Courseiva
Enterprise Firewall and VDOMsmediumMultiple SelectObjective-mapped

NSE7 Enterprise Firewall and VDOMs Practice Question

A company uses FortiManager to manage multiple FortiGates. The admin wants to use a global ADOM to manage certain policies across all devices while allowing local customization. Which two statements about global ADOM are true? (Choose two.)

⚠ Common exam trap

Candidates often assume global ADOM policies are automatically installed on all devices, but in reality they only apply to policy packages that are explicitly imported from the global ADOM into a regular ADOM.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Header/footer policies can only be configured in the global ADOM

Header and footer policies are global constructs that can only be created and managed within the global ADOM. These policies are automatically applied to all policy packages across all regular ADOMs, ensuring consistent enforcement at the top and bottom of the policy list without local modification.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Header/footer policies can only be configured in the global ADOM

    Why this is correct

    Header and footer policies are typically defined in the global ADOM to enforce consistent security baselines.

  • Global ADOM supports per-device policy objects

    Why it's wrong here

    Global ADOM uses global objects; per-device objects are defined in regular ADOMs.

  • Regular ADOMs can import policy packages from the global ADOM

    Why this is correct

    Regular ADOMs can import global policy packages and use them as header/footer policies.

  • Global ADOM requires a separate FortiManager license

    Why it's wrong here

    Global ADOM is a feature included with the FortiManager license.

  • Global ADOM policies are installed on all managed FortiGates in all ADOMs

    Why it's wrong here

    Global ADOM policies are only applied to devices that belong to ADOMs which are linked to the global ADOM.

About these practice questions

This NSE7 question is part of Courseiva's 940-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This NSE7 practice question is part of Courseiva's free Fortinet certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the NSE7 exam.