For which two purposes would you use the command set log checksum? (Choose two.)
For which two purposes would you use the command set log checksum? (Choose two.)A . To help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP server B. To prevent log modification or tampering C. To encrypt log communications D. To send an identical set of logs...
Which clause is considered mandatory in SELECT statements used by the FortiAnalyzer to generate reports?
Which clause is considered mandatory in SELECT statements used by the FortiAnalyzer to generate reports?A . FROM B. LIMIT C. WHERE D. ORDER BYView AnswerAnswer: A Explanation: Reference: https://kb.fortinet.com/kb/documentLink.do?externalID=FD48500
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)A . Must configure the FortiAnalyzer end of the tunnel only--the FortiGate end is auto-negotiated. B. Must establish an IPsec tunnel ID and pre-shared key. C. IPsec cannot be enabled if SSL is enabled as well....
Which two statements are true regarding FortiAnalyzer operating modes? (Choose two.)
Which two statements are true regarding FortiAnalyzer operating modes? (Choose two.)A . When in collector mode, FortiAnalyzer collects logs from multiple devices and forwards these logs in the original binary format. B. Collector mode is the default operating mode. C. When in collector mode. FortiAnalyzer supports event management and reporting...
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the purpose of running the following CLI command?
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the purpose of running the following CLI command? execute sql-local rebuild-adom <new-ADOM-name>A . To reset the disk quota enforcement to default B. To remove the analytics logs of the device from...
What is the purpose of employing RAID with FortiAnalyzer?
What is the purpose of employing RAID with FortiAnalyzer?A . To introduce redundancy to your log data B. To provide data separation between ADOMs C. To separate analytical and archive data D. To back up your logsView AnswerAnswer: A Explanation: https://en.wikipedia.org/wiki/RAID#:~:text=RAID%20(%22Redundant%20Array%20of%20Inexpensive,%2C%20performance%20improvement%2C%20or%20both.
What can be the reason for this failure?
The admin administrator is failing to register a FortiClient EMS on the FortiAnalyzer device. What can be the reason for this failure?A . FortiAnalyzer is in an HA cluster. B. ADOM mode should be set to advanced, in order to register the FortiClient EMS device. C. ADOMs are not enabled...
What is the recommended method of expanding disk space on a FortiAnalyzer VM?
What is the recommended method of expanding disk space on a FortiAnalyzer VM?A . From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storage B. From the VM host manager, expand the size of the existing virtual...
If you upgrade the FortiAnalyzer firmware, which report element can be affected?
If you upgrade the FortiAnalyzer firmware, which report element can be affected?A . Custom datasets B. Report scheduling C. Report settings D. Output profilesView AnswerAnswer: A Explanation: https://docs.fortinet.com/document/fortianalyzer/6.2.5/upgrade-guide/669300/checking-reports
If the primary FortiAnalyzer in an HA cluster fails, how is the new primary elected?
If the primary FortiAnalyzer in an HA cluster fails, how is the new primary elected?A . The configured IP address is checked first. B. The active port number is checked first. C. The firmware version is checked first. D. The configured priority is checked firstView AnswerAnswer: C