Try Before You Buy

Download a free sample of any of our exam questions and answers

  • 24/7 customer support, Secure shopping site
  • Free One year updates to match real exam scenarios
  • If you failed your exam after buying our products we will refund the full amount back to you.

[Sep-2021] Valid Way To Pass Fortinet Exam Dumps with NSE5_FAZ-6.2 Exam Study Guide [Q28-Q45]

Share

[Sep-2021] Valid Way To Pass Fortinet Exam Dumps with NSE5_FAZ-6.2 Exam Study Guide

All NSE5_FAZ-6.2 Dumps and Fortinet NSE 5 - FortiAnalyzer 6.2 Training Courses Help candidates to study and pass the Exams hassle-free!

NEW QUESTION 28
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons? (Choose three)

  • A. TACACS+
  • B. Local
  • C. PKI
  • D. LDAP
  • E. RADIUS

Answer: A,D,E

 

NEW QUESTION 29
What is the recommended method of expanding disk space on a FortiAnalyzer VM?

  • A. From the VM host manager, add an additional virtual disk and rebuild your RAID array
  • B. From the VM host manager, expand the size of the existing virtual disk and use the # execute format disk command to reformat the disk
  • C. From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storage
  • D. From the VM host manager, expand the size of the existing virtual disk

Answer: C

 

NEW QUESTION 30
Which tabs do not appear when FortiAnalyzer is operating in Collector mode?

  • A. FortiView
  • B. Event Management
  • C. Reporting
  • D. Device Manger

Answer: B

 

NEW QUESTION 31
Which FortiAnalyzer feature allows you to retrieve the archived logs matching a specific timeframe from another FortiAnalyzer device?

  • A. Log fetching
  • B. Log forwarding an aggregation mode
  • C. Log upload
  • D. Indicators of Compromise

Answer: A

 

NEW QUESTION 32
For which two purposes would you use the command set log checksum? (Choose two.)

  • A. To encrypt log communications
  • B. To help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP server
  • C. To prevent log modification or tampering
  • D. To send an identical set of logs to a second logging server

Answer: B,C

Explanation:
To prevent the log in the store from being modified, you can add a log checksum by using the config system global command. When the log is split, archived, and the log is uploaded (if the feature is enabled), you can configure the FortiAnalyzer to log the log file hash value, timestamp, and authentication code. This can help defend against man-in-the-middle attacks when uploading log transmission data from the FortiAnalyzer to the SFTP server.

 

NEW QUESTION 33
Logs are being deleted from one of your ADOMs earlier that the configured setting for archiving in your data policy. What is the most likely problem?

  • A. The ADOM disk quota is set too low based on log rates.
  • B. CPU resources are too high.
  • C. Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device.
  • D. The total disk space is insufficient and you need to add other disk.

Answer: A

 

NEW QUESTION 34
Refer to the exhibit.

What does the data point at 14:55 tell you?

  • A. Logs are being dropped
  • B. The sqlplugind daemon is behind in log indexing by two logs
  • C. Raw logs are reaching FortiAnalyzer faster than they can be indexed
  • D. The received rate is almost at its maximum for this device

Answer: A

 

NEW QUESTION 35
What statements are true regarding disk log quota? (Choose two)

  • A. The FortiAnalyzer disk log quota is configurable, but has a minimum o 100mb a maximum based on the reserved system space.
  • B. The FortiAnalyzer can overwrite the oldest logs or stop logging once the disk log quota is met.
  • C. The FortiAnalyzer stops logging once the disk log quota is met.
  • D. The FortiAnalyzer automatically sets the disk log quota based on the device.

Answer: A,B

 

NEW QUESTION 36
On the RAID management page, the disk status is listed as Initializing.
What does the status Initializing indicate about what the FortiAnalyzer is currently doing?

  • A. FortiAnalyzer is functioning normally
  • B. FortiAnalyzer is writing to all of its hard drives to make the array fault tolerant
  • C. FortiAnalyzer is ensuring that the parity data of a redundant drive is valid
  • D. FortiAnalyzer is writing data to a newly added hard drive to restore it to an optimal state

Answer: B

 

NEW QUESTION 37
What is the purpose of the following CLI command?

  • A. To encrypt log communications
  • B. To add a log file checksum
  • C. To add a unique tag to each log to prove that it came from this FortiAnalyzer
  • D. To add the MD's hash value and authentication code

Answer: B

 

NEW QUESTION 38
Which two methods can you use to send event notifications when an event occurs that matches a configured event handler? (Choose two.)

  • A. IM
  • B. SNMP
  • C. Email
  • D. SMS

Answer: B,C

 

NEW QUESTION 39
Logs are being deleted from one of the ADOMs earlier than the configured setting for archiving in the data policy.
What is the most likely problem?

  • A. The ADOM disk quota is set too low, based on log rates
  • B. Logs in that ADOM are being forwarded, in real-time, to another FortiAnalyzer device
  • C. The total disk space is insufficient and you need to add other disk
  • D. CPU resources are too high

Answer: A

 

NEW QUESTION 40
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)

  • A. Must configure the FortiAnalyzer end of the tunnel only--the FortiGate end is auto-negotiated.
  • B. IPsec cannot be enabled if SSL is enabled as well.
  • C. Must establish an IPsec tunnel ID and pre-shared key.
  • D. IPsec is only enabled through the CLI on FortiAnalyzer.

Answer: B

 

NEW QUESTION 41
You've moved a registered logging device out of one ADOM and into a new ADOM. What happens when you rebuild the new ADOM database?

  • A. FortiAnalyzer migrates analytics logs to the new ADOM.
  • B. FortiAnalyzer migrates archive logs to the new ADOM.
  • C. FortiAnalyzer removes logs from the old ADOM.
  • D. FortiAnalyzer resets the disk quota of the new ADOM to default.

Answer: A

 

NEW QUESTION 42
FortiAnalyzer uses the Optimized Fabric Transfer Protocol (OFTP) over SSL for which purpose?

  • A. To send an identical set of logs to a second logging server
  • B. To encrypt log communication between devices
  • C. To prevent log modification during backup
  • D. To upload logs to an SFTP server

Answer: A

Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortigate/6.4.0/ports-and-protocols/109281/oftp-optimized- fabric-transfer-protocol#:~:text=The%20Optimized%20Fabric%20Transfer%20Protocol,and%2For%
20FortiManager)%20unit.

 

NEW QUESTION 43
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the purpose of running the following CLI command?
execute sql-local rebuild-adom <new-ADOM-name>

  • A. To remove the analytics logs of the device from the old database
  • B. To populate the new ADOM with analytical logs for the moved device, so you can run reports
  • C. To reset the disk quota enforcement to default
  • D. To migrate the archive logs to the new ADOM

Answer: A

 

NEW QUESTION 44
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the purpose of running the following CLI command?
execute sql-local rebuild-adom <new-ADOM-name>

  • A. To remove the analytics logs of the device from the old database
  • B. To populate the new ADOM with analytical logs for the moved device, so you can run reports
  • C. To reset the disk quota enforcement to default
  • D. To migrate the archive logs to the new ADOM

Answer: A

Explanation:
Explanation/Reference: https://docs.fortinet.com/document/fortianalyzer/6.0.2/cli-reference/551596/sql-local

 

NEW QUESTION 45
......

Get Latest [Sep-2021] Conduct effective penetration tests using  DumpTorrent NSE5_FAZ-6.2