Fortinet NSE6_FMG_AD-7.6 Prüfungsthemen:
| Abschnitt | Ziele |
|---|---|
| Richtlinien und Objekte | - Richtlinienverwaltung
|
| Erweiterte Konfiguration | - Erweiterte Bereitstellung
|
| Geräteverwaltung | - Geräteverwaltung
|
| Verwaltung | - FortiManager-Funktionen
|
| Fehlerbehebung | - Szenarien zur Fehlerbehebung
|
Fortinet NSE 6 - FortiManager 7.6 Administrator NSE6_FMG_AD-7.6 Prüfungsfragen mit Lösungen
1. The administrator uses FortiManager to push a CLI script using the Remote FortiGate Directly (via CLI) option to configure an IPsec VPN. However, when running the script, the administrator receives the following error:
config vpn ipsec phase2-interface [parameter(s) invalid. detail: object mismatch] What must the administrator do to resolve the script error and successfully apply the IPsec configuration?
A) Add a second config vpn ipsec phase2-interface block without linking it to phase1.
B) Add the end command after finishing the IPsec phase 1-interface configuration block.
C) Run the script using the policy package or ADOM database method.
D) Use IPsec templates to deploy provisioning templates.
2. Refer to the following configuration. FortiManager # config system global global# set workspace-mode normal global# end FortiManager # What are two results from the configuration shown in the exhibit? Choose two answers
A) The same administrator can lock more than one ADOM at the same time.
B) All changes must be approved before they can be installed on a device.
C) Concurrent read-write access to an ADOM is disabled.
D) Multiple administrators can lock and work on separate ADOMs at the same time.
3. You want to let multiple administrators work in the same ADOM without creating configuration conflicts.
What is the best and the most effective solution to apply?
A) Enable workflow mode, which is the only way to prevent concurrent configuration conflicts.
B) Assign administrators with JSON API access to the FortiManager.
C) Activate workspace mode in the ADOM settings.
D) Configure RADIUS authentication to assign ADOM roles to each user.
4. Refer to the exhibits.


An administrator must replace the source LAN interface in policy ID 2 on their FortiGateRugged-70F.
However, when they try to install the policy package, they receive the error shown in the exhibit.
What should the administrator do to resolve the error?
A) Replace LAN with lan1, which is supported by FortiGateRugged-70F models.
B) Use a metadata variable to dynamically assign an interface when this error occurs.
C) Create a per-device mapping for the LAN interface.
D) Use the API to assign a system template interface for FortiGateRugged-70F model.
5. Refer to the exhibits.


FortiGate HQ-NGFW-1 downloads and validates FortiGuard databases from FortiManager which acts as a local FortiGuard Distribution Server (FDS) in a closed network. An administrator pushes a new firewall policy with an intrusion prevention system (IPS) profile from FortiManager to FortiGate HQ- NGFW-1 However, FortiGate does not recognize the new IPS signature from FortiManager.
What is the most likely reason why FortiGate HQ-NGFW-1 does not recognize the new IPS signature?
A) The administrator must enable IPv6 connections for FortiGuard services on FortiManager.
B) FortiManager and FortiGate have different IPS database versions.
C) The administrator must enable the fortiguard-anycast option to correctly download all signatures from the local FDS.
D) FortiGate must enable rating for the FortiManager IP address, 192.168.1.120, in server list 1.
Fragen und Antworten:
| 1. Frage Antwort: C | 2. Frage Antwort: C,D | 3. Frage Antwort: C | 4. Frage Antwort: C | 5. Frage Antwort: B |






0 Kundenbewertungen

