result?

  • A. Policy packages will be imported into the new ADOM automaticallyD
  • B. The shared policy package will not be moved to the new ADOM
  • C. Any pending device settings will be installed automatically
  • D. Any unused objects from a previous ADOM are moved to the new ADOM automatically

正解: B

 

質問 42
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)

  • A. Does not back up firmware images saved on FortiManager
  • B. Backs up all devices and the FortiGuard database.
  • C. Supports FTP, SCP, and SFTP
  • D. Can be configured from the CLI and GUI

正解: A,C

 

質問 43
......

NSE5_FMG-7.0合格させる試験問題集には更新されたのは2023年:https://www.goshiken.com/Fortinet/NSE5_FMG-7.0-mondaishu.html

無料NSE5_FMG-7.0試験問題集でお手軽に試験合格させる:https://drive.google.com/open?id=1yQ4DbHSaiVxse0_O6gfExNmsnXYPuxL6