Which of the following conditions trigger FortiManager to create a new revision history? (Choose two.)
A. When configuration revision is reverted to previous revision in the revision history
B. When FortiManager installs device-level changes to a managed device
C. When FortiManager is auto-updated with configuration changes made directly on a managed device
D. When changes to device-level database is made on FortiManager
View the following exhibit.
Which one of the following statements is true regarding the object named ALL?
A. FortiManager updated the object ALL using FortiGate's value in its database
B. FortiManager updated the object ALL using FortiManager's value in its database
C. FortiManager created the object ALL as a unique entity in its database, which can be only used by this
managed FortiGate.
D. FortiManager installed the object ALL with the updated value.
An administrator run the reload failure command: diagnose test deploymanager reload config
A. It downloads the latest configuration from the specified FortiGate and performs a reload operation on the device database.
B. It installs the latest configuration on the specified FortiGate and update the revision history database.
C. It compares and provides differences in configuration on FortiManager with the current running configuration of the specified FortiGate.
D. It installs the provisioning template configuration on the specified FortiGate.
View the following exhibit.
Based on the configuration setting, which one of the following statements is true?
A. The setting allows automatic updates to the policy package configuration for a managed device
B. The setting enables the ADOMs feature on FortiManager
C. This setting allows you to assign different VDOMs from the same FortiGate to different ADOMs.
D. The setting disables concurrent ADOM access and adds ADOM locking
What configuration setting for FortiGate is part of a device-level database on FortiManager?
A. VIP and IP Pools
B. Firewall policies
C. Security profiles
D. Routing
As a result of enabling FortiAnalyzer features on FortiManager, which of the following statements is true?
A. FortiManager will reboot
B. FortiManager will send the logging configuration to the managed devices so the managed devices will start sending logs to FortiManager
C. FortiManager will enable ADOMs automatically to collect logs from non-FortiGate devices
D. FortiManager can be used only as a logging device.
Which of the following statements are true regarding ADOM revisions? (Choose two.)
A. ADOM revisions can significantly increase the size of the configuration backups.
B. ADOM revisions can save the current size of the whole ADOM
C. ADOM revisions can create System Checkpoints for the FortiManager configuration
D. ADOM revisions can save the current state of all policy packages and objects for an ADOM
View the following exhibit: Which of the following statements are true if the scripts is executed using Remote FortiGate Directly (via CLI) option? (Choose two.)
A. You must install these changes using Install Wizard
B. FortiGate will auto-update the FortiManager's device-level database.
C. FortiManager will create a new revision history.
D. FortiManager provides a preview of CLI commands before executing this script on a managed FortiGate.
Which of the following statements are true regarding schedule backup of FortiManager? (Choose two.)
A. Backs up all devices and the FortiGuard database.
B. Does not back up firmware images saved on FortiManager
C. Supports FTP, SCP, and SFTP
D. Can be configured from the CLI and GUI
An administrator has added all the devices in a Security Fabric group to FortiManager. How does the administrator identify the root FortiGate?
A. By a dollar symbol ($) at the end of the device name
B. By an at symbol (@) at the end of the device name
C. By a question mark(?) at the end of the device name
D. By an Asterisk (*) at the end of the device name
View the following exhibit.
Which one of the following statements is true regarding installation targets in use Install On column?
A. The Install On column value represents successful installation on the managed devices
B. Policy seq#3 will be installed on all managed devices and VDOMs that are listed under Installation Targets
C. Policy seq#3 will be installed on the Trainer[NAT] VDOM only
D. Policy seq#3 will be not installed on any managed device
View the following exhibit.
Which of the following statements are true if FortiManager and FortiGate are behind the NAT devices? (Choose two.)
A. FortiGate is discovered by FortiManager through the FortiGate NATed IP address.
B. FortiGate can announce itself to FortiManager only if the FortiManager IP address is configured on FortiGate under central management.
C. During discovery, the FortiManager NATed IP address is not set by default on FortiGate.
D. If the FGFM tunnel is torn down, FortiManager will try to re-establish the FGFM tunnel.
View the following exhibit.
When using Install Config option to install configuration changes to managed FortiGate, which of the
following statements are true? (Choose two.)
A. Once initiated, the install process cannot be canceled and changes will be installed on the managed device
B. Will not create new revision in the revision history
C. Installs device-level changes to FortiGate without launching the Install Wizard
D. Provides the option to preview configuration changes prior to installing them
An administrator wants to delete an address object that is currently referenced in a firewall policy. Which one of the following statements is true?
A. FortiManager will not allow the administrator to delete a referenced address object
B. FortiManager will disable the status of the referenced firewall policy
C. FortiManager will replace the deleted address object with the none address object in the referenced firewall policy
D. FortiManager will replace the deleted address object with all address object in the referenced firewall policy
View the following exhibit.
An administrator has created a firewall address object, Training, which is used in the Local-FortiGate policy package. When the install operation is performed, which IP Netmask will be installed on the Local-FortiGate, for the Training firewall address object?
A. 10.0.1.0/24
B. It will create firewall address group on Local-FortiGate with 192.168.0.1/24 and 10.0.1.0/24 object values
C. 192.168.0.1/24
D. Local-FortiGate will automatically choose an IP Network based on its network interface settings.