ExamGecko
Home Home / Fortinet / NSE5_FAZ-7.2

Fortinet NSE5_FAZ-7.2 Practice Test - Questions Answers, Page 2

Question list
Search
Search

What is the main purpose of using an NTP server on FortiAnalyzer and all of its registered devices?

A.
Log correlation
A.
Log correlation
Answers
B.
Host name resolution
B.
Host name resolution
Answers
C.
Log collection
C.
Log collection
Answers
D.
Real-time forwarding
D.
Real-time forwarding
Answers
Suggested answer: A

What are two advantages of setting up fabric ADOM? (Choose two.)

A.
It can be used for fast data processing and log correlation
A.
It can be used for fast data processing and log correlation
Answers
B.
It can be used to facilitate communication between devices in same Security Fabric
B.
It can be used to facilitate communication between devices in same Security Fabric
Answers
C.
It can include all Fortinet devices that are part of the same Security Fabric
C.
It can include all Fortinet devices that are part of the same Security Fabric
Answers
D.
It can include only FortiGate devices that are part of the same Security Fabric
D.
It can include only FortiGate devices that are part of the same Security Fabric
Answers
Suggested answer: A, C

Explanation:

https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/448471/creating-asecurity-fabric-adom

What is the purpose of a predefined template on the FortiAnalyzer?

A.
It can be edited and modified as required
A.
It can be edited and modified as required
Answers
B.
It specifies the report layout which contains predefined texts, charts, and macros
B.
It specifies the report layout which contains predefined texts, charts, and macros
Answers
C.
It specifies report settings which contains time period, device selection, and schedule
C.
It specifies report settings which contains time period, device selection, and schedule
Answers
D.
It contains predefined data to generate mock reports
D.
It contains predefined data to generate mock reports
Answers
Suggested answer: B

Explanation:

Reference: https://help.fortinet.com/fa/faz50hlp/56/5-6-2/FMGFAZ/2300_Reports/0010_Predefined_reports.htm#:~:text=FortiAnalyzer%20includes%20a%20number%20of,create%20and%2For%20build%20reports.&text=A%20template%20populates%20the%20Layout,that%20is%20to%20be%20created.

https://help.fortinet.com/fa/faz50hlp/56/5-6-2/FMGFAZ/2300_Reports/0010_Predefined_reports.htm

Reference: https://docs2.fortinet.com/document/fortianalyzer/6.0.8/administrationguide/618245/predefined-reports-templates-charts-and-macros

For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered devices should:

A.
Use DNS
A.
Use DNS
Answers
B.
Use host name resolution
B.
Use host name resolution
Answers
C.
Use real-time forwarding
C.
Use real-time forwarding
Answers
D.
Use an NTP server
D.
Use an NTP server
Answers
Suggested answer: D

What FortiGate process caches logs when FortiAnalyzer is not reachable?

A.
logfiled
A.
logfiled
Answers
B.
sqlplugind
B.
sqlplugind
Answers
C.
oftpd
C.
oftpd
Answers
D.
miglogd
D.
miglogd
Answers
Suggested answer: D

Explanation:

Reference: https://forum.fortinet.com/tm.aspx?m=143106

FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?

A.
To upload logs to an SFTP server
A.
To upload logs to an SFTP server
Answers
B.
To prevent log modification during backup
B.
To prevent log modification during backup
Answers
C.
To send an identical set of logs to a second logging server
C.
To send an identical set of logs to a second logging server
Answers
D.
To encrypt log communication between devices
D.
To encrypt log communication between devices
Answers
Suggested answer: D

How can you configure FortiAnalyzer to permit administrator logins from only specific locations?

A.
Use static routes
A.
Use static routes
Answers
B.
Use administrative profiles
B.
Use administrative profiles
Answers
C.
Use trusted hosts
C.
Use trusted hosts
Answers
D.
Use secure protocols
D.
Use secure protocols
Answers
Suggested answer: C

Explanation:

https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/186508/trusted-hosts

Logs are being deleted from one of your ADOMs earlier that the configured setting for archiving in your data policy. What is the most likely problem?

A.
The total disk space is insufficient and you need to add other disk.
A.
The total disk space is insufficient and you need to add other disk.
Answers
B.
CPU resources are too high.
B.
CPU resources are too high.
Answers
C.
The ADOM disk quota is set too low based on log rates.
C.
The ADOM disk quota is set too low based on log rates.
Answers
D.
Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device.
D.
Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device.
Answers
Suggested answer: C

Explanation:

https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FMGFAZ/1100_Storage/0017_Deleted%20device%20logs.htm

https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/87802/automaticdeletion

What is the purpose of the following CLI command?

A.
To add a log file checksum
A.
To add a log file checksum
Answers
B.
To add the MD's hash value and authentication code
B.
To add the MD's hash value and authentication code
Answers
C.
To add a unique tag to each log to prove that it came from this FortiAnalyzer
C.
To add a unique tag to each log to prove that it came from this FortiAnalyzer
Answers
D.
To encrypt log communications
D.
To encrypt log communications
Answers
Suggested answer: A

Explanation:

https://docs2.fortinet.com/document/fortianalyzer/6.0.3/cli-reference/849211/global

View the exhibit.

What does the data point at 14:35 tell you?

A.
FortiAnalyzer is dropping logs.
A.
FortiAnalyzer is dropping logs.
Answers
B.
FortiAnalyzer is indexing logs faster than logs are being received.
B.
FortiAnalyzer is indexing logs faster than logs are being received.
Answers
C.
FortiAnalyzer has temporarily stopped receiving logs so older logs' can be indexed.
C.
FortiAnalyzer has temporarily stopped receiving logs so older logs' can be indexed.
Answers
D.
The sqlplugind daemon is ahead in indexing by one log.
D.
The sqlplugind daemon is ahead in indexing by one log.
Answers
Suggested answer: B

Explanation:

https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/47690/insert-rate-vsreceive-rate-widget

Total 137 questions
Go to page: of 14