NSE5_FMG-6.4 Exam Questions
81 real NSE5_FMG-6.4 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1Device Management
Which two statements regarding device management on FortiManager are true? (Choose two.)
FortiManagerHA clusterdevice countVDOM counting - Question #2Policy and objects
Which of the purpose of the Policy Check feature on FortiManager?
policy checkpolicy optimizationpolicy packageADOM - Question #3Advanced configuration
Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)
Security FabricFabric Viewsecurity ratingsdevice settings - Question #4FortiManager administration
Refer to the exhibit. Which two statements are true if the script is executed using the Device Database option? (Choose two.)
scriptsdevice databasescript historydevice settings status - Question #5FortiManager administration
Refer to the exhibit. An administrator logs into the FortiManager GUI and sees the panes shown in the exhibit. Which two reasons can explain why the FortiAnalyzer feature panes do...
FortiAnalyzer featuresadministrator profiletrusted hostsfeature enablement - Question #6FortiManager administration
Which two items are included in the FortiManager backup? (Choose two.)
backupglobal databaseFortiGuard databasedevice backup - Question #7FortiManager administration
An administrator's PC crashes before the administrator can submit a workflow session for approval. After the PC is restarted, the administrator notices that the ADOM was locked fro...
workflow sessionADOM lockworkspace modeadministrator session - Question #8FortiManager administration
Refer to the exhibit. Given the configuration shown in the exhibit, which two statements are true? (Choose two.)
ADOM lockingconcurrent accessworkspace modeadministrator access - Question #9FortiManager administration
Refer to the exhibit. Which two statements about an ADOM set in Normal mode on FortiManager are true? (Choose two.)
ADOM normal modeworkspace modeconfiguration changesscript feature - Question #10Device and FortiGuard management
An administrator is replacing a device on FortiManager by running the following command: execute device replace sn <devname> <serialnum> What device name and serial number must the...
device replacementserial numberdevice nameCLI command - Question #11FortiManager administration
An administrator would like to review, approve, or reject all the firewall policy changes made by the junior administrators. How should the Workspace mode be configured on FortiMan...
workspace modeworkflow modeADOM lockingpolicy approval - Question #12FortiManager administration
You are moving managed FortiGate devices from one ADOM to a new ADOM. Which statement correctly describes the expected result?
ADOM migrationpolicy packagesshared policydevice move - Question #13Advanced configuration
Refer to the exhibit. An administrator has configured the command shown in the exhibit on FortiManager. A configuration change has been installed from FortiManager to the managed F...
FGFM tunnelconfiguration rollbackauto-recoverycentral management - Question #14Advanced configuration
An administrator would like to create an SD-WAN using central management in the Training ADOM. To create an SD-WAN using central management, which two steps must be completed? (Cho...
SD-WANcentral managementADOM settingsinterface references - Question #15FortiManager administration
What is the purpose of ADOM revisions?
ADOM revisionspolicy packagesobjectsrevision history - Question #16
An administrator has assigned a global policy package to custom ADOM1. Then the administrator creates a new policy package, Fortinet, in the custom ADOM1. Which statement about the...
- Question #17Policy and objects
Refer to the exhibit. Review the Download Import Report. Why is it failing to import firewall policy ID 2?
policy importaddress objectdynamic mappingADOM database conflict - Question #18Troubleshooting
An administrator with the Super_User profile is unable to log in to FortiManager because of an authentication failure message. Which troubleshooting step should you take to resolve...
authentication failuretrusted hostsSuper_Useradministrator login - Question #19Device and FortiGuard management
Refer to the exhibit. If both FortiManager and FortiGate are behind the NAT devices, what are the two expected results? (Choose two.)
NAT traversalFGFM tunneldevice discoveryNATed IP address - Question #21FortiManager administration
What will be the result of reverting to a previous revision version in the revision history?
revision historydevice databaseconfiguration revertdevice settings - Question #22
What does a policy package status of Conflict indicate?
- Question #23Policy and objects
An administrator configures a new firewall policy on FortiManager and has not yet pushed the changes to the managed FortiGate. In which database will the configuration be saved?
ADOM databasedevice databasepolicy configurationdatabase hierarchy - Question #24Policy and objects
Refer to the exhibit. An administrator has created a firewall address object which is used in multiple policy packages for multiple FortiGate devices in an ADOM. When the installat...
dynamic mappingaddress objectspolicy packagesinstallation wizard - Question #25Advanced configuration
Refer to the exhibits. An administrator created a new system template named Training with two new DNS addresses on FortiManager. During the installation preview stage, the administ...
system templatesDNS configurationinstallation previewdefault settings - Question #26
Refer to the exhibit. You are using the Quick Install option to install configuration changes on the managed FortiGate. Which two statements correctly describe the result? (Choose...
- Question #27Device and FortiGuard management
An administrator has enabled Service Access on FortiManager. What is the purpose of Service Access on the FortiManager interface?
Service AccessFortiGuard servicesinterface configuration - Question #28FortiManager administration
Which of the following conditions trigger FortiManager to create a new revision history? (Choose two.)
revision historyauto-updatedevice-level databaseconfiguration changes - Question #29Troubleshooting
What does the diagnose dvm check-integrity command do? (Choose two.)
diagnose dvmdevice statesdatabase integrityVDOM entries - Question #30Policy and objects
An administrator has assigned a global policy package to a new ADOM called ADOM1. What will happen if the administrator tries to create a new policy package in ADOM1?
global policy packageADOMpolicy packageautomatic assignment - Question #31Policy and objects
View the following exhibit. Which one of the following statements is true regarding the object named ALL?
object conflictsconflict resolutiondatabase synchronizationFortiGate objects - Question #32Device and FortiGuard management
View the following exhibit. How will FortiManager try to get updates for antivirus and IPS?
FortiGuard updatesoverride serversFDNantivirus IPS - Question #33
View the following exhibit. What of the following statements are true regarding the output? (Choose two.)
- Question #34Advanced configuration
An administrator would like to create an SD-WAN default static route for a newly created SD-WAN using the FortiManager GUI. Both port1 and port2 are part of the SD-WAN member inter...
SD-WANstatic routevirtual-wan-linkinterface configuration - Question #35Policy and objects
View the following exhibit, which shows the Download Import Report: Why it is failing to import firewall policy ID 2?
policy importaddress objectsinterface associationADOM database - Question #36FortiManager administration
In the event that the primary FortiManager fails, which of the following actions must be performed to return the FortiManager HA to a working state?
FortiManager HAprimary failoverHA reconfiguration - Question #37
An administrator run the reload failure command: diagnose test deploymanager reload config <deviceid> on FortiManager. What does this command do?
- Question #38Device and FortiGuard management
In addition to the default ADOMs, an administrator has created a new ADOM named Training for FortiGate devices. The administrator sent a device registration request to FortiManager...
device registrationADOM assignmentunauthorized devicesroot ADOM - Question #39FortiManager administration
View the following exhibit. Based on the configuration setting, which one of the following statements is true?
ADOM configurationVDOM mappingmulti-VDOM - Question #40FortiManager administration
What configuration setting for FortiGate is part of a device-level database on FortiManager?
device-level databaseroutingconfiguration hierarchypolicy packages - Question #41
Which of the following items does an FGFM keepalive message include? (Choose two.)
- Question #42FortiManager administration
As a result of enabling FortiAnalyzer features on FortiManager, which of the following statements is true?
FortiAnalyzer featuresloggingrebootFortiManager configuration - Question #43Advanced configuration
Which two settings must be configured for SD-WAN Central Management? (Choose two.)
SD-WAN central managementmember interfacesADOM configuration - Question #44FortiManager administration
Which of the following statements are true regarding ADOM revisions? (Choose two.)
ADOM revisionspolicy packagesconfiguration backupstate management - Question #45FortiManager administration
Refer to the following exhibit: Which of the following statements are true based on this configuration? (Choose two.)
ADOM lockingworkspace modesession managementconcurrent access - Question #46FortiManager administration
View the following exhibit. Which of the following statements are true if the scripts is executed using Remote FortiGate Directly (via CLI) option? (Choose two.)
CLI scriptsremote executionrevision historydevice-level database - Question #47FortiManager administration
Which two statements about the scheduled backup of FortiManager are true? (Choose two.)
scheduled backupFTP SCP SFTPfirmware images - Question #48Device and FortiGuard management
An administrator has added all the devices in a Security Fabric group to FortiManager. How does the administrator identify the root FortiGate?
Security Fabricroot FortiGatedevice identification - Question #49Policy and objects
View the following exhibit. Which one of the following statements is true regarding installation targets in use Install On column?
policy installationInstall On columninstallation targetspolicy packages - Question #50Troubleshooting
When installation is performed from the FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?
FGFM tunnelinstallation recoverytunnel failureFortiGate rollback - Question #52Policy and objects
What does a policy package status of Modified indicate?
policy package statusModified statusconfiguration synchronizationFortiManager workflow