Summer Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpt65

FCP_FMG_AD-7.4 Questions and Answers

Question # 6

Refer to the exhibit.

An administrator has created a firewall address object that is used in multiple policy packages for multiple FortiGate devices in an ADOM.

After the installation operation is performed, which IP/netmask will be installed on Local-FortiGate for theLOCAL_SUBNETfirewall address object?

A.

192.168.1.0/24

B.

Local-FortiGate automatically chooses an IP/netmask based on its network interface settings.

C.

It will create two firewall address objects on Local-FortiGate with 192.168.1.0/24 and 10.0.5.0/24 values.

D.

10.0.5.0/24

Full Access
Question # 7

If both FortiManager and FortiGate are behind NAT devices, what are the two expected results? (Choose two.)

A.

FortiGate is discovered by FortiManager through the FortiGate NATed IP address.

B.

FortiGate can announce itself to FortiManager only if the FortiManager non-NATed IP address is configured on FortiGate under central management.

C.

If the FGFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.

D.

During discovery, the FortiManager NATed IP address is not set by default on FortiGate.

Full Access
Question # 8

An administrator wants to create a policy on an ADOM that is in backup mode and install it on a FortiGate device in the same ADOM. How can the administrator perform this task?

A.

The administrator must use the Policy & Objects section to create a policy first.

B.

The administrator must use a FortiManager script.

C.

The administrator must disable the FortiManager offline mode first.

D.

The administrator must change the ADOM mode to Advanced to bring the FortiManager online.

Full Access
Question # 9

Which statement about the upgrade of ADOMs on FortiManager is true?

A.

To ensure database consistency, you must upgrade an ADOM before you upgrade the devices in it.

B.

Upgrading the FortiManager version upgrades all existing ADOMs automatically.

C.

You cannot import policies from a device until its FortiOS version matches the ADOM version.

D.

ADOMs using global objects can be upgraded before or after upgrading the global database ADOM.

Full Access
Question # 10

Refer to the exhibit.

Given the configuration shown in the exhibit, which two conclusions can you draw from the installation targets in the Install On column? (Choose two.)

A.

Policy seq.S will be installed on all managed devices and VDOMs that are listed under Installation Targets

B.

Policy seq.# 3 will be skipped because no installation targets are specified.

C.

Policy seq.# 2 will not be installed on the Local-FortiGate root VDOM because there is no root VDOM in the Installation Target

D.

Policy seq.# 1 will be installed on the ISFW device root[NAT] and Student[NAT] VDOMs only.

Full Access
Question # 11

An administrator enabled workspace mode and now wants to delete an address object that is currently referenced in a firewall policy. Which two results can the administrator expect? (Choose two.)

A.

FortiManager will temporarily change the status of the referenced firewall policy to disabled.

B.

FortiManager will disable the status of the address object until the changes are installed.

C.

FortiManager will not allow the administrator to delete a referenced address object until they lock the ADOM.

D.

FortiManager will replace the deleted address object with the none address object in the referenced firewall policy.

Full Access
Question # 12

Which two items does an FGFM keepalive message include? (Choose two.)

A.

FortiGate IPS version

B.

FortiGate license information

C.

FortiGate configuration checksum

D.

FortiGate uptime

Full Access
Question # 13

When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

A.

FortiManager will not push the CLI commands as part of the installation that will cause the tunnel to go down.

B.

After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.

C.

FortiManager will revert and install a previous configuration revision on the managed FortiGate.

D.

FortiGate will reject the CLI commands that will cause the tunnel to go down.

Full Access
Question # 14

An administrator runs the reload failure command diagnose test deploymanager reloadconf on FortiManager.

What does this command do?

A.

It compares and provides differences in configuration on FortiManager with the current running configuration of the specified FortiGate.

B.

It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.

C.

It reloads the policy package from the FortiManager to FortiGate.

D.

It installs the latest configuration on the specified FortiGate and updates the revision history database.

Full Access
Question # 15

An administrator has assigned a global policy package to a new ADOM called ADOM1.

What will happen if the administrator tries to create a new policy package in ADOM1?

A.

When creating a new policy package, the administrator can select the option to assign the global policy package to the new policy package.

B.

When a new policy package is created, the administrator must assign the global policy package from the global ADOM.

C.

When a new policy package is created, the administrator must import the global policy package to ADOM1.

D.

When the new policy package is created, FortiManager automatically assigns the global policy package to the new policy package.

Full Access
Question # 16

What will be the result of reverting to a previous revision version in the revision history?

A.

It win install configuration changes to managed device automatically.

B.

It will tag the device settings status as Auto-Update.

C.

It will modify the device-level database.

D.

It will generate a new version ID and remove all other revision history versions.

Full Access
Question # 17

Refer to the exhibit.

An administrator created two new meta fields in FortiManager.

Which operation can be performed with these parameters?

A.

You can invoke them using the $ character.

B.

You can add them to objects as custom attributes.

C.

You can export them to be used in other ADOMs.

D.

You can use them as variables in scripts.

Full Access
Question # 18

Exhibit.

An administrator would like to create three ADOMs on FortiManager with different access levels based on departments. What two conclusions can you draw from the design shown in the exhibit? (Choose two.)

A.

The FortiManager administrator must set the ADOM device mode to Advanced

B.

Policies and objects databases can be shared between the Financial and HR ADOMs.

C.

An administrator with the super user profile can access all the VDOMs.

D.

The administrator must configure FortiManager in workspace normal mode.

Full Access