Fortinet NSE5_FAZ-7.0 Fortinet NSE 5 – FortiAnalyzer 7.0 Online Training
Fortinet NSE5_FAZ-7.0 Online Training
The questions for NSE5_FAZ-7.0 were last updated at Jan 05,2025.
- Exam Code: NSE5_FAZ-7.0
- Exam Name: Fortinet NSE 5 - FortiAnalyzer 7.0
- Certification Provider: Fortinet
- Latest update: Jan 05,2025
Which two statements are true regarding high availability (HA) on FortiAnalyzer? (Choose two.)
- A . FortiAnalyzer HA can function without VRRP. and VRRP is required only if you have more than two FortiAnalyzer devices in a cluster.
- B . FortiAnalyzer HA supports synchronization of logs as well as some system and configuration settings.
- C . All devices in a FortiAnalyzer HA cluster must run in the same operation mode: analyzer or collector.
- D . FortiAnalyzer HA implementation is supported by many public cloud infrastructures such as AWS, Microsoft Azure, and Google Cloud.
B,C
Explanation:
Reference: https://help.fortinet.com/fa/faz50hlp/60/6-0-2/Content/FMG-FAZ/4600_HA/0000_HA.htm?TocPath=High%20Availability%7C_____0
What can the CLI command # diagnose test application oftpd 3 help you to determine?
- A . What devices and IP addresses are connecting to FortiAnalyzer
- B . What logs, if any, are reaching FortiAnalyzer
- C . What ADOMs are enabled and configured
- D . What devices are registered and unregistered
A
Explanation:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/cli-reference/395556/test#test_application
For which two purposes would you use the command set log checksum? (Choose two.)
- A . To help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP server
- B . To prevent log modification or tampering
- C . To encrypt log communications
- D . To send an identical set of logs to a second logging server
An administrator has configured the following settings:
config system fortiview settings
set resolve-ip enable
end
What is the significance of executing this command?
- A . Use this command only if the source IP addresses are not resolved on FortiGate.
- B . It resolves the source and destination IP addresses to a hostname in FortiView onFortiAnalyzer.
- C . You must configure local DNS servers on FortiGate for this command to resolve IP addresses on Forti Analyzer.
- D . It resolves the destination IP address to a hostname in FortiView on FortiAnalyzer.
D
Explanation:
Reference: https://community.fortinet.com/t5/Fortinet-Forum/Hostnames-in-FortiAnalyzer/m-p/95351?m=156950
You’ve moved a registered logging device out of one ADOM and into a new ADOM.
What happens when you rebuild the new ADOM database?
- A . FortiAnalyzer resets the disk quota of the new ADOM to default.
- B . FortiAnalyzer migrates archive logs to the new ADOM.
- C . FortiAnalyzer migrates analytics logs to the new ADOM.
- D . FortiAnalyzer removes logs from the old ADOM.
C
Explanation:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD40383
An administrator fortinet, is able to view logs and perform device management tasks, such as adding and removing registered devices. However, administrator fortinet is not able to create a mall server that can be used to send email.
What could be the problem?
- A . Fortinet is assigned the Standard_ User administrator profile.
- B . A trusted host is configured.
- C . ADOM mode is configured with Advanced mode.
- D . Fortinet is assigned the Restricted_ User administrator profile.
In FortiAnalyzer’s FormView, source and destination IP addresses from FortiGate devices are not resolving toa hostname.
How can you resolve the source and destination IPs, without introducing any additionalperformance impact to FortiAnalyzer?
- A . Configure local DNS servers on FortiAnalyzer
- B . Resolve IPs on FortiGate
- C . Configure # set resolve-ip enable in the system FortiView settings
- D . Resolve IPs on a per-ADOM basis to reduce delay on FortiView while IPs resolve
What is the recommended method of expanding disk space on a FortiAnalyzer VM?
- A . From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storage
- B . From the VM host manager, expand the size of the existing virtual disk
- C . From the VM host manager, expand the size of the existing virtual disk and use the # execute format disk command to reformat the disk
- D . From the VM host manager, add an additional virtual disk and rebuild your RAID array
A
Explanation:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD40848
Refer to the exhibit.
Which image corresponds to the packet capture shown in the exhibit?
A)
B)
C)
D)
- A . Option A
- B . Option B
- C . Option C
- D . Option D
Which clause is considered mandatory in SELECT statements used by the FortiAnalyzer to generate reports?
- A . FROM
- B . LIMIT
- C . WHERE
- D . ORDER BY
A
Explanation:
Reference: https://kb.fortinet.com/kb/documentLink.do?externalID=FD48500