Fortinet FCP_FAZ_AD-7.4 Practice Test - Questions Answers, Page 3
List of questions
Related questions
Which statement about the communication between FortiGate high availability (HA) clusters and FortiAnalyzer is true?
If devices were registered to FortiAnalyzer before forming a cluster, you can manually add them together.
FortiAnalyzer distinguishes each cluster member by the IP addresses in log message headers.
If the HA primary device becomes unavailable, you must remove it from the HA cluster list on FortiAnalyzer.
The FortiGate HA cluster must be in active-passive mode in order to avoid conflict.
Which two methods can you use to restrict administrative access on FortiAnalyzer? (Choose two.)
Configure trusted hosts.
Limit access to specific virtual domains.
Fabric connectors to external LDAP servers.
Use administrator profiles.
Which two statements regarding FortiAnalyzer log forwarding modes are true? (Choose two.)
Both modes, forwarding and aggregation, support encryption of logs between devices.
In aggregation mode, you can forward logs to syslog and CEF servers.
Forwarding mode forwards logs in real time only to other FortiAnalyzer devices.
Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device at a scheduled time.
Refer to the exhibit.
Based on the partial outputs displayed, which devices can be members of a FortiAnalyzer Fabric?
FortiAnalyzer1 and FortiAnalyzer3
All devices listed can be members.
FortiAnalyzer1 and FortiAnalyzer2
FortiAnalyzer2 and FortiAnalyzer3
Which two statements about FortiAnalyzer operating modes are true? (Choose two.)
When in collector mode, FortiAnalyzer offloads the log receiving task to the analyzer.
When in analyzer mode, FortiAnalyzer supports event management and reporting features.
For the collector, you should allocate most of the disk space to analytics logs.
Analyzer mode is the default operating mode.
Refer to the exhibit.
Based on the output, what can you conclude about the FortiAnalyzer logging status?
The connection between FortiGate and FortiAnalyzer is overloaded.
FortiGate has logs to send, but FortiAnalyzer is unavailable.
FortiGate is configured to send logs in batches.
FortiGate is sending logs again after it performed a reboot.
An administrator has configured the following settings:
What is the purpose of executing these commands?
To record the hash value and authentication code of log files.
To encrypt log transfer between FortiAnalyzer and other devices.
To create the secure channel used by the OFTP process.
To verify the integrity of the log files received.
What is the best approach to handle a hard disk failure on a FortiAnalyzer that supports hardware RAID?
There is no need to do anything because the disk will self-recover.
Run execute format disk to format and restart the FortiAnalyzer device.
Perform a hot swap of the disk.
Shut down FortiAnalyzer and replace the disk.
Which statement when you are upgrading the firmware on an HA cluster made up of three FortiAnalyzer devices is true?
You can perform the firmware upgrade using only a console connection.
All FortiAnalyzer devices will be upgraded at the same time.
Enabling uninterruptible-upgrade prevents normal operations from being interrupted during the upgrade.
First, upgrade the secondary devices, and then upgrade the primary device.
Refer to the exhibit.
The exhibit shows the creation of a new administrator on FortiAnalyzer. The new account uses the credentials stored on an LDAP server.
Why would an administrator configure a password for this account?
This password is used if the authentication server becomes unreachable.
This password authenticates FortiAnalyzer aqainst the LDAP server.
This password is set to comply with FortiAnalvzer password policy
This password is required because this is a restricted user.
Question