Fortinet NSE5_FAZ-6.4最新問題集[2022]高得点を掴み取れ [Q46-Q69]

Share

Fortinet NSE5_FAZ-6.4最新問題集[2022]高得点を掴み取れ

NSE5_FAZ-6.4問題集PassTest100%合格率保証

質問 46
What is the recommended method of expanding disk space on a FortiAnalyzer VM?

  • A. From the VM host manager, expand the size of the existing virtual disk and use the # execute format disk command to reformat the disk
  • B. From the VM host manager, add an additional virtual disk and use the #execute lvm extend <disk number> command to expand the storage
  • C. From the VM host manager, add an additional virtual disk and rebuild your RAID array
  • D. From the VM host manager, expand the size of the existing virtual disk

正解: B

解説:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD40848

 

質問 47
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)

  • A. SSL encryption levels are globally set on FortiAnalyzer.
  • B. SSL communications are auto-negotiated between the two devices.
  • C. SSL is the default setting.
  • D. SSL can send logs in real-time only.
  • E. FortiAnalyzer encryption level must be equal to, or higher than, FortiGate.

正解: A,C

 

質問 48
What two things should an administrator do to view Compromised Hosts on FortiAnalyzer? (Choose two.)

  • A. Enable device detection on an interface on the FortiGate devices that are connected to the FortiAnalyzer.
  • B. Make sure all endpoints are reachable by FortiAnalyzer.
  • C. Enable web filtering in firewall policies on FortiGate devices, and make sure these logs are sent to FortiAnalyzer.
  • D. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up-to-date.

正解: C,D

 

質問 49
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?

  • A. Antivirus logs
  • B. IPS logs
  • C. Web filter logs
  • D. Application control logs

正解: C

解説:
Reference:
FortiAnalyzer_Admin_Guide/3600_FortiView/0200_Using_FortiView/1200_Compromised_hosts_page.htm?
TocPath=FortiView%7CUsing%20FortiView%7C_____6

 

質問 50
Refer to the exhibit.

Which two statements are true regarding enabling auto-cache on FortiAnalyzer? (Choose two.)

  • A. Report size will be optimized to conserve disk space on FortiAnalyzer.
  • B. Enabling auto-cache reduces report generation time for reports that require a long time to assemble datasets.
  • C. Reports will be cached in the memory.
  • D. This feature is automatically enabled for scheduled reports.

正解: A,B

 

質問 51
In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname.
How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?

  • A. Resolve IP addresses on FortiGate
  • B. Configure # set resolve-ip enable in the system FortiView settings
  • C. Resolve IP addresses on a per-ADOM basis to reduce delay on FortiView while IPs resolve
  • D. Configure local DNS servers on FortiAnalyzer

正解: A

解説:
https://packetplant.com/fortigate-and-fortianalyzer-resolve-source-and-destination-ip/
"As a best practice, it is recommended to resolve IPs on the FortiGate end. This is because you get both source and destination, and it offloads the work from FortiAnalyzer. On FortiAnalyzer, this IP resolution does destination IPs only"

 

質問 52
What purposes does the auto-cache setting on reports serve? (Choose two.)

  • A. To reduce the log insert lag rate
  • B. To provide diagnostics on report generation time
  • C. To automatically update the hcache when new logs arrive
  • D. To reduce report generation time

正解: C,D

 

質問 53
What must you configure on FortiAnalyzer to upload a FortiAnalyzer report to a supported external server?
(Choose two.)

  • A. Mail server
  • B. SFTP, FTP, or SCP server
  • C. Report scheduling
  • D. Output profile

正解: B,D

解説:
https://fortinetweb.s3.amazonaws.com/docs.fortinet.com/v2/attachments/6d9f8fb5-6cf4-11e9-81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-Guide.pdf page 119 There is an option for "uploading reports to server" under configuring the output profile. The available options are: SFTP, FTP and SCP. You have to be careful on the question itself. The question tells you to "upload reports to a server (external server). Which means, a server has been configured already in this case prior to enabling the "upload reports to server".

 

質問 54
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the purpose of running the following CLI command?
execute sql-local rebuild-adom <new-ADOM-name>

  • A. To remove the analytics logs of the device from the old database
  • B. To reset the disk quota enforcement to default
  • C. To migrate the archive logs to the new ADOM
  • D. To populate the new ADOM with analytical logs for the moved device, so you can run reports

正解: D

解説:

 

質問 55
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate to FortiAnalyzer with any user account in a single LDAP group? (Choose two.)

  • A. An administrator group
  • B. A local wildcard administrator account
  • C. A remote LDAP server
  • D. A trusted host profile that restricts access to the LDAP group

正解: A,C

 

質問 56
How are logs forwarded when FortiAnalyzer is using aggregation mode?

  • A. Logs are forwarded as they are received and content files are uploaded at a scheduled time.
  • B. Logs are forwarded as they are received.
  • C. Logs and content files are stored and uploaded at a scheduled time.
  • D. Logs and content files are forwarded as they are received.

正解: C

解説:
https://www.fortinetguru.com/2020/07/log-forwarding-fortianalyzer-fortios-6-2-3/
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/420493/modes

 

質問 57
Which statements are true of Administrative Domains (ADOMs) in FortiAnalyzer? (Choose two.)

  • A. All administrators can create ADOMs--not just the admin administrator.
  • B. ADOMs constrain other administrator's access privileges to a subset of devices in the device list.
  • C. Once enabled, the Device Manager, FortiView, Event Management, and Reports tab display per ADOM.
  • D. ADOMs are enabled by default.

正解: B,C

 

質問 58
What are two advantages of setting up fabric ADOM? (Choose two.)

  • A. It can be used to facilitate communication between devices in same Security Fabric
  • B. It can include all Fortinet devices that are part of the same Security Fabric
  • C. It can include only FortiGate devices that are part of the same Security Fabric
  • D. It can be used for fast data processing and log correlation

正解: B,D

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/448471/creating-a-security-fabric-adom

 

質問 59
For which two SAML roles can the FortiAnalyzer be configured? (Choose two.)

  • A. Identity collector
  • B. Principal
  • C. Identity provider
  • D. Service provider

正解: C,D

解説:
Reference:
20the%20identity%20provider%20(IdP,external%20identity%20provider%20is%20available.
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/981386/saml-admin-authentication

 

質問 60
Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)

  • A. Forwarding mode forwards logs in real time only to other FortiAnalyzer devices.
  • B. Both modes, forwarding and aggregation, support encryption of logs between devices.
  • C. In aggregation mode, you can forward logs to syslog and CEF servers as well.
  • D. Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device at a scheduled time.

正解: B,D

 

質問 61
View the exhibit.

Why is the total quota less than the total system storage?

  • A. The logfiled process is just estimating the total quota
  • B. The oftpd process has not archived the logs yet
  • C. 3.6% of the system storage is already being used.
  • D. Some space is reserved for system use, such as storage of compression files, upload files, and temporary report files

正解: D

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/368682/disk-space-allocation

 

質問 62
What FortiView tool can you use to automatically build a dataset and chart based on a filtered search result?

  • A. Custom View
  • B. Export to Report Chart
  • C. Chart Builder
  • D. Dataset Library

正解: C

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.0/cookbook/989203/building-charts-with-chart-builder

 

質問 63
Consider the CLI command:

What is the purpose of the command?

  • A. To add a unique tag to each log to prove that it came from this FortiAnalyzer
  • B. To add a log file checksum
  • C. To encrypt log communications
  • D. To add the MD5 hash value and authentication code

正解: B

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/cli-reference/849211/global

 

質問 64
By default, what happens when a log file reaches its maximum file size?

  • A. FortiAnalyzer forwards logs to syslog.
  • B. FortiAnalyzer rolls the active log by renaming the file.
  • C. FortiAnalyzer stops logging.
  • D. FortiAnalyzer overwrites the log files.

正解: B

 

質問 65
Refer to the exhibit.

What does the data point at 14:55 tell you?

  • A. Raw logs are reaching FortiAnalyzer faster than they can be indexed
  • B. The received rate is almost at its maximum for this device
  • C. Logs are being dropped
  • D. The sqlplugind daemon is behind in log indexing by two logs

正解: A

 

質問 66
You have recently grouped multiple FortiGate devices into a single ADOM. System Settings > Storage Info shows the quota used.
What does the disk quota refer to?

  • A. The maximum disk utilization for the FortiAnalyzer model
  • B. The maximum disk utilization for the ADOM type
  • C. The maximum disk utilization for each device in the ADOM
  • D. The maximum disk utilization for all devices in the ADOM

正解: D

 

質問 67
What statements are true regarding disk log quota? (Choose two)

  • A. The FortiAnalyzer automatically sets the disk log quota based on the device.
  • B. The FortiAnalyzer stops logging once the disk log quota is met.
  • C. The FortiAnalyzer can overwrite the oldest logs or stop logging once the disk log quota is met.
  • D. The FortiAnalyzer disk log quota is configurable, but has a minimum o 100mb a maximum based on the reserved system space.

正解: C,D

 

質問 68
Which daemon is responsible for enforcing raw log file size?

  • A. miglogd
  • B. oftpd
  • C. sqlplugind
  • D. logfiled

正解: D

 

質問 69
......

100%合格率リアルNSE5_FAZ-6.4試験成功を掴み取れ:https://www.passtest.jp/Fortinet/NSE5_FAZ-6.4-shiken.html