Fortinet FCP_FAZ_AN-7.4 Fortinet FCP – FortiAnalyzer 7.4 Analyst Online Training
Fortinet FCP_FAZ_AN-7.4 Online Training
The questions for FCP_FAZ_AN-7.4 were last updated at Feb 22,2025.
- Exam Code: FCP_FAZ_AN-7.4
- Exam Name: Fortinet FCP - FortiAnalyzer 7.4 Analyst
- Certification Provider: Fortinet
- Latest update: Feb 22,2025
Which statement about sending notifications with incident updates is true?
- A . Each connector used can have different notification settings.
- B . You must configure an output profile to send notifications by email.
- C . Each incident can send notifications to a single external platform.
- D . Notifications can be sent only when an incident is created or deleted.
What can you do on FortiAnalyzer to restrict administrative access from specific locations?
- A . Configure trusted hosts for that administrator.
- B . Enable geo-location services on accessible interface.
- C . Configure two-factor authentication with a remote RADIUS server.
- D . Configure an ADOM for respective location.
You’ve moved a registered logging device out of one ADOM and into a new ADOM.
What happens when you rebuild the new ADOM database?
- A . FortiAnalyzer resets the disk quota of the new ADOM to default.
- B . FortiAnalyzer migrates archive logs to the new ADOM.
- C . FortiAnalyzer migrates analytics logs to the new ADOM.
- D . FortiAnalyzer removes logs from the old ADOM.
Which connector type is enabled by default to be used in playbooks?
- A . Fabric
- B . EMS
- C . Local connector
- D . FortiOS
Which FortiAnalyzer featu hich statement regarding macros oach when managing your network security?
- A . FortiView Monitor
- B . Threat hunting
- C . Incidents dashboards
- D . Outbreak alert services
Which two FortiAnalyzer features allow you to build a dataset and a chart automatically, based on a filtered search result? (Choose two.)
- A . Chart Builder
- B . Custom View
- C . Export to Report Chart (FortiView)
- D . Dataset Library
Refer to the exhibit.
What is the purpose of using the Chart Builder feature on FortiAnalyzer?
- A . In Log View, this feature allows you to build a chart and chart automatically, on the top 100 log entries.
- B . In Log View, this feature allows you to build a dataset and chart automatically, based on the filtered search results.
- C . This feature allows you to build a chart under FortiView.
- D . You can add charts to generated reports using this feature.
Refer to the exhibit.
Which two statements are true regarding enabling auto-cache on FortiAnalyzer? (Choose two.)
- A . Report size will be optimized to conserve disk space on FortiAnalyzer.
- B . Reports will be cached in the memory.
- C . This feature is automatically enabled for scheduled reports.
- D . Enabling auto-cache reduces report generation time for reports that require a long time to assemble datasets.
Which SQL query is in the correct order to query the database in the FortiAnalyzer?
- A . SELECT devid WHERE ‘user’=’USER1’ FROM $log GROUP BY devid
- B . FROM $log WHERE ‘user’=’USER1’ SELECT devid GROUP BY devid
- C . SELECT devid FROM $log WHERE ‘user’=’USER1’ GROUP BY devid
- D . SELECT devid FROM $log GROUP BY devid WHERE ‘user’=’USER1’
Which two statements are true regarding log fetching on FortiAnalyzer? (Choose two.)
- A . Log fetching can be done only on two FortiAnalyzer devices that are running the same firmware version.
- B . Log fetching allows the administrator to fetch analytics logs from another FortiAnalyzer for redundancy.
- C . A FortiAnalyzer device can perform either the fetch server or client role, and it can perform two roles at the same time with the same FortiAnalyzer devices at the other end.
- D . Log fetching allows the administrator to run queries and reports against historical data by retrieving archived logs from one FortiAnalyzer device and sending them to another FortiAnalyzer device.