Pre-Summer Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Free and Premium Fortinet FCP_FMG_AD-7.4 Dumps Questions Answers

FCP - FortiManager 7.4 Administrator Questions and Answers

Question 1

Refer to the exhibit.

Given the import report shown in the exhibit, how did FortiManager handle the service category namedGeneral?

Options:

A.

FortiManager ignored the firewall service category General but created a new service category in its database.

B.

FortiManager ignored the firewall service category General and deleted the duplicate value in its database.

C.

FortiManager ignored the firewall service category General and did not update its database with the value.

D.

FortiManager ignored the firewall service category General and updated the FortiGate duplicate value in the FortiGate database.

Buy Now
Question 2

Exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

Options:

A.

An administrator can also lock the Local-FortiGate_root policy package.

B.

FortiManager is in workflow mode.

C.

The FortiManager ADOM is locked by the administrator.

D.

The FortiManager ADOM workspace mode is set to Normal

Question 3

What are two outcomes of ADOM revisions? (Choose two.)

Options:

A.

ADOM revisions can create System Checkpoints for the FortiManager configuration.

B.

ADOM revisions can save the current state of the whole ADOM.

C.

ADOM revisions can significantly increase the size of the configuration backups.

D.

ADOM revisions can save the current state of all policy packages and objects for an ADOM.

Question 4

What is a characteristic of the FortiManager high availability (HA) feature?

Options:

A.

When a secondary unit is removed, FortiManager updates the managed devices using TCP port 5199.

B.

The primary unit synchronizes all configuration revision with the seconday units.

C.

All secondary units must be in the same network as the primary unit.

D.

Each cluster member must be upgraded manually, starting with the primary unit.

Question 5

Refer to the exhibit.

Which two results occur if the script is run using the Device Database option? (Choose two.)

Options:

A.

You must install these changes on a managed device using the Install Wizard.

B.

The successful execution of a script on the Device Database creates a new revision history.

C.

The script history shows successful installation of the script on the remote FortiGate device.

D.

The device Config Status is tagged as Modified.

Question 6

When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

Options:

A.

FortiManager will not push the CLI commands as part of the installation that will cause the tunnel to go down.

B.

After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.

C.

FortiManager will revert and install a previous configuration revision on the managed FortiGate.

D.

FortiGate will reject the CLI commands that will cause the tunnel to go down.

Question 7

An administrator enabled workspace mode and now wants to delete an address object that is currently referenced in a firewall policy. Which two results can the administrator expect? (Choose two.)

Options:

A.

FortiManager will temporarily change the status of the referenced firewall policy to disabled.

B.

FortiManager will disable the status of the address object until the changes are installed.

C.

FortiManager will not allow the administrator to delete a referenced address object until they lock the ADOM.

D.

FortiManager will replace the deleted address object with the none address object in the referenced firewall policy.

Question 8

Refer to the exhibit.

A service provider administrator has assigned a global policy package to a managed customer ADOM namedMy_ADOM, which has four policy packages. The customer administrator has access only toMy_ADOM.

How can the customer or service provider administrators remove the global header policy from the policy package namedShared_Package?

Options:

A.

The service provider administrator can unassign the global policy from My_ADOM.

B.

The customer administrator can unassign the global policy from My_ADOM.

C.

The customer administrator can unassign the policy by locking My_ADOM.

D.

The service provider administrator can unassign the policy from the global ADOM.

Question 9

An administrator runs the reload failure command diagnose test deploymanager reloadconf on FortiManager.

What does this command do?

Options:

A.

It compares and provides differences in configuration on FortiManager with the current running configuration of the specified FortiGate.

B.

It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.

C.

It reloads the policy package from the FortiManager to FortiGate.

D.

It installs the latest configuration on the specified FortiGate and updates the revision history database.

Question 10

Exhibit.

Given the configuration shown in the exhibit, what are two results from this configuration? {Choose two.)

Options:

A.

You can validate administrator login attempts through external servers.

B.

The same administrator can lock more than one ADOM at the same time.

C.

Two or more administrators can make configuration changes at the same time, in the same ADOM.

D.

Concurrent read-write access to an ADOM is disabled.

Question 11

An administrator configures a new OSPF area on FortiManager and has not yet pushed the changes to the managed FortiGate device. In which database will the configuration be saved?

Options:

A.

Device-level database

B.

ADOM-level database

C.

Configuration-level database

D.

Revision history database

Question 12

You are moving managed FortiGate devices from one ADOM to a new ADOM.

Which statement correctly describes the expected result?

Options:

A.

The shared device settings will be installed automatically.

B.

The shared policy package will not be moved to the new ADOM automatically.

C.

Any unused objects from a previous ADOM are moved to the new ADOM automatically.

D.

Policy packages will be imported into the new ADOM automatically.

Question 13

Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

Options:

A.

When changes to the device-level database are made on FortiManager

B.

When FortiManager is auto-updated with configuration changes made directly on a managed device

C.

When a configuration revision is reverted to a previous revision in the revision history

D.

When FortiManager installs device-level changes on a managed device

Question 14

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

Options:

A.

The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices.

B.

The Security Fabric settings are part of the device-level settings.

C.

The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices.

D.

The Security Fabric license, group name, and password are required for the FortiManager Security Fabric integration.

Question 15

Which two items does an FGFM keepalive message include? (Choose two.)

Options:

A.

FortiGate IPS version

B.

FortiGate license information

C.

FortiGate configuration checksum

D.

FortiGate uptime

Question 16

Refer to the exhibit.

An administrator is about to add the FortiGate device to FortiManager using the discovery process.

FortiManager is operating behind a NAT device, and the administrator configured the FortiManager NATed IP address under the FortiManager system administration settings.

What is the expected result?

Options:

A.

During discovery. FortiManager uses only the FortiGate serial number to establish the connection.

B.

During discovery, FortiManager sets both the FortiManager NATed IP address and NAT device IP address on FortiGate.

C.

During discovery. FortiManager sets the NATed device IP address on FortiGate.

D.

During discovery, FortiManager sets the FortiManager NATed IP address on FortiGate.

Question 17

Refer to the exhibit.

You are using the Quick Install option to install configuration changes on the managed FortiGate.

Which two statements correctly describe the result? (Choose two.)

Options:

A.

It installs provisioning template changes on the FortiGate device.

B.

It provides the option to preview only the policy package changes before installing them.

C.

It installs all the changes in the device database first and the administrator must reinstall the changes on the FortiGate device.

D.

It installs device-level changes on the FortiGate device without launching the Install Wizard

Question 18

An administrator wants to create a policy on an ADOM that is in backup mode and install it on a FortiGate device in the same ADOM. How can the administrator perform this task?

Options:

A.

The administrator must use the Policy & Objects section to create a policy first.

B.

The administrator must use a FortiManager script.

C.

The administrator must disable the FortiManager offline mode first.

D.

The administrator must change the ADOM mode to Advanced to bring the FortiManager online.