Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate to FortiAnalyzer with any user account in a single LDAP group? (Choose two.)
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate to FortiAnalyzer with any user account in a single LDAP group? (Choose two.)A . A local wildcard administrator accountB . A remote LDAP serverC . A trusted host profile that restricts access to the LDAP groupD...
Why is the total quota less than the total system storage?
View the exhibit. Why is the total quota less than the total system storage?A . 3.6% of the system storage is already being used.B . Some space is reserved for system use, such as storage of compression files, upload files, and temporary report filesC . The oftpd process has not...
Which two statements are true regarding ADOM modes? (Choose two.)
Which two statements are true regarding ADOM modes? (Choose two.)A . You can only change ADOM modes through CLC . In normal mode, the disk quota of the ADOM is fixed and cannot be modified, but in advance mode, the disk quota of the ADOM is flexible because new devices...
settings?
What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log settings?A . The log file is stored as a raw log and is available for analytic support.B . The log file rolls over and is archived.C . The log file is purged...
What is the recommended method of expanding disk space on a FortiAnalyzer VM?
What is the recommended method of expanding disk space on a FortiAnalyzer VM?A . From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storageB . From the VM host manager, expand the size of the existing virtual...
What can you do on FortiAnalyzer to restrict administrative access from specific locations?
What can you do on FortiAnalyzer to restrict administrative access from specific locations?A . Configure trusted hosts for that administrator.B . Enable geo-location services on accessible interface.C . Configure two-factor authentication with a remote RADIUS server.D . Configure an ADOM for respective location.View AnswerAnswer: A Explanation: Reference: https://docs.fortinet.com/document/fortigate/6.2.0/hardening-your-fortigate/582009/system-administrator-best-practices
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)A . Must configure the FortiAnalyzer end of the tunnel only--the FortiGate end is auto-negotiated.B . Must establish an IPsec tunnel ID and pre-shared key.C . IPsec cannot be enabled if SSL is enabled as well.D...
What can you do on FortiAnalyzer to accomplish this?
A rogue administrator was accessing FortiAnalyzer without permission, and you are tasked to see what activity was performed by that rogue administrator on FortiAnalyzer. What can you do on FortiAnalyzer to accomplish this?A . Click FortiView and generate a report for that administrator.B . Click Task Monitor and view the...
What is the main purpose of using an NTP server on FortiAnalyzer and all of its registered devices?
What is the main purpose of using an NTP server on FortiAnalyzer and all of its registered devices?A . Log correlationB . Host name resolutionC . Log collectionD . Real-time forwardingView AnswerAnswer: C
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)A . SSL is the default setting.B . SSL communications are auto-negotiated between the two devices.C . SSL can send logs in real-time only.D . SSL encryption levels are globally set on FortiAnalyzer.E . FortiAnalyzer encryption...