06. Global ADOM And Central Management Flashcards

1
Q

Assign global policy package

A

Explicitly assign global policy package to required ADOM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Global policies with multiple ADOMs

A

different ADOMs can use separate global policies

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Types of policies in Global Database ADOM

A

Header policy - located at the top of the policy package in the individual ADOM
Footer policy - policies located at the bottom of the policy package in the individual ADOM

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Global objects

A

global objects start with “g” and are edited or deleted in the global ADOM only.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Global header policy appearance

A

On FMG
Global Database ADOM appear as header policy

On FMG specific fortigate policy package Appears under firewall header policy

On FGT global policy header will appear at the top of firewall policy preceding any other firewall rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the purpose of global ADOM on FMG

A. To push global device level changes to devices in selected ADOM
B. To push similar firewall policies universally to selected ADOMs

A

B. To push similar firewall policies universally to selected ADOMs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How are global objects identified

A. Global objects starts with “g”
B. Global objects starts with “o”

A

A. Global objects starts with “g”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Security fabric ratings in FMG

A

You cannot use FortiManager to generate Security Fabric ratings; you must use FortiOS to generate Security Fabric ratings for a FortiGate Security Fabric group, and then you can see the Security Fabric ratings in FortiManager.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

MEA requirements

A

some MEAs require a minimum amount of memory or a minimum number of CPU cores.

RAM and CPU are capped at 50% for MEAs

FortiManager uses port TCP port 443 or TCP port 4443 to connect to the Fortinet registry and download MEAs. Make sure that the port is also open on any upstream FortiGate devices.

Some MEA require RW JSON API access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which of the following is requirement for MEA

A. Open tcp port 80
B. RW JSON API access

A

B. RW JSON API access

How well did you know this?
1
Not at all
2
3
4
5
Perfectly