Logo Passei Direto
Material
Study with thousands of resources!

Text Material Preview

FortiManager 7.6
Administrator
Version: Demo
[ Total Questions: 10]
Web: www.dumpscafe.com
Email: support@dumpscafe.com
Fortinet
FCP_FMG_AD-7.6
https://www.dumpscafe.com
https://www.dumpscafe.com/Braindumps-FCP_FMG_AD-7.6.html
IMPORTANT NOTICE
Feedback
We have developed quality product and state-of-art service to ensure our customers interest. If you have any 
suggestions, please feel free to contact us at feedback@dumpscafe.com
Support
If you have any questions about our product, please provide the following items:
exam code
screenshot of the question
login id/email
please contact us at and our technical experts will provide support within 24 hours.support@dumpscafe.com
Copyright
The product of each order has its own encryption code, so you should use it independently. Any unauthorized 
changes will inflict legal punishment. We reserve the right of final explanation for this statement.
Fortinet - FCP_FMG_AD-7.6Pass Exam
1 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
A. 
B. 
C. 
D. 
Question #:1
Which is recommended when you are managing a high volume of logs in your network?
Store logs on FortiManager and use FortiView.
Add and manage FortiAnalyzer from FortiManager.
Enable advanced ADOM mode on FortiManager.
Forward logs from FortiAnalyzer to FortiManager daily.
Answer: B
Explanation
Adding and managing FortiAnalyzer from FortiManager is recommended for handling a high volume of logs, 
as FortiAnalyzer is designed specifically for centralized log management, analysis, and reporting, which 
offloads this workload from FortiManager.
Question #:2
After correcting a policy package configuration issue, you want to prevent administrators from repeating the 
mistake that caused the issue.
Which FortiManager approach best meets this need?
Configure an TCL script to run locally on FortiManager for each FortiGate.
Restrict administrators with an administration profile from viewing the revision history to limit who can 
make changes.
Enable the change note to require administrators to add a note whenever they change object 
configurations.
Enable a workflow requiring approval before installing policy packages on any FortiGate.
Answer: D
Explanation
Enabling a workflow with approval ensures that any policy package changes must be reviewed and approved 
before installation, preventing administrators from repeating configuration mistakes and enforcing change 
control.
Question #:3
What is the best explanation of how FortiManager helps with mass provisioning?
Fortinet - FCP_FMG_AD-7.6Pass Exam
2 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
A. 
B. 
C. 
D. 
It upgrades the OS of each FortiGate device.
It provides local FortiGuard Distribution Server (FDS) services to the network.
It uses templates to configure the same settings on many devices simultaneously.
It sends email alerts when new devices connect.
Answer: C
Explanation
FortiManager helps with mass provisioning by using templates that allow administrators to configure the 
same settings on multiple FortiGate devices simultaneously, streamlining deployment and management.
Question #:4
Refer to the exhibit.
What are two results from the configuration shown in the exhibit? (Choose two.)
Ungraceful closed sessions will keep the ADOM in a locked state until the administrator session times 
out.
The administrator can lock policy blocks and FortiManager global ADOM.
The same administrator can lock more than one ADOM at the same time.
The administrator must have access to the ADOM to approve changes.
Answer: A B
Explanation
In normal workspace mode, ungraceful session closures will keep the ADOM locked until the session times 
out, preventing other administrators from editing.
Normal workspace mode allows administrators to lock policy blocks and the global ADOM, providing 
granular locking control.
Question #:5
Fortinet - FCP_FMG_AD-7.6Pass Exam
3 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
A. 
B. 
C. 
D. 
What is the purpose of ADOM revisions?
ADOM revisions find unused, duplicate, and unnecessary firewall policies and objects.
ADOM revisions show specific changes in a policy package when it is installed.
ADOM revisions compare previous snapshots of the Policy Package and ADOM-level objects with the 
device-level database.
ADOM revisions save the current state of all policy packages and objects for an ADOM.
Answer: D
Explanation
ADOM revisions save the current state of all policy packages and objects within an ADOM, allowing 
administrators to track changes over time and revert to previous configurations if needed.
Question #:6
The administrator uses FortiManager to push a CLI script using the Remote FortiGate Directly (via CLI) 
option to configure an IPsec VPN. However, when running the script, the administrator receives the following 
error:
config vpn ipsec phase2-interface [parameter(s) invalid. detail: object mismatch]
What must the administrator do to resolve the script error and successfully apply the IPsec configuration?
Add the end command after finishing the IPsec phase 1-interface configuration block.
Use IPsec templates to deploy provisioning templates.
Add a second config vpn ipsec phase2-interface block without linking it to phase1.
Run the script using the policy package or ADOM database method.
Answer: D
Explanation
Running the script through the policy package or ADOM database method allows FortiManager to properly 
interpret object relationships and dependencies in the IPsec configuration, preventing object mismatch errors 
when pushing complex VPN settings directly via CLI.
Question #:7
Refer to the exhibit.
Fortinet - FCP_FMG_AD-7.6Pass Exam
4 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
FortiManager is operating behind a network address translation (NAT) device, and the administrator 
configured the FortiManager NATed IP address under the FortiManager system administration settings.
What is the expected result during discovery?
FortiManager sets both the 100.65.0.120 IP address and 10.0.13.120 IP address on FortiGate.
FortiManager sets both the 100.65.0.120 IP address and 100.65.0.101 IP address on FortiGate.
FortiManager sets the 100.65.0.101 IP address on FortiGate.
FortiManager sets the 100.65.0.120 IP address on FortiGate.
Answer: D
Explanation
When FortiManager is behind a NAT device, setting the NATed IP address (100.65.0.120) in the system 
admin settings causes FortiManager to use that NATed IP address for communication and configuration with 
FortiGate during discovery and management operations.
Question #:8
Refer to the exhibits.
Fortinet - FCP_FMG_AD-7.6Pass Exam
5 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
An administrator has been asked to install the same policies from a central policy package onto the BR1-FGT-
1 firewall.
The administrator added BR1-FGT-1 as a target in the central policy package installation.
What should the administrator do when reinstalling the central policy package on the BR1-FGT-1 firewall?
Assign only one policy package to the firewall because FortiManager does not allow more than one 
policy package assigned per device at the same time.
Import the policy package to change the unknown status and synchronize the policy package.
Use the install wizard to install the central policy package on the BR1-FGT-1 firewall.
First resolve the modified status in the configuration and provisioning templates to allow a smooth 
installation.
Answer: C
Fortinet - FCP_FMG_AD-7.6Pass Exam
6 of 7Verified Solution - 100% Result
A. 
B. 
C. 
D. 
A. 
B. 
C. 
D. 
Explanation
Using the Install Wizard is the recommended method to reinstall the central policy package on the BR1-FGT-
1 firewall, ensuring all settings, installation targets, and dependencies are correctly processed during 
installation.
Question #:9
An administrator must create a policy and install it on a FortiGate devicewithin an ADOM in backup mode.
How can the administrator perform this task?
Use the Install Wizard located on the device manager.
Enable workflow mode to allow policy creation and approval.
Make sure the ADOM and FortiGate firmware versions match and use the ADOM policy package.
Use a FortiManager script to apply the configuration changes.
Answer: D
Explanation
In backup mode, FortiManager does not directly manage policy installation via the usual ADOM policy 
packages; instead, administrators use FortiManager scripts to push configuration changes, including policies, 
to FortiGate devices.
Question #:10
A service provider administrator has assigned a global policy package to a managed customer ADOM named 
My_ADOM. The customer administrator has access only to My_ADOM.
How can the customer administrator edit the global header policy of the global policy package?
The customer administrator can edit the header policy by using workspace mode on the global ADOM.
The customer administrator can edit the header policy by using workflow mode on the global ADOM 
and My_ADOM.
The service provider administrator can unlock the global policy from the global ADOM to authorize 
changes to the customer administrator.
The customer administrator cannot edit the global header policy; only the service provider administrator 
can make changes from the global ADOM.
Answer: D
Fortinet - FCP_FMG_AD-7.6Pass Exam
7 of 7Verified Solution - 100% Result
Explanation
The global policy package is managed only from the global ADOM by the service provider administrator. 
Customer administrators with access solely to their ADOM (My_ADOM) cannot edit the global header 
policy; such changes must be made by the service provider administrator in the global ADOM.
About dumpscafe.com
dumpscafe.com was founded in 2007. We provide latest & high quality IT / Business Certification Training Exam 
Questions, Study Guides, Practice Tests.
We help you pass any IT / Business Certification Exams with 100% Pass Guaranteed or Full Refund. Especially 
Cisco, CompTIA, Citrix, EMC, HP, Oracle, VMware, Juniper, Check Point, LPI, Nortel, EXIN and so on.
View list of all certification exams: All vendors
 
 
 
We prepare state-of-the art practice tests for certification exams. You can reach us at any of the email addresses 
listed below.
Sales: sales@dumpscafe.com
Feedback: feedback@dumpscafe.com
Support: support@dumpscafe.com
Any problems about IT certification or our products, You can write us back and we will get back to you within 24 
hours.
https://www.dumpscafe.com
https://www.dumpscafe.com/allproducts.html
https://www.dumpscafe.com/Microsoft-exams.html
https://www.dumpscafe.com/Cisco-exams.html
https://www.dumpscafe.com/Citrix-exams.html
https://www.dumpscafe.com/CompTIA-exams.html
https://www.dumpscafe.com/EMC-exams.html
https://www.dumpscafe.com/ISC-exams.html
https://www.dumpscafe.com/Checkpoint-exams.html
https://www.dumpscafe.com/Juniper-exams.html
https://www.dumpscafe.com/Apple-exams.html
https://www.dumpscafe.com/Oracle-exams.html
https://www.dumpscafe.com/Symantec-exams.html
https://www.dumpscafe.com/VMware-exams.html
mailto:sales@dumpscafe.com
mailto:feedback@dumpscafe.com
mailto:support@dumpscafe.com