Skip to Content

Fortinet NSE5_FMG-6.4: FortiManager and FortiGate FGFM Tunnel Recovery Logic

Discover the recovery logic used between FortiManager and FortiGate for an FGFM tunnel during installation. Learn about the 15-minute timeout and how FortiGate unsets CLI commands causing tunnel failure.

Table of Contents

Question

When an installation is performed from FortiManager, what is the recovery logic used between FortiManager and FortiGate for an FGFM tunnel?

A. FortiManager will revert and install a previous configuration revision on the managed FortiGate.
B. FortiManager will not push the CLI commands as part of the installation that will cause the tunnel to go down.
C. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.
D. FortiGate will reject the CLI commands that will cause the tunnel to go down.

Answer

C. After 15 minutes, FortiGate will unset all CLI commands that were part of the installation that caused the tunnel to go down.

Explanation

When FortiManager pushes a configuration to a managed FortiGate device via the FGFM tunnel, if the configuration changes cause the tunnel to go down, FortiGate employs a recovery mechanism. After 15 minutes, FortiGate will automatically unset all the CLI commands that were part of the installation package which led to the tunnel failure. This allows the FGFM tunnel to re-establish, ensuring continued communication and management between FortiManager and the FortiGate device.

Fortinet NSE 5 – FortiManager 6.4 (NSE5_FMG-6.4) certification exam practice question and answer (Q&A) dump with detail explanation and reference available free, helpful to pass the Fortinet NSE 5 – FortiManager 6.4 (NSE5_FMG-6.4) exam and earn Fortinet NSE 5 – FortiManager 6.4 (NSE5_FMG-6.4) certification.