FCP_FGT_AD-7.6 · Question #64
Refer to the exhibits. An administrator creates a new address object on the root FortiGate (HQ- NGFW-1) in the Security Fabric. After synchronization, this object is not available on the downstream…
The correct answer is C. Change the setting on HQ-NGFW-1 (root) to. The CLI command fabric-object-unificationis available only on the root FortiGate device. When set to local, global objects are not synchronized to downstream devices in the Security Fabric. The default value isdefault.
Question
Refer to the exhibits. An administrator creates a new address object on the root FortiGate (HQ- NGFW-1) in the Security Fabric. After synchronization, this object is not available on the downstream FortiGate (HQ-ISFW). What must the administrator do to synchronize the address object?
Exhibits
Options
- AChange the csf setting on HQ-ISFW (downstream) to set configuration-sync local.
- BChange the csf setting on HQ-ISFW (downstream) to set saml-configuration-sync
- CChange the setting on HQ-NGFW-1 (root) to
- DChange the csf setting on both devices to set downstream-access enable.
How the community answered
(26 responses)- A4% (1)
- B8% (2)
- C77% (20)
- D12% (3)
Explanation
The CLI command fabric-object-unificationis available only on the root FortiGate device. When set to local, global objects are not synchronized to downstream devices in the Security Fabric. The default value isdefault.
Topics
Community Discussion
No community discussion yet for this question.



