NSE5_FAZ-6.2 Certification - The Ultimate Guide [Updated 2021]
NSE5_FAZ-6.2 Practice Exam and Study Guides - Verified By Pass4cram
How much Fortinet NSE 5 - FortiAnalyzer (NSE5 FAZ-6.2) Exam Cost
The Fortinet NSE 5 - FortiAnalyzer (NSE5 FAZ-6.2) Exam Costs USD 400. As the exam costs may vary country or region vise, it is always recommended to check the official website to see what’s the cost of the exam for your country. Total cost for preparing for the exam will include study materials as well like NSE5 FAZ-6.2 dumps and NSE5 FAZ-6.2 practice exams. Refer to the official website by clicking here for more info on pricing.
NEW QUESTION 31
View the exhibit.
Why is the total quota less than the total system storage?
- A. The logfiled process is just estimating the total quota
- B. 3.6% of the system storage is already being used.
- C. Some space is reserved for system use, such as storage of compression files, upload files, and temporary report files
- D. The oftpd process has not archived the logs yet
Answer: C
Explanation:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/368682/disk-space-allocation
NEW QUESTION 32
What is the recommended method of expanding disk space on a FortiAnalyzer VM?
- A. From the VM host manager, add an additional virtual disk and rebuild your RAID array
- B. From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storage
- C. From the VM host manager, expand the size of the existing virtual disk
- D. From the VM host manager, expand the size of the existing virtual disk and use the # execute format disk command to reformat the disk
Answer: B
NEW QUESTION 33
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons? (Choose three)
- A. TACACS+
- B. Local
- C. LDAP
- D. RADIUS
- E. PKI
Answer: A,C,D
NEW QUESTION 34
When you perform a system backup, what does the backup configuration contain? (Choose two.)
- A. System information
- B. Generated reports
- C. Authorized devices logs
- D. Device list
Answer: A,D
Explanation:
https://help.fortinet.com/fa/cli-olh/5-6-5/Content/Document/1400_execute/backup.htm
NEW QUESTION 35
What are the operating modes of FortiAnalyzer? (Choose two)
- A. Manager
- B. Analyzer
- C. Collector
- D. Standalone
Answer: B,C
NEW QUESTION 36
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate to FortiAnalyzer with any user account in a single LDAP group? (Choose two.)
- A. A local wildcard administrator account
- B. A trusted host profile that restricts access to the LDAP group
- C. A remote LDAP server
- D. An administrator group
Answer: A,C
Explanation:
Explanation/Reference: https://kb.fortinet.com/kb/documentLink.do?externalID=FD38567
NEW QUESTION 37
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
- A. IPS logs
- B. Application control logs
- C. Antivirus logs
- D. Web filter logs
Answer: D
Explanation:
Reference:
FortiAnalyzer_Admin_Guide/3600_FortiView/0200_Using_FortiView/1200_Compromised_hosts_page.htm?
TocPath=FortiView%7CUsing%20FortiView%7C_____6
NEW QUESTION 38
In order for FortiAnalyzer to collect logs from a FortiGate device, what configuration is required? (Choose two.)
- A. ADOMs must be enabled
- B. Log encryption must be enabled
- C. FortiGate must be registered with FortiAnalyzer
- D. Remote logging must be enabled on FortiGate
Answer: C,D
NEW QUESTION 39
What must you configure on FortiAnalyzer to upload a FortiAnalyzer report to a supported external server?
(Choose two.)
- A. Report scheduling
- B. SFTP, FTP, or SCP server
- C. Mail server
- D. Output profile
Answer: B,D
Explanation:
<https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/6d9f8fb5-6cf4-11e9-81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-Guide.pdf page 119> There is an option for "uploading reports to server" under configuring the output profile. The available options are: SFTP, FTP and SCP. You have to be careful on the question itself. The question tells you to "upload reports to a server (external server). Which means, a server has been configured already in this case prior to enabling the "upload reports to server".
NEW QUESTION 40
View the exhibit.
What does the data point at 14:35 tell you?
- A. FortiAnalyzer has temporarily stopped receiving logs so older logs' can be indexed.
- B. FortiAnalyzer is dropping logs.
- C. The sqlplugind daemon is ahead in indexing by one log.
- D. FortiAnalyzer is indexing logs faster than logs are being received.
Answer: D
Explanation:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/47690/insert-rate-vs-receive-rate-widget
NEW QUESTION 41
Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally?
(Choose two.)
- A. Mail server
- B. Output profile
- C. Report scheduling
- D. SFTP server
Answer: A,D
Explanation:
Reference:
81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-Guide.pdf (119)
NEW QUESTION 42
What is the main purpose of using an NTP server on FortiAnalyzer and all of its registered devices?
- A. Host name resolution
- B. Log correlation
- C. Log collection
- D. Real-time forwarding
Answer: C
NEW QUESTION 43
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
- A. IPS logs
- B. Application control logs
- C. Antivirus logs
- D. Web filter logs
Answer: D
NEW QUESTION 44
Logs are being deleted from one of the ADOMs earlier than the configured setting for archiving in the data policy.
What is the most likely problem?
- A. The ADOM disk quota is set too low, based on log rates
- B. The total disk space is insufficient and you need to add other disk
- C. Logs in that ADOM are being forwarded, in real-time, to another FortiAnalyzer device
- D. CPU resources are too high
Answer: A
Explanation:
Reference:
20logs.htm
NEW QUESTION 45
Consider the CLI command:
What is the purpose of the command?
- A. To add a unique tag to each log to prove that it came from this FortiAnalyzer
- B. To add a log file checksum
- C. To encrypt log communications
- D. To add the MD5 hash value and authentication code
Answer: D
NEW QUESTION 46
Which statements are true of Administrative Domains (ADOMs) in FortiAnalyzer? (Choose two.)
- A. All administrators can create ADOMs--not just the admin administrator.
- B. Once enabled, the Device Manager, FortiView, Event Management, and Reports tab display per ADOM.
- C. ADOMs constrain other administrator's access privileges to a subset of devices in the device list.
- D. ADOMs are enabled by default.
Answer: B,C
NEW QUESTION 47
For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered devices should:
- A. Use real-time forwarding
- B. Use an NTP server
- C. Use DNS
- D. Use host name resolution
Answer: B
NEW QUESTION 48
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
- A. IPS logs
- B. Application control logs
- C. Antivirus logs
- D. Web filter logs
Answer: D
Explanation:
Explanation/Reference: https://help.fortinet.com/fa/faz50hlp/60/6-0-2/Content/ FortiAnalyzer_Admin_Guide/3600_FortiView/0200_Using_FortiView/1200_Compromised_hosts_page.htm
?TocPath=FortiView%7CUsing%20FortiView%7C_____6
NEW QUESTION 49
What are two advantages of setting up fabric ADOM? (Choose two.)
- A. It can include only FortiGate devices that are part of the same Security Fabric
- B. It can be used to facilitate communication between devices in same Security Fabric
- C. It can include all Fortinet devices that are part of the same Security Fabric
- D. It can be used for fast data processing and log correlation
Answer: A,D
NEW QUESTION 50
......
Fortinet NSE 5 - FortiAnalyzer (NSE5 FAZ-6.2) Exam Certification Path
The Fortinet Network Security Expert (NSE) program is an eight-level training and certification program designed to provide objective confirmation of your network security expertise and knowledge to interested technical professionals. A broad range of self-paced and instructor-led courses are included in the NSE curriculum, as well as realistic, experiential activities that demonstrate mastery of complex concepts of network security.
For the Network Security Analyst, candidates must complete only 2 exams from the available five options. These exams are listed below:
- Fortinet NSE 5 - FortiSIEM
- Fortinet NSE 5 - FortiManager
- Fortinet NSE 5 - FortiAnalyzer
- Fortinet NSE 5 - FortiClient-EMS
- Fortinet NSE 5 - FortiEDR (coming soon)
Prerequisites for the exam include familiarity with all topics presented in FortiGate Security and FortiGate Infrastructure and Knowledge of SQL SELECT syntax.
Ultimate Guide to the NSE5_FAZ-6.2 - Latest Edition Available Now: https://tesking.pass4cram.com/NSE5_FAZ-6.2-dumps-torrent.html