Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Fortinet Fortinet Network Security Expert FCP_FMG_AD-7.6 Questions and answers with CertsForce

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

Refer to the exhibit.

Question # 1

An administrator added a FortiGate device to FortiManager with the default object settings at the ADOM layer.

What can you conclude from the import policy package process of the HQ-NGFW- 1 device?

Options:

A.

The administrator must select Per Platform for all interfaces to correctly detect all interfaces from HQ-NGFW-1.


B.

The administrator must manually create the port4 interface on the ADOM layer to avoid import policy errors.


C.

FortiManager will create LAN, port4, and port6 as normalized interfaces at the ADOM layer.


D.

FortiGate may not work as expected when the administrator does not import all objects.


Expert Solution
Questions # 2:

Refer to Exhibit:

Question # 2

Which two actions will occur if you run the script using the Remote FortiGate Directly via CLI option? Choose two answers

Options:

A.

FortiManager will provide a preview of CLI commands before executing this script on a managed FortiGate.


B.

FortiManager will create a new revision history.


C.

FortiGate will auto-updated the FortiManager device-level database.


D.

You will have to install these changes using the Install Wizard.


Expert Solution
Questions # 3:

What is the best explanation of how FortiManager helps with mass provisioning?

Options:

A.

It upgrades the OS of each FortiGate device.


B.

It provides local FortiGuard Distribution Server (FDS) services to the network.


C.

It uses templates to configure the same settings on many devices simultaneously.


D.

It sends email alerts when new devices connect.


Expert Solution
Questions # 4:

The administrator uses FortiManager to push a CLI script using the Remote FortiGate Directly (via CLI) option to configure an IPsec VPN. However, when running the script, the administrator receives the following error:

config vpn ipsec phase2-interface [parameter(s) invalid. detail: object mismatch]

What must the administrator do to resolve the script error and successfully apply the IPsec configuration?

Options:

A.

Add the end command after finishing the IPsec phase 1-interface configuration block.


B.

Use IPsec templates to deploy provisioning templates.


C.

Add a second config vpn ipsec phase2-interface block without linking it to phase1.


D.

Run the script using the policy package or ADOM database method.


Expert Solution
Questions # 5:

Refer to the exhibit.

Question # 5

An administrator has assigned the default system template to install all devices with the FortiAnalyzer IP address 10.0.13.12. However, not all FortiGate devices can reach FortiAnalyzer using the default interface. Some devices may use the LAN interface, while others may use the WAN interface. How can the administrator change the source interface for FortiGate devices using the default system template? Choose one answer

Options:

A.

Use per-device dynamic object configurations at the ADOM level and apply them in the template.


B.

Configure a metadata variable at the ADOM level and use it in the template.


C.

Create a different system template for each FortiGate, if the configuration is different.


D.

Create a meta field on FortiManager system settings of type Device and use it in the template.


Expert Solution
Questions # 6:

Refer to Exhibits:

Question # 6

Question # 6

An administrator has observed the performance status outputs on an HA cluster for 55 seconds.

Which FortiGate is the primary?

Options:

A.

HQ-NGFW-2 with the parameter memory-failover-threshold setting


B.

HQ-NGFW-2 with the parameter priority setting


C.

HQ-NGFW-1 with the parameter memory-failover-flip-timeout setting


D.

HQ-NGFW-1 with the parameter override setting


Expert Solution
Questions # 7:

While attempting to push a NetFlow configuration script through the FortiManager policy package: an administrator encounters an error stating that an object is unrecognized in line 4.

Question # 7

What must the administrator do to successfully apply the NetFlow configuration script and avoid the object unrecognized error?

Options:

A.

Make sure the user running the script has full access to the VDOM—AGEUSR.


B.

Run the script on the device database.


C.

Use metadata variables if they use VDOMs in the script.


D.

Create a normalized interface on the policy layer before running the script.


Expert Solution
Questions # 8:

Refer to the exhibit.

Question # 8

What are two results from the configuration shown in the exhibit? (Choose two.)

Options:

A.

Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times out.


B.

The administrator can lock policy blocks and FortiManager global ADOM.


C.

The same administrator can lock more than one ADOM at the same time.


D.

The administrator must have access to the ADOM to approve changes.


Expert Solution
Questions # 9:

Which output is displayed right after moving the ISFW device from one ADOM to another?

A)

Question # 9

B)

Question # 9

C)

Question # 9

D)

Question # 9

Options:

A.

Option A


B.

Option B


C.

Option C


D.

Option D


Expert Solution
Questions # 10:

An administrator wants to configure and manage multiple objects in the FortiManager database and give access to other users who work in the same database.

To stay in control of the changes made to firewall policies by other team members, the administrator needs a setup where all modifications go through a central check before they can be installed.

How can the administrator create this setup?

Options:

A.

Enable the prompt asking the administrator to accept firewall policies changes before saving.


B.

Enable the workspace (for all ADOMs) to control all changes made by any administrator.


C.

Enable device lock and the advanced mode feature in the ADOM.


D.

Enable workflow mode and the ADOM lock feature.


Expert Solution
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions