Certbus > Fortinet > Network Security Analyst > NSE5_FAZ-5.4 > NSE5_FAZ-5.4 Online Practice Questions and Answers

NSE5_FAZ-5.4 Online Practice Questions and Answers

Questions 4

In FortiAnalyzer's FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname. How can you resolve the source and destination IPs, without introducing any additional performance impact to FortiAnalyzer?

A. Configure # set resolve-ip enable in the system FortiView settings

B. Resolve IPs on FortiGate

C. Configure local DNS servers on FortiAnalyzer

D. Resolve IPs on a per-ADOM basis to reduce delay on FortiView while IPs resolve

Browse 25 Q&As
Questions 5

What must you configure on FortiAnalyzer to upload a Fortianalyzer report to a supported external server? (Choose two.)

A. Report scheduling

B. Output profile

C. SFTP, FTP, or SCP server

D. Mail server

Browse 25 Q&As
Questions 6

What is the recommended method of expanding disk space on a FortiAnalyzer VM?

A. From the VM host manager, add an additional virtual disk and use the #execute lvm extend command to expand the storage

B. From the VM host manager, expand the size of the existing virtual disk

C. From the VM host manager, add an additional disk and rebuild your RAID array

D. From the VM host manager, expand the size of the existing virtual disk and use the # execute format disk command to reformat the disk

Browse 25 Q&As
Questions 7

View the exhibit.

What does the data point at 14:35 tell you?

A. The sqlplugind daemon is ahead in indexing by one log

B. FortiAnalyzer is indexing logs faster than logs are being received

C. FortiAnalyzer is dropping logs

D. FortiAnalyzer has temporarily stopped receiving logs so older logs can be indexed

Browse 25 Q&As
Questions 8

View the exhibit: What does the 1000 MB maximum for disk utilization refer to?

A. The disk quota for each device in the ADOM

B. The disk quota for the ADOM type

C. The disk quota for all devices in the ADOM

D. The disk quota for the FortiAnalyzer model

Browse 25 Q&As
Questions 9

On FortiAnalyzer, what is a wildcard administrator account?

A. An account that permits access to members of a LDAP group

B. An account that allows guest access with read-only privileges

C. An account that requires two-factor authentication

D. An account that validates against any user account on a FortiAuthenticator

Browse 25 Q&As
Questions 10

What FortiView tool can you use to automatically build a dataset and chart based on a filtered search result?

A. Chart Builder

B. Dataset Library

C. Custom View

D. Export to Report Chart

Browse 25 Q&As
Questions 11

FortiAnalyzer uses the Optimized Fabric Transfer Protocol (OFTP) over SSL for what purpose?

A. To prevent log modification during backup

B. To send an identical set of logs to a second logging server

C. To encrypt log communication between devices

D. To upload logs to a SFTP server

Browse 25 Q&As
Questions 12

What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log settings?

A. The log file is stored as a raw log and is available for analytic support

B. The log file rolls over and is archived

C. The log file is purged from the database

D. The log file is overwritten

Browse 25 Q&As
Questions 13

What purposes does the auto-cache setting on reports serve? (Choose two.)

A. To automatically update the hcache when new logs arrive

B. To provide diagnostics on report generation time

C. To reduce the log insert lag rate

D. To reduce report generation time

Browse 25 Q&As
Questions 14

What can the CLI command # diagnose test application oftpd 3 help you to determine?

A. What logs, if any, are reaching FortiAnalyzer

B. What ADOMs are enabled and configured

C. What devices and IP addresses are connecting to FortiAnalyzer

D. What devices are registered and unregistered

Browse 25 Q&As
Questions 15

How are logs forwarded when FortiAnalyzer is using aggregation mode?

A. Logs and content files are stored and uploaded at a scheduled time

B. Logs and content files are forwarded as they are received

C. Logs are forwarded ad they are received

D. Logs are forwarded as they are received and content files are uploaded at a scheduled time

Browse 25 Q&As
Questions 16

Logs are being deleted from one of your ADOMs earlier than the configured setting for archiving in your data policy. What is the most likely problem?

A. Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device

B. CPU resources are too high

C. The ADOM disk quota is set too low based on log rates

D. The total disk space is insufficient and you need to add other disk

Browse 25 Q&As
Questions 17

How does FortiAnalyzer retrieve specific log data from the database?

A. SQL FROM statement

B. SQL GET statement

C. SQL SELECT statement

D. SQL EXTRACT statement

Browse 25 Q&As
Questions 18

View the exhibit.

Why is the total quota less than the total system storage?

A. The oftpd process has not archived the logs yet

B. The logfiled process is just estimating the total quota

C. Some space is reserved for system use, such as storage of compression files, upload files, and temporary report files

D. 3.6% of the system storage is already being used

Browse 25 Q&As
Exam Code: NSE5_FAZ-5.4
Exam Name: FortiAnalyzer 5.4 Specialist
Last Update: Apr 27, 2024
Questions: 25 Q&As

PDF

$45.99

VCE

$49.99

PDF + VCE

$59.99