New 2021 Realistic NSE5_FAZ-6.2 Dumps Test Engine Exam Questions in here [Q15-Q31]

Share

New 2021 Realistic NSE5_FAZ-6.2 Dumps Test Engine Exam Questions in here

Updated Official licence for NSE5_FAZ-6.2 Certified by NSE5_FAZ-6.2 Dumps PDF


Who should take the Fortinet NSE 5 - FortiAnalyzer (NSE5 FAZ-6.2) Exam

Anyone responsible for handling FortiAnalyzer systems and FortiGate security details regularly, we recommend this course. For network and security professionals who need the expertise to centrally monitor, evaluate, and report on Fortinet security devices, we recommend this test. See the NSE5 FAZ-6.2 dumps pdf to get a better idea of the exam contents to suit your interests.


Topics of Fortinet NSE 5 - FortiAnalyzer (NSE5 FAZ-6.2) Exam

Following are the objectives and agenda for this certification exam. A detailed practice for these contents could be done via the NSE5 FAZ-6.2 practice exams as they are made on the same contents and offer the same environment for students to experience as the real exam does:

Agenda 1. Introduction and Initial Configuration Agenda 2. Administration and Management Agenda 3. Device Registration and Communication Agenda 4. Logging Agenda 5. Reports

Objective 1. Describe key features and concepts of FortiAnalyzer Objective 2. Deploy an appropriate architecture Objective 3. Use administrative access controls Objective 4. Monitor administrative events and tasks Objective 5. Understand FortiAnalyzer Objective 6. Configure high availability Objective 7. Understand HA synchronization and load balancing Objective 8. Upgrade an HA cluster’s firmware Objective 9. Verify the normal operation of an HA cluster Objective 10. Manage ADOMs Objective 11. Configure RAID Objective 12. Register supported devices Objective 13. Troubleshoot communication issues Objective 14. Manage disk quota Objective 15. Manage registered devices Objective 16. Protect log information Objective 17. View and search logs Objective 18. Troubleshoot and manage logs Objective 19. Monitor events Objective 20. Generate and customize reports Objective 21. Customize charts and datasets Objective 22. Manage reports Objective 23. Troubleshoot reports

 

NEW QUESTION 15
What is the purpose of the following CLI command?

  • A. To add a unique tag to each log to prove that it came from this FortiAnalyzer
  • B. To add a log file checksum
  • C. To encrypt log communications
  • D. To add the MD's hash value and authentication code

Answer: B

Explanation:
https://docs2.fortinet.com/document/fortianalyzer/6.0.3/cli-reference/849211/global

 

NEW QUESTION 16
View the exhibit:

What does the 1000MB maximum for disk utilization refer to?

  • A. The disk quota for all devices in the ADOM
  • B. The disk quota for the ADOM type
  • C. The disk quota for the FortiAnalyzer model
  • D. The disk quota for each device in the ADOM

Answer: A

 

NEW QUESTION 17
How are logs forwarded when FortiAnalyzer is using aggregation mode?

  • A. Logs and content files are stored and uploaded at a scheduled time.
  • B. Logs and content files are forwarded as they are received.
  • C. Logs are forwarded as they are received.
  • D. Logs are forwarded as they are received and content files are uploaded at a scheduled time.

Answer: A

Explanation:
https://www.fortinetguru.com/2020/07/log-forwarding-fortianalyzer-fortios-6-2-3/
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/420493/modes

 

NEW QUESTION 18
For which two purposes would you use the command set log checksum? (Choose two.)

  • A. To prevent log modification or tampering
  • B. To encrypt log communications
  • C. To send an identical set of logs to a second logging server
  • D. To help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP server

Answer: A,D

Explanation:
To prevent the log in the store from being modified, you can add a log checksum by using the config system global command. When the log is split, archived, and the log is uploaded (if the feature is enabled), you can configure the FortiAnalyzer to log the log file hash value, timestamp, and authentication code. This can help defend against man-in-the-middle attacks when uploading log transmission data from the FortiAnalyzer to the SFTP server.

 

NEW QUESTION 19
Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally?
(Choose two.)

  • A. Output profile
  • B. SFTP server
  • C. Report scheduling
  • D. Mail server

Answer: A,B

 

NEW QUESTION 20
In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname.
How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?

  • A. Configure local DNS servers on FortiAnalyzer
  • B. Resolve IP addresses on a per-ADOM basis to reduce delay on FortiView while IPs resolve
  • C. Resolve IP addresses on FortiGate
  • D. Configure # set resolve-ip enable in the system FortiView settings

Answer: C

Explanation:
https://packetplant.com/fortigate-and-fortianalyzer-resolve-source-and-destination-ip/
"As a best practice, it is recommended to resolve IPs on the FortiGate end. This is because you get both source and destination, and it offloads the work from FortiAnalyzer. On FortiAnalyzer, this IP resolution does destination IPs only"

 

NEW QUESTION 21
Which clause is considered mandatory in SELECT statements used by the FortiAnalyzer to generate reports?

  • A. LIMIT
  • B. FROM
  • C. WHERE
  • D. ORDER BY

Answer: C

 

NEW QUESTION 22
What statements are true regarding FortiAnalyzer 's treatment of high availability (HA) dusters? (Choose two)

  • A. FortiAnalyzer receives logs from d devices in a duster.
  • B. FortiAnalyzer only needs to know (he serial number of the primary device in the cluster-it automaticaly discovers the other devices.
  • C. FortiAnalyzer receives bgs only from the primary device in the cluster.
  • D. FortiAnalyzer distinguishes different devices by their serial number.

Answer: A,D

 

NEW QUESTION 23
What is the purpose of a dataset query in FortiAnalyzer?

  • A. It sorts log data into tables
  • B. It injects log data into the database
  • C. It extracts the database schema
  • D. It retrieves log data from the database

Answer: D

 

NEW QUESTION 24
View the Exhibit:

Why is the total quota less than the total system storage?

  • A. The oftpd process has not archived the logs yet
  • B. Some space is reserved for system use, such as storage of compression files, upload files, and temporary report files
  • C. 3.6% of the system storage is already being used.
  • D. The logfiled process is just estimating the total quota

Answer: B

 

NEW QUESTION 25
If you upgrade your FortiAnalyzer firmware, what report elements can be affected?

  • A. Output profiles
  • B. Custom datasets
  • C. Report settings
  • D. Report scheduling

Answer: B

 

NEW QUESTION 26
What can the CLI command # diagnose test application oftpd 3 help you to determine?

  • A. What ADOMs are enabled and configured
  • B. What devices are registered and unregistered
  • C. What logs, if any, are reaching FortiAnalyzer
  • D. What devices and IP addresses are connecting to FortiAnalyzer

Answer: D

 

NEW QUESTION 27
If you upgrade the FortiAnalyzer firmware, which report element can be affected?

  • A. Output profiles
  • B. Custom datasets
  • C. Report settings
  • D. Report scheduling

Answer: B

 

NEW QUESTION 28
Refer to the exhibit.

What does the data point at 14:55 tell you?

  • A. The sqlplugind daemon is behind in log indexing by two logs
  • B. Logs are being dropped
  • C. The received rate is almost at its maximum for this device
  • D. Raw logs are reaching FortiAnalyzer faster than they can be indexed

Answer: D

 

NEW QUESTION 29
FortiAnalyzer reports are dropping analytical data from 15 days ago, even though the data policy setting for analytics logs is 60 days.
What is the most likely problem?

  • A. Quota enforcement is acting on analytical data before a report is complete
  • B. CPU resources are too high
  • C. Disk utilization for archive logs is set for 15 days
  • D. Logs are rolling before the report is run

Answer: A

 

NEW QUESTION 30
Which two statements about log forwarding are true? (Choose two.)

  • A. You can use aggregation mode only with another FortiAnalyzer.
  • B. Logs are forwarded in real-time only.
  • C. Forwarded logs cannot be filtered to match specific criteria.
  • D. The client retains a local copy of the logs after forwarding.

Answer: B,D

 

NEW QUESTION 31
......

Grab latest Fortinet NSE5_FAZ-6.2 Dumps as PDF Updated: https://www.exam-killer.com/NSE5_FAZ-6.2-valid-questions.html