Fortinet NSE5_FAZ-7.2 Fortinet NSE 5 – FortiAnalyzer 7.2 Online Training
Fortinet NSE5_FAZ-7.2 Online Training
The questions for NSE5_FAZ-7.2 were last updated at Nov 20,2024.
- Exam Code: NSE5_FAZ-7.2
- Exam Name: Fortinet NSE 5 - FortiAnalyzer 7.2
- Certification Provider: Fortinet
- Latest update: Nov 20,2024
On FortiAnalyzer, what is a wildcard administrator account?
- A . An account that permits access to members of an LDAP group
- B . An account that allows guest access with read-only privileges
- C . An account that requires two-factor authentication
- D . An account that validates against any user account on a FortiAuthenticator
A
Explanation:
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/747268/configuring-wildcard-admin-accounts
For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered devices should:
- A . Use DNS
- B . Use host name resolution
- C . Use real-time forwarding
- D . Use an NTP server
What FortiGate process caches logs when FortiAnalyzer is not reachable?
- A . logfiled
- B . sqlplugind
- C . oftpd
- D . miglogd
D
Explanation:
Reference: https://forum.fortinet.com/tm.aspx?m=143106
FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?
- A . To upload logs to an SFTP server
- B . To prevent log modification during backup
- C . To send an identical set of logs to a second logging server
- D . To encrypt log communication between devices
How can you configure FortiAnalyzer to permit administrator logins from only specific locations?
- A . Use static routes
- B . Use administrative profiles
- C . Use trusted hosts
- D . Use secure protocols
C
Explanation:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/186508/trusted-hosts
Logs are being deleted from one of your ADOMs earlier that the configured setting for archiving in your data policy.
What is the most likely problem?
- A . The total disk space is insufficient and you need to add other disk.
- B . CPU resources are too high.
- C . The ADOM disk quota is set too low based on log rates.
- D . Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device.
C
Explanation:
https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FMGFAZ/1100_Storage/0017_Deleted%20device%20logs.htm
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/87802/automatic-deletion
What is the purpose of the following CLI command?
- A . To add a log file checksum
- B . To add the MD’s hash value and authentication code
- C . To add a unique tag to each log to prove that it came from this FortiAnalyzer
- D . To encrypt log communications
A
Explanation:
https://docs2.fortinet.com/document/fortianalyzer/6.0.3/cli-reference/849211/global
View the exhibit.
What does the data point at 14:35 tell you?
- A . FortiAnalyzer is dropping logs.
- B . FortiAnalyzer is indexing logs faster than logs are being received.
- C . FortiAnalyzer has temporarily stopped receiving logs so older logs’ can be indexed.
- D . The sqlplugind daemon is ahead in indexing by one log.
B
Explanation:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/47690/insert-rate-vs-receive-rate-widget
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons? (Choose three)
- A . RADIUS
- B . Local
- C . LDAP
- D . PKI
- E . TACACS+
What statements are true regarding disk log quota? (Choose two)
- A . The FortiAnalyzer stops logging once the disk log quota is met.
- B . The FortiAnalyzer automatically sets the disk log quota based on the device.
- C . The FortiAnalyzer can overwrite the oldest logs or stop logging once the disk log quota is met.
- D . The FortiAnalyzer disk log quota is configurable, but has a minimum o 100mb a maximum based on the reserved system space.