Fortinet NSE 5 - FortiManager 6.4 試験
【2024桜まつりキャンペーン】:NSE5_FMG-6.4 最新真題を買う時、日本語版と英語版両方を同時に獲得できます。
実際の問題集を練習し、試験のポイントを了解し、テストに申し込むするかどうかを決めることができます。
さらに試験準備時間の35%を節約するには、NSE5_FMG-6.4 問題集を使用してください。
Question No : 1
What are two outcomes of ADOM revisions? (Choose two.)
正解:
Explanation:
Reference: https://docs2.fortinet.com/document/fortimanager/6.0.0/best-practices/101837/adom-revisions
Question No : 2
Which two items does an FGFM keepalive message include? (Choose two.)
正解:
Explanation:
Reference: https://docs.fortinet.com/document/fortimanager/6.2.0/fortigate-fortimanager-communications-protocol-guide/579138/keep-alive-messages
Question No : 3
An administrator run the reload failure command: diagnose test deploymanager reload config <deviceid> on FortiManager.
What does this command do?
正解:
Explanation:
Reference: https://community.fortinet.com/t5/FortiManager/Technical-Note-Retrieve-configuration-file-using-CLI-from-a/ta-p/191000?externalID=FD36387
Question No : 4
An administrator wants to delete an address object that is currently referenced in a firewall policy.
What can the administrator expect to happen?
正解:
Explanation:
Reference: https://help.fortinet.com/fmgr/50hlp/56/5-6-2/FortiManager_Admin_Guide/1200_Policy%20and%20Objects/1200_Managing%20object s/0800_Remove%20an%20object.htm
Question No : 5
Refer to the exhibits.
Exhibit one.
Exhibit two.
An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administrator notices that many unset commands need to be pushed.
What can be the main reason for these unset commands?
正解:
Question No : 6
Which two statements about the scheduled backup of FortiManager are true? (Choose two.)
正解:
Explanation:
Reference: https://docs.ansible.com/ansible/latest/collections/fortinet/fortimanager/fmgr_system_backu p_allsettings_module.html
Question No : 7
View the following exhibit.
Which statement is true regarding this failed installation log?
正解:
Question No : 8
View the following exhibit.
What is the purpose of setting ADOM Mode to Advanced?
正解:
Explanation:
Reference: https://docs.fortinet.com/document/fortianalyzer/7.0.0/administration-guide/66530/adom-device-modes
Question No : 9
What will happen if FortiAnalyzer features are enabled on FortiManager?
正解:
Explanation:
Reference: https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FortiManager_Admin_Guide/1800_FAZ%20Features/0200_Enable%20FAZ%20Features.htm
Question No : 10
You are moving managed FortiGate devices from one ADOM to a new ADOM.
Which statement correctly describes the expected result?
正解:
Explanation:
Reference: https://community.fortinet.com/t5/FortiManager/Technical-Note-How-to-move-objects-to-new-ADOM-on-FortiManager/ta-p/198342
Question No : 11
When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
正解:
Explanation:
Reference: https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/067f5236-ca6d-11e9-8977-00505692583a/FGFM-6.2-Communications_Protocol_Guide.pdf page 17
Question No : 12
Which two settings must be configured for SD-WAN Central Management? (Choose two.)
正解:
Question No : 13
An administrator would like to review, approve, or reject all the firewall policy changes made by the junior administrators.
How should the Workspace mode be configured on FortiManager?
正解:
Explanation:
Reference: https://help.fortinet.com/fmgr/50hlp/52/5-2-0/FMG_520_Online_Help/200_What's-New.03.03.html
Question No : 14
Refer to the exhibit.
Which two statements about the output are true? (Choose two.)
正解:
Explanation:
STATUS: dev-db: modified; conf: in sync; cond: pending; dm: retrieved; conn: upC
dev-db: modified C This is the device setting status which indicates that configuration changes were made on FortiManager.C conf: in sync C This is the sync status which shows that the latest revision history is in sync with Fortigate’s configuration.C cond: pending C This is the configuration status which says that configuration changes need to be installed.
Most probably a retrieve was done in the past (dm: retrieved) updating the revision
history DB (conf: in sync) and FortiManager device level DB, now there is a new
modification on FortiManager device level DB (dev-db: modified) which wasn’t installed to FortiGate (cond: pending), hence; revision history DB is not aware of that modification and doesn’t match device DB.
Conclusion:C Revision DB does match FortiGate.C No changes were installed to FortiGate yet.C Device DB doesn’t match Revision DB.C No changes were done on FortiGate (auto-update) but configuration was retrieved instead
After an Auto-Update or Retrieve:device database = latest revision = FGT
Then after a manual change on FMG end (but no install yet):latest revision = FGT (still) but now device database has been modified (is different).
After reverting to a previous revision in revision history:device database = reverted revision != FGT
Question No : 15
Which configuration setting for FortiGate is part of a device-level database on FortiManager?
正解:
Explanation:
The FortiManager stores the FortiGate configuration details in two distinct databases. The device-level database includes configuration details related to device-level settings, such as interfaces, DNS, routing, and more. The ADOM-level database includes configuration details related to firewall policies, objects, and security profiles.