Fortinet NSE6_FAZ-7.2 Fortinet NSE 6 – FortiAnalyzer 7.2 Administrator Online Training
Fortinet NSE6_FAZ-7.2 Online Training
The questions for NSE6_FAZ-7.2 were last updated at Nov 19,2024.
- Exam Code: NSE6_FAZ-7.2
- Exam Name: Fortinet NSE 6 - FortiAnalyzer 7.2 Administrator
- Certification Provider: Fortinet
- Latest update: Nov 19,2024
Refer to the exhibit.
The image displays "he configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster.
What can you conclude from the configuration displayed?
- A . After joining to the cluster, this FortiAnalyzer will keep an updated log database.
- B . This FortiAnalyzer will trigger a failover after losing communication with its peers for 10 seconds.
- C . This FortiAnalyzer will join to the existing HA cluster as the primary.
- D . This FortiAnalyzer is configured to receive logs in its port1.
Which feature can you configure to add redundancy to FortiAnalyzer?
- A . Primary and secondary DNS
- B . VLAN interfaces
- C . IPv6 administrative access
- D . Link aggregation
What are analytics logs on FortiAnalyzer?
- A . Logs that are compressed and saved to a log file
- B . Logs that roll over when the log file reaches a specific size
- C . Logs that are indexed and stored in the SQL
- D . Logs classified as type Traffic, or type Security
Which statement is true when you are upgrading the firmware on an HA cluster made up of throe
FortiAnalyzer devices?
- A . All FortiAnalyzer devices will be upgraded at the same time.
- B . Enabling uninterruptible-upgrade prevents normal operations from being interrupted during the upgrade.
- C . You can perform the firmware upgrade using only a console connection.
- D . First, upgrade the secondary devices, and then upgrade the primary device.
What is the best approach to handle a hard disk failure on a FortiAnalyzer that supports hardware RAID?
- A . Shul down FortiAnalyzer and replace the disk.
- B . Perform a hot swap of the disk.
- C . Run execute format disk to format and restart the FortiAnalyzer device.
- D . There is no need to do anything because the disk will self-recover.
After you have moved a registered logging device out of one ADOM and into a new ADOM, you run the following command: execute sql-local rebuild-adom <new-ADOM-name>
What is the purpose of running this CLI command?
- A . To reset the ADOM disk quota enforcement to its default value
- B . To migrate the archive logs to the new ADOM
- C . To populate the new ADOM with analytical logs for the moved device, so you can run reports
- D . To remove the analytics logs of the device from the old database
You finished registering a FortiGate device. After traffic starts to flow through FortiGate. you notice that only some of the logs expected are being received on FortiAnalyzer.
What could be the reason for the logs not arriving on FortiAnalyzer?
- A . FortiGate does not have logging configured correctly.
- B . This FortiGate model is not fully supported.
- C . This FortiGate is part of an HA cluster but it is the secondary device.
- D . FortiGate was added to the wrong ADOM type.
Refer to the exhibit.
Which image corresponds to the packet capture shown in the exhibit?
A)
B)
C)
- A . Option A
- B . Option B
- C . Option C