View Full Fortinet FCP_FMG_AD-7.6 Exam Dumps and Practice Test Dumps.
Question 141
A FortiManager administrator needs to add a new FortiGate to centralized management. Which information is essential for identifying the intended device during the registration process?
- Security Rating
- Device serial number
- Policy package name
- Firmware cache size
Correct Answer: 2
Explanation
The FortiGate device serial number provides a unique identifier that helps FortiManager identify the intended appliance during centralized management operations. Administrators should verify the serial number carefully when adding or authorizing a device, particularly in environments containing many FortiGates. Using the wrong device identity can result in management or configuration problems. After the device is added, administrators should verify its connectivity, ADOM assignment, and management status. Accurate device identification is an important part of maintaining a reliable centralized FortiManager environment.
Question 142
A FortiManager administrator is attempting to discover a FortiGate but the device does not appear as expected. Which item should be checked as part of the basic troubleshooting process?
- Network connectivity between FortiManager and FortiGate
- Number of unused address objects
- Security Rating score
- Policy package description
Correct Answer: 1
Explanation
Network connectivity is one of the first items to verify when FortiManager cannot discover or communicate with a FortiGate. The administrator should confirm routing, reachability, relevant management communication, and any firewall or NAT conditions that could interfere with the connection. Credentials and device-side management settings should also be checked when appropriate. Discovery problems should be investigated systematically rather than assuming that the device itself is defective. Establishing basic communication first helps determine whether the failure is caused by networking or by another part of the discovery and registration process.
Question 143
A FortiManager administrator wants to separate devices belonging to different customers so that each customer’s configurations remain logically isolated. Which FortiManager structure is designed for this purpose?
- ADOM
- Firmware cache
- Installation history
- CLI script
Correct Answer: 1
Explanation
An ADOM, or Administrative Domain, provides a logical management boundary within FortiManager. Organizations can use separate ADOMs to manage different customers, environments, or administrative requirements. Devices and their associated configurations can be organized within the appropriate ADOM, helping prevent accidental changes across management boundaries. Administrative permissions can further restrict which users can access particular ADOMs. Proper ADOM design is especially important for service providers and organizations managing multiple independent environments because it supports logical separation while allowing centralized management through the same FortiManager platform.
Question 144
A company manages FortiGate devices running different supported FortiOS versions. Which FortiManager consideration is particularly important when organizing these devices?
- ADOM compatibility and supported device versions
- Browser screen resolution
- Security Rating color
- Administrator display name
Correct Answer: 1
Explanation
ADOM compatibility and supported device versions are important when managing FortiGates with different FortiOS releases. FortiManager organizes devices within ADOMs according to supported management and configuration requirements. Administrators should verify that the relevant FortiOS version is supported by the selected ADOM and that the management environment is appropriate for the devices being added. Version compatibility can affect available configuration features and policy behavior. Proper planning prevents unnecessary import or installation problems and helps ensure that centralized management functions correctly across supported FortiGate versions.
Question 145
Which ADOM operation mode provides administrators with additional flexibility when managing devices and configurations that require more advanced control?
- Normal mode
- Read-only mode
- Advanced mode
- Backup mode
Correct Answer: 3
Explanation
Advanced mode provides additional flexibility for administrators working with more complex FortiManager management requirements. ADOM operation modes determine how configuration management features are presented and controlled within an administrative domain. Organizations should select the mode appropriate to their operational requirements and administrator expertise. Changing management behavior or using advanced capabilities should be done carefully because more flexibility can also increase configuration complexity. Administrators should understand the implications of the selected mode and verify that it aligns with the FortiOS versions and management workflows used by the organization.
Question 146
A FortiManager administrator wants to organize managed FortiGate devices according to branch location without creating separate ADOMs for every branch. Which feature is most suitable?
- Device Groups
- Global Database ADOM
- Revision History
- FortiGuard Cache
Correct Answer: 1
Explanation
Device Groups provide a way to logically organize managed FortiGate devices without requiring a separate ADOM for every individual branch. Administrators can group devices according to location, business function, customer requirements, or other operational criteria. This organization makes large deployments easier to navigate and can simplify management operations involving similar devices. ADOMs serve a broader administrative boundary, while Device Groups provide additional organization within the management environment. Proper grouping helps administrators identify target devices more easily and reduces the likelihood of selecting an incorrect device during management operations.
Question 147
An administrator needs to execute a CLI command on a specific group of FortiGate devices rather than on every managed device. What should the administrator configure?
- A targeted CLI script execution
- A new Global Database ADOM
- A firmware cache
- A Security Rating report
Correct Answer: 1
Explanation
A targeted CLI script execution allows administrators to apply commands to selected FortiGate devices rather than distributing the commands across the entire managed environment. This is useful when a configuration change applies only to a particular group, model, location, or maintenance set. Before execution, administrators should verify the selected targets and confirm that the commands are compatible with those devices. Targeted execution reduces unnecessary changes on unrelated systems. Script execution should also be reviewed afterward to confirm that the commands completed successfully on all intended targets.
Question 148
A FortiManager administrator wants to maintain a record of changes before modifying a production configuration. Which FortiManager feature can provide a historical configuration reference?
- Configuration revisions
- Device Groups
- Interface Mapping
- FortiGuard query server
Correct Answer: 1
Explanation
Configuration revisions provide historical references to previous configuration states. Before making a significant production change, administrators can use revision information to understand the current state and preserve a reference for later comparison or recovery. This becomes particularly useful if the change produces unexpected results. Revision history should be considered part of a broader change-management process rather than a substitute for backups or testing. Administrators should document important changes and verify the resulting configuration after deployment. Historical configuration information makes troubleshooting and controlled recovery more manageable.
Question 149
A FortiManager administrator wants to identify a configuration change that was introduced shortly before a firewall problem occurred. Which feature should be reviewed first?
- Configuration revision history
- Firmware cache
- Device Group membership
- FortiGuard query server
Correct Answer: 1
Explanation
Configuration revision history can help administrators identify changes that occurred before a problem appeared. By comparing recent revisions, administrators can determine which policies, objects, or settings changed and assess whether those modifications are related to the observed behavior. Revision information is especially valuable when several administrators manage the same environment. The administrator should review the relevant changes before deciding whether to revert anything because not every recent modification is necessarily responsible for the problem. Combining revision analysis with logs and installation history provides stronger troubleshooting evidence.
Question 150
A FortiManager administrator has identified an incorrect recent configuration and wants to restore an earlier known-good configuration state. Which capability can support this recovery process?
- Configuration revision revert
- Device Group creation
- Interface mapping
- FortiGuard package management
Correct Answer: 1
Explanation
Configuration revision revert can support recovery when an earlier configuration state is known to be correct and a recent change has introduced a problem. Before reverting, administrators should compare the relevant revisions and understand what changes would be removed. A rollback should also follow organizational change procedures and should be validated after deployment. Administrators should not assume that the oldest revision is automatically the correct one. Selecting the appropriate known-good state and confirming the expected result helps reduce the risk of removing legitimate configuration changes that were made after that revision.
Question 151
A FortiManager administrator wants to ensure that a configuration script does not unintentionally modify unrelated devices. What should be verified before execution?
- Script target devices
- FortiGuard contract expiration
- Security Rating score
- Global policy order only
Correct Answer: 1
Explanation
Script target devices should be verified before execution to ensure that commands are delivered only to the intended FortiGates. A CLI script can make configuration changes quickly, so selecting the wrong target can produce unintended results across production devices. Administrators should review the device selection, command content, and compatibility before running the script. Testing the script on a representative device can provide additional confidence. After execution, administrators should review the results and confirm that the expected changes were applied only to the intended devices.
Question 152
A company wants administrators to review proposed policy changes before they are installed on production FortiGates. Which FortiManager process supports this requirement?
- Installation preview and validation
- Firmware caching
- Device replacement
- FortiGuard query server
Correct Answer: 1
Explanation
Installation preview and validation allow administrators to inspect proposed changes before deploying them to production FortiGate devices. This provides an opportunity to identify incorrect policies, missing objects, target issues, and other configuration problems before installation. Reviewing proposed changes is particularly important when a policy package affects multiple devices. Administrators should compare the proposed changes with the approved request and investigate unexpected differences. Validation should be treated as a normal part of the deployment workflow because centralized management can distribute changes rapidly and at significant scale.
Question 153
A FortiManager administrator discovers that an object is referenced by several policies and wants to determine the impact of changing it. Which capability is useful?
- Object usage information
- Firmware cache
- Device replacement
- Security Rating
Correct Answer: 1
Explanation
Object usage information helps administrators determine which policies or configurations reference a particular object. This is important before changing an address, service, schedule, or other shared object because the modification may affect several policies simultaneously. Reviewing usage provides a clearer understanding of the potential impact and helps administrators avoid unexpected behavior. In large environments, object dependencies should be checked before deletion or modification. Administrators should also review the affected policies and perform validation before installation to ensure that the resulting configuration remains correct.
Question 154
A FortiManager administrator needs to determine whether an object is referenced by any policies before removing it. Which review is most appropriate?
- Object usage review
- Firmware upgrade review
- HA role review
- Security Fabric topology review
Correct Answer: 1
Explanation
Object usage review identifies where an object is referenced and helps determine whether removing it could affect existing policies. Objects such as addresses, services, and schedules can be shared by multiple firewall policies, so deleting one without checking dependencies may cause validation or installation problems. Administrators should review usage before making changes and confirm that the object is no longer required. If the object is obsolete, removal should follow normal change-management procedures. Dependency awareness is an important part of maintaining a clean and reliable FortiManager policy database.
Question 155
A FortiManager administrator wants to identify policies or objects that are no longer required and may be candidates for cleanup. Which capability is most relevant?
- Unused object review
- FGFM keepalive
- HA synchronization
- Firmware cache
Correct Answer: 1
Explanation
Unused object review helps administrators identify configuration objects that are not currently referenced by relevant policies or configurations. Such objects can accumulate as environments evolve and policies are replaced. Reviewing them periodically can reduce clutter and make the configuration database easier to understand. Administrators should verify that an object is genuinely unnecessary before deleting it because some objects may be referenced by templates or configurations outside the immediate policy view. Cleanup should be performed carefully and documented when it affects production management data.
Question 156
A FortiManager administrator notices two address objects with different names but identical values. What should be considered before consolidating them?
- Their policy references and dependencies
- The FortiManager appliance color
- The administrator’s browser history
- The Security Rating display format
Correct Answer: 1
Explanation
Policy references and dependencies should be reviewed before consolidating duplicate address objects. Two objects may contain identical values but still be referenced by different policies or workflows. Replacing one object with another can require changes to those references and should therefore be planned carefully. Administrators should identify all affected policies, confirm that the objects are functionally equivalent, and validate the resulting configuration before installation. Proper object consolidation can simplify policy management, but careless deletion or replacement can introduce unnecessary configuration errors.
Question 157
A FortiManager administrator wants to ensure that a policy uses the correct interface for each target FortiGate model. Which feature should be reviewed?
- Interface Mapping
- Revision History
- Security Rating
- FortiGuard Cache
Correct Answer: 1
Explanation
Interface Mapping helps associate interfaces used by centralized policies with the corresponding interfaces on target FortiGate devices. This is useful when different FortiGate models or sites use different interface names while following a common policy design. Administrators should verify mappings before installation because an incorrect interface association can cause policy installation failures or incorrect traffic handling. Mapping can reduce the need to maintain separate policy packages for every hardware variation. It is especially valuable in standardized deployments containing multiple FortiGate models with different interface structures.
Question 158
A FortiManager administrator wants to determine which FortiGate devices are intended to receive a particular policy package before starting an installation. Which information should be verified?
- Installation targets
- FortiGuard contract details
- Revision storage capacity
- Administrator browser settings
Correct Answer: 1
Explanation
Installation targets identify the FortiGate devices that will receive the selected policy package. Verifying these targets before deployment is essential because an incorrect target selection can result in policies being installed on the wrong devices. Administrators should review the intended devices, confirm their management status, and use installation preview or validation when appropriate. Target verification is particularly important when one FortiManager manages many customers, branches, or environments. Careful target selection forms an important safeguard within the centralized policy deployment process.
Question 159
A FortiManager administrator needs to confirm whether a policy package is suitable for a specific FortiGate before deployment. Which process provides an opportunity to identify configuration problems?
- Installation validation
- Device renaming
- Firmware cache cleanup
- Administrator password reset
Correct Answer: 1
Explanation
Installation validation provides an opportunity to identify configuration problems before a policy package is deployed to the target FortiGate. Validation can help reveal issues involving policies, objects, interfaces, or other configuration elements that may prevent successful installation. Administrators should perform validation as part of a controlled deployment process and review any reported errors before proceeding. This is particularly important when the same policy package is intended for multiple devices because a configuration that works for one target may require adjustments for another. Validation reduces avoidable installation failures.
Question 160
A FortiManager administrator is preparing a large policy deployment and wants to minimize the chance of affecting the wrong devices. Which sequence is most appropriate?
- Select targets, review proposed changes, validate the configuration, and then install
- Install first and select targets afterward
- Delete existing policies before selecting targets
- Disable device communication during installation
Correct Answer: 1
Explanation
Selecting the correct targets, reviewing proposed changes, validating the configuration, and then installing provides a controlled deployment sequence. Each step gives administrators an opportunity to identify errors before production devices are affected. Target verification confirms where the configuration will be deployed, while preview and validation help identify policy or object problems. After installation, administrators should review the installation result and synchronization status. This structured approach is particularly important for large environments because a single incorrect deployment can affect multiple FortiGate devices simultaneously.