Fortinet NSE5_FMG-7.2 Practice Questions

Total 67 Questions


Last Updated On : 26-Nov-2025


undraw-questions

Think You're Ready? Prove It Under Real Fortinet Exam Conditions

Take Exam

What will be the result of reverting to a previous revision version in the revision history?



A. It will install configuration changes to managed device automatically


B. It will tag the device settings status as Auto-Update


C. It will generate a new version ID and remove all other revision history versions


D. It will modify the device-level database





D.
  It will modify the device-level database

What are two outcomes of ADOM revisions? (Choose two.)



A. ADOM revisions can significantly increase the size of the configuration backups.


B. ADOM revisions can save the current size of the whole ADOM


C. ADOM revisions can create System Checkpoints for the FortiManager configuration


D. ADOM revisions can save the current state of all policy packages and objects for an ADOM





A.
  ADOM revisions can significantly increase the size of the configuration backups.

D.
  ADOM revisions can save the current state of all policy packages and objects for an ADOM

Explanation:

[Reference: https://docs2.fortinet.com/document/fortimanager/6.0.0/best-practices/101837/adom-revisions, , ]

Which two statements about Security Fabric integration with FortiManager are true? (Choose two.)



A. The Security Fabric license, group name and password are required for the FortiManager Security Fabric integration


B. The Fabric View module enables you to generate the Security Fabric ratings for Security Fabric devices


C. The Security Fabric settings are part of the device level settings


D. The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices





C.
  The Security Fabric settings are part of the device level settings

D.
  The Fabric View module enables you to view the Security Fabric ratings for Security Fabric devices

An administrator is replacing a device on FortiManager by running the following command: execute device replace sn . What device name and serial number must the administrator use?



A. Device name and serial number of the original device.


B. Device name and serial number of the replacement device.


C. Device name of the replacement device and serial number of the original device.


D. Device name of the original device and serial number of the replacement device.





D.
  Device name of the original device and serial number of the replacement device.

An administrator would like to create an SD-WAN using central management. What steps does the administrator need to perform to create an SD-WAN using central management?



A. First create an SD-WAN firewall policy, add member interfaces to the SD-WAN template and create a static route


B. You must specify a gateway address when you create a default static route


C. Remove all the interface references such as routes or policies


D. Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.





D.
  Enable SD-WAN central management in the ADOM, add member interfaces, create a static route and SDWAN firewall policies.

An administrator has enabled Service Access on FortiManager. What is the purpose of Service Access on the FortiManager interface?



A. It allows FortiManager to respond to requests for FortiGuard services from FortiGate devices.


B. It allows FortiManager to determine the connection status of managed devices.


C. It allows administrative access to FortiManager.


D. It allows third-party applications to gain read/write access to FortiManager.





A.
  It allows FortiManager to respond to requests for FortiGuard services from FortiGate devices.

Explanation:

Enabling Service Access on FortiManager can include settings that allow it to act as a proxy or intermediary for FortiGuard services to managed FortiGate devices. This is particularly useful in network architectures where direct communication from FortiGate devices to FortiGuard servers is restricted or not possible.

Which two statements about the output are true? (Choose two.)



A. The latest revision history for the managed FortiGate does match with the FortiGate running configuration


B. Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed


C. The latest history for the managed FortiGate does not match with the device-level database


D. Configuration changes directly made on the FortiGate have been automatically updated to device-level database





B.
  Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed

C.
  The latest history for the managed FortiGate does not match with the device-level database

Explanation:

B. Configuration changes have been installed to FortiGate and represents FortiGate configuration has been changed
When changes are pushed (installed) from FortiManager to a FortiGate, the running configuration on the FortiGate is updated.
If the output shows a successful installation, this means the FortiGate's config has been modified by FortiManager.
Reference:
FortiManager Admin Guide → "Installing Configuration Changes to Devices."

C. The latest history for the managed FortiGate does not match with the device-level database If there are uninstalled changes (e.g., modifications in FortiManager not yet pushed to FortiGate), the device-level database (DLDB) in FortiManager will differ from the FortiGate's actual config.
This mismatch is common when changes are made in FortiManager but not yet deployed. Reference:
FortiManager → "Device Manager → Revision History."

Why Other Options Are Incorrect:
A. The latest revision history for the managed FortiGate does match with the FortiGate running configuration
If this were true, there would be no pending changes in FortiManager, meaning synchronization is complete. However, the question implies a discrepancy (likely due to uninstalled changes).

D. Configuration changes directly made on the FortiGate have been automatically updated to device-level database By default, manual changes on FortiGate are NOT automatically synced to FortiManager. To update FortiManager, you must either: Retrieve the config (manually pull changes). Enable auto-sync (if configured, but not default behavior). Reference: FortiManager → "Device Management → Retrieving Configurations."

Page 3 out of 10 Pages
NSE5_FMG-7.2 Practice Test Home Previous

Your Official Fortinet NSE5_FMG-7.2 Exam Rehearsal

Our new Timed NSE5_FMG-7.2 Exam Simulation replicates the exact format, question count, and strict time limit of the real test.

We don't just test your knowledge; we build your Fortinet exam-day stamina and speed, so you can answer with confidence when it matters most.



Stop the clock-watching. Start your simulation now!