Fortinet FCP_FMG_AD-7.6 Practice Test Questions and Exam Dumps Part20 Q381-400

View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps.

 

Question 381

Which FortiManager component provides a centralized view for managing registered FortiGate devices?

  1. Device Manager
  2. FortiGuard Cache
  3. Global Database
  4. Revision History

Correct Answer: 1

Explanation

Device Manager provides administrators with a centralized interface for viewing and managing FortiGate devices registered with FortiManager. It can display device information, status, and management-related details needed for centralized administration. Administrators can use Device Manager to identify connectivity conditions and perform supported device management operations. When troubleshooting, the information shown there can help determine whether a problem is related to device registration, communication, synchronization, or another part of the FortiManager management workflow.

Question 382

What is the main purpose of retrieving a FortiGate configuration into FortiManager?

  1. To upgrade FortiManager firmware
  2. To obtain the device’s current configuration for centralized management
  3. To create a FortiGuard contract
  4. To remove the device from an ADOM

Correct Answer: 2

Explanation

Configuration retrieval allows FortiManager to obtain the current configuration from a managed FortiGate. This can be important when the device has been configured locally or when FortiManager needs to synchronize its management database with the actual device state. Before retrieving a configuration, administrators should understand the potential effect on the centrally stored configuration. Reviewing differences first can help prevent accidental loss of desired changes and provides a clearer basis for deciding which configuration should become authoritative.

Question 383

What should an administrator do before overwriting a FortiManager configuration with a retrieved device configuration?

  1. Delete all revisions
  2. Disable FGFM
  3. Compare the existing and retrieved configurations
  4. Remove the policy package

Correct Answer: 3

Explanation

Comparing the existing FortiManager configuration with the retrieved FortiGate configuration helps administrators understand what has changed before one configuration replaces another. This is especially important when local changes may have been made directly on the FortiGate. The comparison can reveal policy, object, or system configuration differences. Administrators can then determine whether the retrieved state should be accepted or whether selected changes should first be incorporated into the centrally managed configuration.

Question 384

A FortiManager installation reports a copy failure. What should be investigated first?

  1. The policy icon color
  2. The administrator’s username
  3. The ADOM display name
  4. Device connectivity and the installation log

Correct Answer: 4

Explanation

A copy failure during installation should be investigated by checking device connectivity and reviewing the installation log. The log may identify the exact operation that failed and provide information about communication, configuration, or process errors. Administrators should also verify that the target FortiGate is reachable and that management communication is functioning correctly. Repeating the installation without examining the failure details may not resolve the problem and can make troubleshooting less efficient.

Question 385

What can a failed reload indicate during FortiManager configuration processing?

  1. A problem occurred while processing or reloading configuration data
  2. A FortiGuard contract was renewed
  3. A new ADOM was created
  4. A device group was renamed

Correct Answer: 1

Explanation

A failed reload can indicate that FortiManager encountered a problem while processing or reloading configuration data. The exact cause may involve invalid configuration, database conditions, unsupported settings, or another processing issue. Administrators should review the relevant error information and logs to identify where the reload failed. The affected configuration should be examined before another installation attempt is made. Troubleshooting the underlying error is preferable to repeatedly forcing the same operation.

Question 386

Why is database integrity important in FortiManager?

  1. It determines the browser language
  2. Corrupted configuration databases can affect management and installation operations
  3. It controls the FortiManager logo
  4. It assigns administrator display names

Correct Answer: 2

Explanation

Database integrity is important because FortiManager relies on configuration databases to maintain information about managed devices, ADOMs, policies, objects, and other management data. Database corruption or inconsistency can interfere with normal administrative operations and configuration installations. If integrity problems are suspected, administrators should follow appropriate FortiManager troubleshooting and recovery procedures rather than making arbitrary database changes. Regular operational safeguards and controlled recovery practices help reduce the impact of database-related problems.

Question 387

What is a possible concern after an unexpected FortiManager power failure?

  1. Filesystem or database integrity problems
  2. Automatic creation of global policies
  3. Removal of all FortiGate interfaces
  4. Automatic renewal of FortiGuard contracts

Correct Answer: 1

Explanation

An unexpected power failure can potentially affect filesystem or database integrity if data was being written when the system stopped. After recovery, administrators should verify system health and investigate any reported filesystem or database problems. They should avoid assuming that all configuration data is unaffected simply because FortiManager starts normally. Appropriate integrity checks and backups can help identify or recover from problems resulting from an unexpected shutdown.

Question 388

Which diagnostic information is useful when FortiManager experiences high CPU utilization?

  1. Only policy names
  2. Device group descriptions
  3. Process status and system resource information
  4. Administrator profile colors

Correct Answer: 3

Explanation

Process status and system resource information are useful when investigating high CPU utilization. Administrators can identify which processes are consuming resources and determine whether the high usage is temporary or persistent. Additional logs and operational information may help establish what activity caused the load. Reviewing process information is more useful than making unrelated policy changes because high CPU usage may result from a system process, management workload, or another operational condition.

Question 389

What should be reviewed when FortiManager memory utilization remains unusually high?

  1. Memory-consuming processes and system activity
  2. Policy object colors
  3. Device group names
  4. Browser bookmarks

Correct Answer: 1

Explanation

Persistent high memory utilization should be investigated by reviewing memory-consuming processes and overall system activity. Administrators should determine whether a particular process, workload, or management operation is responsible for the increased usage. Relevant logs and diagnostic information can provide additional context. Monitoring the system over time can also help distinguish a temporary workload from a persistent resource issue. Correctly identifying the source is important before taking recovery or service-related actions.

Question 390

Which command category is most useful for detailed FortiManager troubleshooting?

  1. Display commands only
  2. Debug commands
  3. Policy naming commands
  4. Browser configuration commands

Correct Answer: 2

Explanation

Debug commands provide detailed diagnostic information that can help administrators investigate FortiManager processes and services. They are particularly useful when standard status information does not reveal the cause of a problem. Debug output should be collected carefully and interpreted in context because the amount of information can be extensive. Administrators should use appropriate troubleshooting procedures and disable unnecessary debugging when the diagnostic task is complete to avoid generating excessive output.

Question 391

What is the purpose of FGFM keepalive messages?

  1. To maintain and monitor management communication between FortiManager and FortiGate
  2. To update administrator passwords
  3. To create policy packages
  4. To download firmware automatically

Correct Answer: 1

Explanation

FGFM keepalive messages help maintain and monitor the management communication relationship between FortiManager and managed FortiGate devices. They provide an indication that the management connection remains active. If keepalive communication stops, FortiManager may detect a connectivity problem and the administrator can investigate network reachability, device availability, or management processes. Understanding keepalive behavior is useful when troubleshooting intermittent or persistent communication problems between the management server and FortiGate.

Question 392

A managed FortiGate stops responding to FortiManager keepalive messages. What should be checked?

  1. The policy package name
  2. Network reachability and management communication
  3. The administrator’s browser
  4. Global object descriptions

Correct Answer: 2

Explanation

When keepalive communication stops, network reachability and management communication should be checked first. Routing, firewall policies, NAT, device availability, and relevant management services can all affect the connection. Administrators should determine whether the problem is limited to FortiManager communication or whether the FortiGate has broader network issues. Reviewing device status and appropriate diagnostic information can help establish whether the keepalive failure is caused by connectivity or a local system condition.

Question 393

What can happen if a managed FortiGate becomes unreachable during an installation?

  1. The installation may fail or remain incomplete
  2. A new ADOM is automatically created
  3. All global policies are deleted
  4. FortiManager automatically changes the device’s hostname

Correct Answer: 1

Explanation

If a FortiGate becomes unreachable during installation, FortiManager may be unable to complete the deployment. The installation can therefore fail, stop before completion, or leave the device and FortiManager in different configuration states. Administrators should restore management connectivity and review the installation log before deciding how to proceed. After connectivity is restored, the configuration should be compared and the appropriate installation or recovery procedure should be followed.

Question 394

Which factor is especially important when troubleshooting a FortiGate behind NAT?

  1. Policy object descriptions
  2. Administrator account names
  3. Correct management address and NAT behavior
  4. Global policy colors

Correct Answer: 3

Explanation

When a FortiGate is behind NAT, administrators must verify that FortiManager can reach the appropriate management endpoint through the translated network path. NAT rules, routing, firewall policies, and configured management addresses should be checked. Incorrect translation can prevent registration, keepalive communication, configuration retrieval, or installation. Troubleshooting should therefore focus on the actual network path between the two systems and confirm that the required management traffic can traverse the NAT environment correctly.

Question 395

What should be checked when a FortiGate cannot register with FortiManager?

  1. Network connectivity, management settings, and device registration requirements
  2. Policy icon colors
  3. Browser bookmarks
  4. Administrator screen size

Correct Answer: 1

Explanation

When registration fails, administrators should verify network connectivity, management settings, and the requirements for adding the FortiGate to FortiManager. The device must be able to communicate with the management server through the required network path. NAT, firewall policies, routing, and device authorization or registration information may also need to be reviewed. A structured registration checklist helps determine whether the failure is caused by connectivity, configuration, or the registration process itself.

Question 396

What is the main purpose of an ADOM-level database in troubleshooting?

  1. To store only firmware downloads
  2. To provide configuration information associated with that ADOM
  3. To monitor browser sessions
  4. To replace all FortiGuard services

Correct Answer: 2

Explanation

An ADOM-level database contains configuration information associated with the devices and objects managed within that Administrative Domain. This information is useful during troubleshooting because administrators can compare the centralized ADOM state with device-level information to identify discrepancies. If configuration states differ unexpectedly, the administrator can investigate local changes, incomplete installations, or synchronization problems. Understanding the role of the ADOM database helps administrators determine where a configuration inconsistency exists.

Question 397

Why is comparing device-level and ADOM-level configuration useful?

  1. It can reveal where configuration discrepancies exist
  2. It increases firmware download speed
  3. It changes the FortiManager hostname
  4. It creates new administrator accounts

Correct Answer: 1

Explanation

Comparing device-level and ADOM-level configuration can reveal discrepancies between the configuration stored or managed by FortiManager and the configuration associated with the actual device. This comparison can help identify local changes, incomplete installations, synchronization problems, or other management inconsistencies. Once the difference is understood, administrators can decide whether to retrieve the device configuration, update the centralized configuration, or reinstall the intended configuration. The comparison should be performed before making potentially destructive changes.

Question 398

What should an administrator verify after resolving a FortiManager installation failure?

  1. That the target device has the intended configuration and synchronization status
  2. That all unused ADOMs were deleted
  3. That every global object was removed
  4. That FortiManager has no revision history

Correct Answer: 1

Explanation

After resolving an installation failure, the administrator should verify that the intended configuration is present on the target FortiGate and that the device status reflects successful synchronization. Reviewing the installation result and relevant configuration information helps confirm that the corrective action worked. If discrepancies remain, the administrator should investigate them before considering the deployment complete. Post-recovery verification is important because resolving the original error does not automatically guarantee that the desired configuration was successfully applied.

Question 399

Which practice helps reduce the risk of unintended configuration changes in a multi-administrator FortiManager environment?

  1. Controlled workflow with review and revision tracking
  2. Disabling all configuration history
  3. Allowing unrestricted changes without review
  4. Deleting installation logs after every change

Correct Answer: 1

Explanation

A controlled workflow that includes configuration review and revision tracking helps reduce the risk of unintended changes when multiple administrators manage FortiManager. Revision history provides a record of configuration states, while review and installation procedures allow changes to be checked before deployment. These practices also make troubleshooting easier because administrators can identify what changed and when. Maintaining installation records and using appropriate administrative permissions further supports consistent and accountable centralized management.

Question 400

Which sequence best represents a controlled FortiManager deployment workflow?

  1. Install immediately, then select targets and review changes
  2. Delete revisions, install, and investigate errors afterward
  3. Select targets, review configuration changes, validate the installation, deploy, and verify status
  4. Restart all FortiGates before every installation

Correct Answer: 3

Explanation

A controlled deployment workflow begins by selecting the correct installation targets, reviewing the proposed configuration changes, validating the deployment, and then installing the configuration. After installation, administrators should verify the device status and synchronization result. This sequence provides several opportunities to identify incorrect targets, unexpected changes, compatibility problems, or connectivity issues before and after deployment. Following a structured workflow reduces avoidable configuration errors and makes troubleshooting more systematic when an installation does not complete as expected.