Fortinet NSE5_FAZ-6.2 Exam Practice Questions (P. 1)
- Full Access (39 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #1
                                    Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally? (Choose two.)
                                
                              - AMail serverMost Voted
- BOutput profileMost Voted
- CSFTP server
- DReport scheduling
                                        Correct Answer:
(119)BC
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/6d9f8fb5-6cf4-11e9-81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-
Guide.pdf
                                   
                                    (119)BC
Reference:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/6d9f8fb5-6cf4-11e9-81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-
Guide.pdf
          
          send
        
        
          light_mode
          delete
      
    Question #2
                                    Refer to the exhibit.

Why is the total quota less than the total system storage?
                                
                              
Why is the total quota less than the total system storage?
- ASome space is reserved for system useMost Voted
- B3.6% of the system storage is already being used
- CThe logfiled process is just estimating the total quota
- DThe oftpd process has not archived the logs yet
                                        Correct Answer:
B
                                        
                                        
                                            
                                        
                                    
                                   
                                    B
          
          send
        
        
          light_mode
          delete
      
    Question #3
                                    For which two purposes would you use the command set log checksum? (Choose two.)
                                
                              - ATo help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP serverMost Voted
- BTo prevent log modification or tamperingMost Voted
- CTo encrypt log communications
- DTo send an identical set of logs to a second logging server
                                        Correct Answer:
AB
To prevent the log in the store from being modified, you can add a log checksum by using the config system global command. When the log is split, archived, and the log is uploaded (if the feature is enabled), you can configure the FortiAnalyzer to log the log file hash value, timestamp, and authentication code. This can help defend against man-in-the-middle attacks when uploading log transmission data from the FortiAnalyzer to the SFTP server.
                                   
                                    AB
To prevent the log in the store from being modified, you can add a log checksum by using the config system global command. When the log is split, archived, and the log is uploaded (if the feature is enabled), you can configure the FortiAnalyzer to log the log file hash value, timestamp, and authentication code. This can help defend against man-in-the-middle attacks when uploading log transmission data from the FortiAnalyzer to the SFTP server.
          
          send
        
        
          light_mode
          delete
      
    Question #4
                                    Refer to the exhibit.
What does the data point at 14:55 tell you?

                                
                              What does the data point at 14:55 tell you?

- AThe received rate is almost at its maximum for this device
- BThe sqlplugind daemon is behind in log indexing by two logs
- CLogs are being dropped
- DRaw logs are reaching FortiAnalyzer faster than they can be indexedMost Voted
                                        Correct Answer:
C
                                        
                                        
                                            
                                        
                                    
                                   
                                    C
          
          send
        
        
          light_mode
          delete
      
    Question #5
                                    You are using RAID with a FortiAnalyzer that supports software RAID, and one of the hard disks on FortiAnalyzer has failed.
What is the recommended method to replace the disk?
                                
                              What is the recommended method to replace the disk?
- AShut down FortiAnalyzer and then replace the diskMost Voted
- BDowngrade your RAID level, replace the disk, and then upgrade your RAID level
- CClear all RAID alarms and replace the disk while FortiAnalyzer is still running
- DPerform a hot swap
                                        Correct Answer:
D
Reference:
https://www.fortinetguru.com/2016/04/system-settings/6/
                                   
                                    D
Reference:
https://www.fortinetguru.com/2016/04/system-settings/6/
          
          send
        
        
          light_mode
          delete
      
    All Pages
