Special Summer Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > Fortinet > Fortinet Network Security Expert > FCP_FMG_AD-7.4

FCP_FMG_AD-7.4 FCP - FortiManager 7.4 Administrator Question and Answers

Question # 4

Which configuration setting for FortiGate is part o an ADOM-level database on FortiManager?

A.

NSX-T Service Template

B.

Routing

C.

SNMP

D.

Security profiles

Full Access
Question # 5

Refer to the exhibit.

You are using the Quick Install option to install configuration changes on the managed FortiGate.

Which two statements correctly describe the result? (Choose two.)

A.

It installs provisioning template changes on the FortiGate device.

B.

It provides the option to preview only the policy package changes before installing them.

C.

It installs all the changes in the device database first and the administrator must reinstall the changes on the FortiGate device.

D.

It installs device-level changes on the FortiGate device without launching the Install Wizard

Full Access
Question # 6

Which output is displayed right after moving the ISFW device from one ADOM to another?

A)

B)

C)

D)

A.

Option A

B.

Option B

C.

Option C

D.

Option D

Full Access
Question # 7

Which API method is used to create objects or overwrite existing ones?

A.

Set

B.

Add

C.

Exec

D.

Update

Full Access
Question # 8

Exhibit.

Given the configuration shown in the exhibit, which two statements are true? (Choose two.)

A.

An administrator can also lock the Local-FortiGate_root policy package.

B.

FortiManager is in workflow mode.

C.

The FortiManager ADOM is locked by the administrator.

D.

The FortiManager ADOM workspace mode is set to Normal

Full Access
Question # 9

Which two conditions trigger FortiManager to create a new revision history? (Choose two.)

A.

When changes to the device-level database are made on FortiManager

B.

When FortiManager is auto-updated with configuration changes made directly on a managed device

C.

When a configuration revision is reverted to a previous revision in the revision history

D.

When FortiManager installs device-level changes on a managed device

Full Access
Question # 10

Exhibit.

Given the configuration shown in the exhibit, what are two results from this configuration? {Choose two.)

A.

You can validate administrator login attempts through external servers.

B.

The same administrator can lock more than one ADOM at the same time.

C.

Two or more administrators can make configuration changes at the same time, in the same ADOM.

D.

Concurrent read-write access to an ADOM is disabled.

Full Access
Question # 11

An administrator has assigned a global policy package to a new ADOM called ADOM1.

What will happen if the administrator tries to create a new policy package in ADOM1?

A.

When creating a new policy package, the administrator can select the option to assign the global policy package to the new policy package.

B.

When a new policy package is created, the administrator must assign the global policy package from the global ADOM.

C.

When a new policy package is created, the administrator must import the global policy package to ADOM1.

D.

When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Full Access
Question # 12

An administrator wants to create a policy on an ADOM that is in backup mode and install it on a FortiGate device in the same ADOM. How can the administrator perform this task?

A.

The administrator must use the Policy & Objects section to create a policy first.

B.

The administrator must use a FortiManager script.

C.

The administrator must disable the FortiManager offline mode first.

D.

The administrator must change the ADOM mode to Advanced to bring the FortiManager online.

Full Access
Question # 13

Refer to the exhibit.

Given the configuration shown in the exhibit, what are two results from this configuration? (Choose two.)

A.

Unlocking an ADOM will submit configuration changes automatically to the approval administrator.

B.

Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times out.

C.

Unlocking an ADOM will install configuration changes automatically on managed devices.

D.

The same administrator can lock more than one ADOM at the same time.

Full Access
Question # 14

Refer to the exhibit.

An administrator created two new meta fields in FortiManager.

Which operation can be performed with these parameters?

A.

You can invoke them using the $ character.

B.

You can add them to objects as custom attributes.

C.

You can export them to be used in other ADOMs.

D.

You can use them as variables in scripts.

Full Access
Question # 15

Refer to the exhibit.

Which statement about the environment shown in the exhibit is correct?

A.

You must restart the secondary unit if you promote it to become the primary.

B.

A failover will take place after five minutes without receiving heartbeat packets.

C.

FortiAnalyzer features are not enabled on this FortiManager device.

D.

No FortiGuard packages have been synchronized between the cluster members yet.

Full Access
Question # 16

Refer to the exhibit.

Given the configuration shown in the exhibit, which two conclusions can you draw from the installation targets in the Install On column? (Choose two.)

A.

Policy seq.S will be installed on all managed devices and VDOMs that are listed under Installation Targets

B.

Policy seq.# 3 will be skipped because no installation targets are specified.

C.

Policy seq.# 2 will not be installed on the Local-FortiGate root VDOM because there is no root VDOM in the Installation Target

D.

Policy seq.# 1 will be installed on the ISFW device root[NAT] and Student[NAT] VDOMs only.

Full Access
Question # 17

An administrator created a new ADOM named Training for FortiGate devices only, and added the root FortiGate device of a Security Fabric group to the Training ADOM.

Given the administrator's actions, which statement correctly describes the expected result for the downstream devices in the Security Fabric?

A.

The downstream devices show as unauthorized in the Training ADOM

B.

The downstream devices are automatically authorized.

C.

The downstream devices will appear in the root ADOM.

D.

The downstream devices must be added using the Add Device wizard.

Full Access
Question # 18

Refer to the exhibit which shows the Download Import Report.

Why is FortiManager failing to import firewall policy ID 1?

A.

Policy ID 1 is configured from the interface any to port6. FortiManager rejects the request to import this policy because the any interface does not exist on FortiManager

B.

Policy ID 1 for this managed FortiGate already exists on FortiManager in the policy package named Remote-FortlGate.

C.

Policy ID 1 has an address object that already exists in the ADOM database with any as the interface association, and conflicts with the address object interface association locally on FortiGate.

D.

Policy ID 1 does not have the ADOM Interface mapping configured on FortiManager.

Full Access