Fortinet NSE 6 - FortiManager 7.6
Administrator
https://www.passquestion.com/nse6_fmg_ad-7-6.html
35% OFF on All, Including NSE6_FMG_AD-7.6 Questions and Answers
Pass NSE6_FMG_AD-7.6Exam with PassQuestion
NSE6_FMG_AD-7.6questions and answers in the first attempt.
https://www.passquestion.com/
1/7
, 1.Scenario-based Analysis (FortiManager with FortiAnalyzer Features)
Scenario: An administrator has enabled FortiAnalyzer features on a FortiManager device to provide
centralized logging. A new Administrative Domain (ADOM) named 'Branch_Security' is created to manage
a group of branch FortiGate devices.
What specific storage configuration must the administrator perform for this new ADOM that is not required
when FortiManager operates strictly as a management-only platform?
A. The administrator must manually synchronize the centralized device revision history database with the
newly allocated logging storage volume.
B. The administrator must provision a dedicated offline model device to temporarily buffer the incoming
traffic logs during periods of high network congestion.
C. The administrator must strictly configure dedicated disk quotas for analytical and archive logs and
define a specific log retention data policy.
D. The administrator must carefully configure a dedicated management tunnel exclusively for securely
transmitting the syslog traffic from branch devices.
Answer: C
Explanation:
This scenario tests your understanding of FortiManager features as outlined in the blueprint. When
FortiManager has FortiAnalyzer features enabled, it acts as a syslog receiver and log analyzer. This
natively requires the administrator to configure data policies and allocate specific disk space quotas
(divided into Analytical and Archive storage) for every newly created ADOM to manage log retention. This
specific storage allocation step is entirely not applicable when the FortiManager is utilized purely for
centralized configuration management without the logging features enabled.
2.Multiple Choice (API HTTP Response Codes)
A DevSecOps team is testing a Python automation script that utilizes the FortiManager REST API to
automatically deploy firewall policy packages. During execution, the script receives an HTTP 403
response code directly from the FortiManager appliance.
Which two statements accurately describe the potential causes for this specific HTTP response code?
(Choose two.)
A. The requested API endpoint URL is formatted incorrectly, or the specified target resource does not
exist in the active database.
B. The provided authentication session token is missing from the request payload or has already expired
due to session timeout.
C. The targeted administrative domain is currently locked by another administrator utilizing the standard
workspace mode feature.
D. The administrative profile assigned to the API user lacks the required read and write permissions for
the requested endpoint.
Answer: B, D
Explanation:
This question evaluates your knowledge of the FortiManager API integration tasks. The FortiManager
JSON-RPC API relies heavily on standard HTTP status codes. An HTTP 403 (Forbidden) code strictly
indicates an authentication or authorization failure. The FortiManager understood the request, but it
refuses to authorize the specific action. This occurs when the session token is missing or expired (Option
B), or when the authenticated user profile does not have sufficient privileges to execute the action on the
2/7