You have recently grouped multiple FortiGate devices into a single ADOM. System Settings > Storage Info
shows the quota used.
What does the disk quota refer to?
NO: 5
Which FortiAnalyzer feature allows you to retrieve the archived logs matching a specific timeframe from
another FortiAnalyzer device?
What happens when the IOC breach detection engine on FortiAnalyzer finds web logs that match a blocklisted IP address?
An administrator has moved a registered logging device out of one ADOM and into a new ADOM.
What is the purpose of running the following command: execute sql-local rebuild-adom
Which three RAID configurations provide fault tolerance on FortiAnalyzer? (Choose three.)
What is the main purpose of using an NTP server on FortiAnalyzer and all of its registered devices?
Which two statements are true regarding the outbreak detection service? (Choose two.)
In a Fortinet Security Fabric, what can make an upstream FortiGate create traffic logs associated with sessions initiated on downstream FortiGate devices?
Refer to the exhibit.
Based on the output, what can you conclude about the FortiAnalyzer logging status?
Which two methods can you use to restrict administrative access on FortiAnalyzer? (Choose two.)
What statements are true regarding FortiAnalyzer 's treatment of high availability (HA) dusters? (Choose two)
Refer to the exhibit.
The exhibit shows “remoteservergroup” is an authentication server group with LDAP and RADIUS servers.
Which two statements express the significance of enabling “Match all users on remote server” when configuring a new administrator? (Choose two.)
Which two of the available registration methods place the device automatically in its assigned ADOM? {Choose two.)
Which FortiAnalyzer feature allows you to use a proactive approach when managing your network security?
Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally?
(Choose two.)
A rogue administrator was accessing FortiAnalyzer without permission, and you are tasked to see what activity was performed by that rogue administrator on FortiAnalyzer.
What can you do on FortiAnalyzer to accomplish this?
Which statement when you are upgrading the firmware on an HA cluster made up of three FortiAnalyzer devices is true?
After generating a report, you notice the information you were expecting to see is not included in it. What are two possible reasons for this scenario? (Choose two.)
For which two purposes would you use the command set log-checksum? (Choose two.)
You crested a playbook on FortiAnalyzer that uses a FortiOS connector
When configuring the FortiGate side, which type of trigger must be used so that the actions in an automation stitch are available in the FortiOS connector?
In Log View, you can use the Chart Builder feature to build a dataset and chart based on the filtered search results.
Similarly, which feature you can use for FortiView?
What FortiView tool can you use to automatically build a dataset and chart based on a filtered search result?
Refer to the exhibit.
The exhibit shows the creation of a new administrator on FortiAnalyzer.
What are two effects of enabling the choice Match all users on remote server when configuring a new administrator? (Choose two.)
An administrator has moved FortiGate A from the root ADOM to ADOM1. However, the administrator is not able to generate reports for FortiGate A in ADOM1.
What should the administrator do to solve this issue?
A playbook contains five tasks in total. An administrator runs the playbook and four out of five tasks finish successfully, but one task fails. What will be the status of the playbook after it is run?
How can you configure FortiAnalyzer to permit administrator logins from only specific locations?
An administrator has configured the following settings:
config system global
set log-checksum md5-auth
end
What is the significance of executing this command?
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the
purpose of running the following CLI command?
execute sql-local rebuild-adom
For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered
devices should:
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
Which two constraints can impact the amount of reserved disk space required by FortiAnalyzer? (Choose
two.)
In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname.
How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?
Why should you use an NTP server on FortiAnalyzer and all registered devices that log into FortiAnalyzer?
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons? (Choose three)
Which two statements about high availability (HA) on FortiAnalyzer are true? (Choose two.)