Fortinet NSE6_FSR-7.3 Practice Test - Questions Answers, Page 2
List of questions
Related questions
Which service on FortiSOAR is the playbook scheduler?
cyops-torccat
colcrybeatd
celeryd
uwsgi
A security analyst has reported unauthorized access to System Configuration. You must review the user's current level of access, and then restrict their access according to your organization's requirements. As part of your auditing process, which two actions should you perform? (Choose two.)
Remove the create, read, update, and delete (CRUD) permissions or roles that the user does not require.
View the user's effective role permissions, and then investigate which role is providing that access.
Remove all record ownership that is assigned to the user.
Review the user's learn hierarchy to ensure that the appropriate relationships are configured.
An administrator is issuing the following command on a node trying to join a FortiSOAR duster as a standby: csadm ha join-cluster --status active ---role secondary --primary-node 10.0.1.160
The node fails to join the cluster. What is the issue?
The role value should be worker.
The primary node needs to be resolvable via FQDN.
The IP address should be for secondary-node Instead of primary-node.
The status value should be passive.
When deleting a user account on FortiSOAR, you must enter the user ID in which file on FortiSOAR?
userDelete.txt.
config_yml
scripts
usersToDelete.txt
Which two statements about upgrading a FortiSOAR HA cluster are true7 (Choose two.)
Nodes can be upgraded while the primary node or secondary node are in the HA cluster.
Upgrading a FortiSOAR HA cluster requires no downtime.
The upgrade procedure for an active-active cluster and an active-passive cluster are the same.
It is recommended that the passive secondary node be upgraded first, and then the active primary node.
Which SMS vendor does FortiSOAR support for two-factor authentication?
Twilio
Google Authenticator
2factor
Telesign
Which three actions can be performed from within the war room? (Choose three)
View graphical representation of all records linked to an incident in the Artifacts lab
Change the room's status to Escalated to enforce hourly updates.
Investigate issues by tagging results as evidence.
Use the Task Manager tab to create, manage, assign, and track tasks.
Integrate a third-party instant messenger directly into the collaboration workspace.
Which two statements about appliance users are true? (Choose two.)
Appliance users do not have a login ID and do not add to the license count.
Appliance users represent non-human users.
Appliance users use two-factor authentication for messages sent to the API.
Appliance users use time-expiring tokens for primary authentication.
Which two statements about Elasticsearch are true? (Choose two.)
Elasticsearch allows you to store, search, and analyze huge volumes of data quickly. In near real time, and return answers in milliseconds.
To change the location of your Elasticsearch instance from the local instance to a remote location, you must update the falcon. conf file.
The minimum version of the Elasticsearch cluster must be 6.0.2. if you want to externalize the Elasticsearch data.
The global search mechanism in FortiSOAR leverages an Elasticsearch database to achieve rapid, efficient searches across the entire record system.
Refer to the exhibit.
The former primary node was relegated to the secondary rote but is stuck in the Faulted state.
Which two steps must you take to restore operation in the high availability (HA) cluster? (Choose two.)
Perform a fire drill to test the database integrity of the node that is in the Faulted state.
On the node that is in the Faulted state, enter the csadm ha leave-cluster command.
Enter the csadm ha join-cluster command to have the node that is in the Faulted state rejoin the HA cluster as a secondary node.
Restart the node that is in the Faulted state to trigger another election.
Question