PDF無料ダウンロードにはNSE5_FMG-7.2有効な練習テスト問題 [Q21-Q44]

Share

PDF無料ダウンロードにはNSE5_FMG-7.2有効な練習テスト問題

NSE5_FMG-7.2テストエンジンお試しセット、NSE5_FMG-7.2問題集PDF

質問 # 21
View the following exhibit:

How will FortiManager try to get updates for antivirus and IPS?

  • A. From the configured override server list only
  • B. From public FDNI server with highest index number only
  • C. From the list of configured override servers with ability to fall back to public FDN servers
  • D. From the default serverfdsl.fortinet.com

正解:C

解説:
Reference:https://community.fortinet.com/t5/Fortinet-Forum/Clarification-of-FortiManager-s-quot-Server-Overr


質問 # 22
Refer to the exhibit.

Given the configuration shown in the exhibit, what can you conclude from the installation targets m the Install On column? (Choose two)

  • A. Policy seq # 1 will be installed on the Remoto-FortiGate root[NAT] and Student[NAT] VDOMs only
  • B. Policy seq # 3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
  • C. Policy 3 will be installed on all FortiGate devices and vdom belongs to the ADOM
  • D. Policy seq # 3 will be skipped because no installation targets are specified
  • E. Policy seq # 2 will not be installed on the Local-FortiGate root VDOM because there is no root VDOM in the Installation Target

正解:A、B


質問 # 23
Refer to the exhibit.

How will FortiManager try to get updates for antivirus and IPS?

  • A. From public FDNI server IP address with the fourth highest octet only
  • B. From the default server fds1.fortinet.com
  • C. From the configured override server IP address 10.0.1.50 only
  • D. From the list of configured override servers or public FDN servers

正解:D


質問 # 24
An administrator would like to create an SD-WAN using central management in theTrainingADOM.
To create an SD-WAN using central management, which two steps must be completed? (Choose two.)

  • A. Configure and install the SD-WAN firewall policy and SD-WAN static route before installing the SD-WAN template settings
  • B. Specify a gateway address when you create a default SD-WAN static route
  • C. Remove all the interface references such as routes or policies that will be a part of SD-WAN member interfaces
  • D. Enable SD-WAN central management in theTrainingADOM

正解:C、D

解説:
Reference:https://docs.fortinet.com/document/fortigate/6.0.0/cookbook/676493/removing-existing-configuration


質問 # 25
You are moving managed FortiGate devices from one ADOM to a new ADOM.
Which statement correctly describes the expected result?

  • A. Policy packages will be imported into the new ADOM automaticallyD
  • B. The shared policy package will not be moved to the new ADOM
  • C. Any unused objects from a previous ADOM are moved to the new ADOM automatically
  • D. Any pending device settings will be installed automatically

正解:B


質問 # 26
Refer to the exhibit.

Given the configuration shown in the exhibit, how did FortiManager handle the service category named General?

  • A. FortiManager ignored the firewall service category General and updated the FortiGate duplicate value in the FortiGate database.
  • B. FortiManager ignored the firewall service category General and did not update Its database with the value
  • C. FortiManager ignored the firewall service category General but created a new service category in its database.
  • D. FortiManager ignored the firewall service category general and deleted the duplicate value In Its database

正解:B


質問 # 27
Refer to the exhibit.

An administrator wants to create a policy on the Staging ADOM in backup mode, and install it on the FortiGate device in the same ADOM.
How can the administrator perform this task?

  • A. The administrator must use the I ortiManager script.
  • B. The administrator must disable the FortiManager offline mode first.
  • C. The administrator must change the ADOM mode to Advanced to bring the FortiManager online.
  • D. The administrator must use the Policy & Objects section to create a policy first.

正解:C


質問 # 28
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package Fortinet in the custom ADOM1. What will happen to the Fortinet policy package when it is created?

  • A. You need to assign the global policy package from the global ADOM
  • B. it automatically assigns the global policies
  • C. You can select the option to assign the global polices
  • D. You need to reapply the global poky package to the ADOM

正解:B


質問 # 29
Which two items does an FGFM keepalive message include? (Choose two.)

  • A. FortiGate IPS version
  • B. FortiGate configuration checksum
  • C. FortiGate uptime
  • D. FortiGate license information

正解:A、B


質問 # 30
Refer to the exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

  • A. It is used to validate administrator login attempts through external servers.
  • B. It allows two or more administrators to make configuration changes at the same time, in the same ADOM.
  • C. It disables concurrent read-write access to an ADOM.
  • D. It allows the same administrator to lock more than one ADOM at the same time.

正解:C、D

解説:
Reference:https://docs.fortinet.com/document/fortimanager/6.0.4/administration-guide/86456/concurrentadom-ac


質問 # 31
Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)

  • A. Managed gateways are devices managed by FortiManager in the same ADOM
  • B. Managed devices in other ADOMs must be treated as external gateways
  • C. External gateways are third-party VPN gateway devices only
  • D. Protected subnets are the subnets behind the device that you don't want to allow access to over the IPsec VPN

正解:A、B

解説:
Reference:http://help.fortinet.com/fmgr/50hlp/56/5-6-1/FMG-FAZ/1
300_VPN_Manager/0800_IPsec_VPN_Gateway/0400_Create_mngd_gateway.htm


質問 # 32
What is the purpose of ADOM revisions?

  • A. To revert individual policy packages and device-level settings for a managed FortiGate by reverting to a specific ADOM revision
  • B. To createSystem Checkpointsfor the FortiManager configuration.
  • C. To save the current state of the whole ADOM.
  • D. To save the current state of all policy packages and objects for an ADOM.

正解:D

解説:
Fortimanager 6.4 Study guide page 198


質問 # 33
View the following exhibit.

An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?

  • A. 192.168.0.1/24
  • B. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
  • C. Local-FortiGate will automatically choose an IP Network based on its network interface settings.
  • D. 10.0.1.0/24

正解:D


質問 # 34
In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?

  • A. Secondary device with highest priority will automatically be promoted to the primary role, and manually reconfigure all other secondary devices to point to the new primary device
  • B. FortiManager HA state transition is transparent to administrators and does not require any reconfiguration.
  • C. Manually promote one of the secondary devices to the primary role, and reconfigure all other secondary devices to point to the new primary device.
  • D. Reboot one of the secondary devices to promote it automatically to the primary role, and reconfigure all other secondary devices to point to the new primary device.

正解:C

解説:
FortiManager_6.4_Study_Guide-Online - page 346
FortiManager HA doesn't support IP takeover where an HA state transition is transparent to administrators. If a failure of the primary occurs, the administrator must take corrective action to resolve the problem that may include invoking the state transition. If the primary device fails, the administrator must do the following in order to return the FortiManager HA to a working state:
1. Manually reconfigure one of the secondary devices to become the primary device
2. Reconfigure all other secondary devices to point to the new primary device


質問 # 35
What does a policy package status ofModifiedindicate?

  • A. FortiManager is unable to determine the policy package status
  • B. The Policy package configuration has been changed on FortiManager and changes have not yet been installed on the managed device.
  • C. The Policy configuration has been changed on a managed device and changes have not yet been imported into FortiManager
  • D. The policy package was never imported after a device was registered on FortiManager

正解:D

解説:
Reference:http://help.fortinet.com/fmgr/50hlp/56/5-6-1/FortiManager_A
dmin_Guide/1200_Policy%20and%20Objects/0800_Managing%20policy%20packages/2200_Policy%20Packag


質問 # 36
What will be the result of reverting to a previous revision version in the revision history?

  • A. It will tag the device settings status asAuto-Update
  • B. It will install configuration changes to managed device automatically
  • C. It will generate a new versionIDand remove all other revision history versions
  • D. It will modify the device-level database

正解:D


質問 # 37
Refer to the exhibit.

You are using theQuick Installoption to install configuration changes on the managed FortiGate.
Which two statements correctly describe the result? (Choose two.)

  • A. It provides the option to preview configuration changes prior to installing them
  • B. It installs device-level changes to FortiGate without launching theInstall Wizard
  • C. It will not create a new revision in the revision history
  • D. It cannot be canceled once initiated and changes will be installed on the managed device

正解:B、D

解説:
FortiManager_6.4_Study_Guide-Online - page 164
The Install Config option allows you to perform a quick installation of device-level settings without launching the Install Wizard. When you use this option, you cannot preview the changes prior to committing.
Administrator should be certain of the changes before using this install option, because the install can't be cancelled after the process is initiated.


質問 # 38
An administrator is in the process of moving the system template profile between ADOMs by running the following command:
execute improfile import-profile ADOM2 3547 /tmp/myfile
Where does the administrator import the file from?

  • A. File system
  • B. ADOM2
  • C. ADOM2 object database
  • D. ADOM1

正解:A


質問 # 39
Push updates are failing on a FortiGate device that is located behind a NAT device Which two settings should the administrator check? (Choose two.)

  • A. That the NAT device IP address and correct ports are configured on FortiManager
  • B. That the external IP address on the NAT device is set to DHCP and configured with the virtual IP
  • C. That the virtual IP address and correct ports are set on the NAT device
  • D. That the override server IP address is set on FortiManager and the NAT device

正解:A、B


質問 # 40
Which of the following statements are true regarding VPN Gateway configuration in VPN Manager? (Choose two.)

  • A. Managed gateways are devices managed by FortiManager in the same ADOM
  • B. Managed devices in other ADOMs must be treated as external gateways
  • C. External gateways are third-party VPN gateway devices only
  • D. Protected subnets are the subnets behind the device that you don't want to allow access to over the IPsec VPN

正解:A、B


質問 # 41
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)

  • A. The Security Fabric settings are part of the device level settings
  • B. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices
  • C. The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration
  • D. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices

正解:A、B


質問 # 42
What is the advantage of using FortiManager to manage PortiAnalyzer?

  • A. It allows FortiManager to act as a collector and FortiAnalyzer device
  • B. It allows FortiManager to fun reports based on FortiAnalyzer
  • C. It allows FortiManager to store all managed FortiGate device logs
  • D. It allows FortiManager to manage all FortiGate devices

正解:A


質問 # 43
View the following exhibit:

Which two statements are true if the script is executed using the Remote FortiGate Directly (via CLI) option? (Choose two.)

  • A. You must install these changes using Install Wizard
  • B. FortiManager will create a new revision history.
  • C. FortiGate will auto-update the FortiManager's device-level database.
  • D. FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.

正解:B、C


質問 # 44
......

あなたを合格させるNSE 5 Network Security Analyst NSE5_FMG-7.2試験問題集で2024年10月30日には100問あります:https://www.passtest.jp/Fortinet/NSE5_FMG-7.2-shiken.html

最新のFortinet NSE5_FMG-7.2PDFと問題集で(2024)無料試験問題解答:https://drive.google.com/open?id=1jZgtfcyT9Hmna0YI87TOqvbT_i78hxm4