無料Fortinet NSE5_FAZ-7.0試験問題と解答トレーニングを提供しています
トップクラスFortinet NSE5_FAZ-7.0オンライン問題集
質問 # 43
Which tabs do not appear when FortiAnalyzer is operating in Collector mode?
- A. FortiView
- B. Event Management
- C. Reporting
- D. Device Manger
正解:B
質問 # 44
When working with FortiAnalyzer reports, what is the purpose of a dataset?
- A. To provide the layout used for reports
- B. To define the chart type to be used
- C. To set the data included in templates
- D. To retrieve data from the database
正解:D
解説:
Reference:
Datasets: Structured Query Language (SQL) SELECT queries that extract specific data from the database
質問 # 45
What is the purpose of employing RAID with FortiAnalyzer?
- A. To back up your logs
- B. To provide data separation between ADOMs
- C. To separate analytical and archive data
- D. To introduce redundancy to your log data
正解:D
解説:
https://en.wikipedia.org/wiki/RAID#:~:text=RAID%20(%22Redundant%20Array%20of%20Inexpensive,%2C%20performance%20improvement%2C%20or%20both.
質問 # 46
Which two statements are true regarding log fetching on FortiAnalyzer? (Choose two.)
- A. Log fetching allows the administrator to fetch analytics logs from another FortiAnalyzer for redundancy.
- B. Log fetching can be done only on two FortiAnalyzer devices that are running the same firmware version.
- C. A FortiAnalyzer device can perform either the fetch server or client role, and it can perform two roles at the same time with the same FortiAnalyzer devices at the other end.
- D. Log fetching allows the administrator to run queries and reports against historical data by retrieving archived logs from one FortiAnalyzer device and sending them to another FortiAnalyzer device.
正解:B、D
質問 # 47
View the exhibit:
What does the 1000MB maximum for disk utilization refer to?
- A. The disk quota for each device in the ADOM
- B. The disk quota for the ADOM type
- C. The disk quota for the FortiAnalyzer model
- D. The disk quota for all devices in the ADOM
正解:D
解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/743670/configuring-log-storage-policy
質問 # 48
What is the purpose of output variables?
- A. To save all the task settings when a playbook is exported
- B. To use the output of the previous task as the input of the current task
- C. To display details of the connectors used by a playbook
- D. To store playbook execution statistics
正解:D
質問 # 49
Which statement is true about sending notifications with incident updates?
- A. Notifications can be sent only by email.
- B. You can send notifications to multiple external platforms
- C. If you use multiple fabric connectors, all connectors must have the same notification settings
- D. Notifications can be sent only when an incident is updated or deleted.
正解:D
質問 # 50
An administrator has moved FortiGate A from the root ADOM to ADOM1.
Which two statements are true regarding logs? (Choose two.)
- A. Archived logs will be moved to ADOM1 from the root ADOM automatically.
- B. Analytics logs will be moved to ADOM1 from the root ADOM automatically.
- C. Analytics logs will be moved to ADOM1 from the root ADOM after you rebuild the ADOM1 SQL database.
- D. Logs will be presented in both ADOMs immediately after the move.
正解:A、C
質問 # 51
For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered devices should:
- A. Use real-time forwarding
- B. Use an NTP server
- C. Use host name resolution
- D. Use DNS
正解:B
質問 # 52
By default, what happens when a log file reaches its maximum file size?
- A. FortiAnalyzer stops logging.
- B. FortiAnalyzer rolls the active log by renaming the file.
- C. FortiAnalyzer forwards logs to syslog.
- D. FortiAnalyzer overwrites the log files.
正解:B
質問 # 53
Refer to the exhibit.
The exhibit shows "remoteservergroup" is an authentication server group with LDAP and RADIUS servers.
Which two statements express the significance of enabling "Match all users on remote server" when configuring a new administrator? (Choose two.)
- A. Use remoteadmin from LDAP and RADIUS servers will be able to log in to FortiAnalyzer at anytime.
- B. It allows administrators to use two-factor authentication.
- C. It creates a wildcard administrator using LDAP and RADIUS servers.
- D. Administrator can log in to FortiAnalyzer using their credentials on remote servers LDAP and RADIUS.
正解:C、D
質問 # 54
Which two statements are correct regarding the export and import of playbooks? (Choose two.)
- A. You can export only one playbook at a time.
- B. A playbook that was disabled when it was exported, will be disabled when it is imported.
- C. Playbooks can be exported and imported only within the same FortiAnaryzer.
- D. You can import a playbook even if there is another one with the same name in the destination.
正解:B、D
質問 # 55
For which two SAML roles can the FortiAnalyzer be configured? (Choose two.)
- A. Principal
- B. Identity provider
- C. Service provider
- D. Identity collector
正解:B、C
解説:
Reference:
20the%20identity%20provider%20(IdP,external%20identity%20provider%20is%20available.
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/981386/saml-admin-authentication
質問 # 56
What is the best approach to handle a hard disk failure on a FortiAnalyzer that supports hardware RAID?
- A. There is no need to do anything because the disk will self-recover.
- B. Hot swap the disk.
- C. Run execute format disk to format and restart the FortiAnalyzer device.
- D. Shut down FortiAnalyzer and replace the disk
正解:D
解説:
https://kb.fortinet.com/kb/documentLink.do?externalID=FD46446#:~:text=On%20FortiAnalyzer%2FFortiManager%20devices%20that,to%20exchanging%20the%20hard%20disk.
If a hard disk on a FortiAnalyzer unit fails, it must be replaced. On FortiAnalyzer devices that support hardware RAID, the hard disk can be replaced while the unit is still running - known as hot swapping. On FortiAnalyzer units with software RAID, the device must be shutdown prior to exchanging the hard disk.
質問 # 57
Which two statements are true regarding high availability (HA) on FortiAnalyzer? (Choose two.)
- A. FortiAnalyzer HA can function without VRRP. and VRRP is required only if you have more than two FortiAnalyzer devices in a cluster.
- B. All devices in a FortiAnalyzer HA cluster must run in the same operation mode: analyzer or collector.
- C. FortiAnalyzer HA supports synchronization of logs as well as some system and configuration settings.
- D. FortiAnalyzer HA implementation is supported by many public cloud infrastructures such as AWS, Microsoft Azure, and Google Cloud.
正解:B、C
質問 # 58
How are logs forwarded when FortiAnalyzer is using aggregation mode?
- A. Logs are forwarded as they are received.
- B. Logs and content files are forwarded as they are received.
- C. Logs and content files are stored and uploaded at a scheduled time.
- D. Logs are forwarded as they are received and content files are uploaded at a scheduled time.
正解:C
解説:
https://www.fortinetguru.com/2020/07/log-forwarding-fortianalyzer-fortios-6-2-3/
https://docs.fortinet.com/document/fortianalyzer/6.2.0/administration-guide/420493/modes
質問 # 59
Refer to the exhibit.
The image displays the configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster.
What can you conclude from the configuration displayed?
- A. This FortiAnalyzer will trigger a failover after losing communication with its peers for 10 seconds.
- B. After joining to the cluster, this FortiAnalyzer will keep an updated log database.
- C. This FortiAnalyzer will join to the existing HA cluster as the primary.
- D. This FortiAnalyzer is configured to receive logs in its port1.
正解:B
質問 # 60
What is the purpose of output variables?
- A. To save all the task settings when a playbook is exported
- B. To store playbook execution statistics
- C. To display details of the connectors used by a playbook
- D. To use the output of the previous task as the input of the current task
正解:D
解説:
FortiAnalyzer_7.0_Study_Guide-Online.pdf page 242: Output variables allow you to use the output from a preceding task as an input to the current task.
"Output variables allow you to use the output from a preceding task as an input to the current task." FortiAnalyzer_7.0_Study_Guide-Online page 242
質問 # 61
An administrator fortinet, is able to view logs and perform device management tasks, such as adding and removing registered devices. However, administrator fortinet is not able to create a mall server that can be used to send email.
What could be the problem?
- A. Fortinet is assigned the Restricted_ User administrator profile.
- B. Fortinet is assigned the Standard_ User administrator profile.
- C. A trusted host is configured.
- D. ADOM mode is configured with Advanced mode.
正解:B
質問 # 62
Which two methods are the most common methods to control and restrict administrative access on FortiAnalyzer? (Choose two.)
- A. Trusted hosts
- B. Security Fabric
- C. Administrative access profiles
- D. Virtual domains
正解:A、C
解説:
Reference:
https://docs2.fortinet.com/document/fortianalyzer/6.0.0/administration-guide/581222/trusted-hosts
質問 # 63
What is the purpose of a predefined template on the FortiAnalyzer?
- A. It can be edited and modified as required
- B. It contains predefined data to generate mock reports
- C. It specifies the report layout which contains predefined texts, charts, and macros
- D. It specifies report settings which contains time period, device selection, and schedule
正解:C
解説:
Reference:
2300_Reports/0010_Predefined_reports.htm#:~:text=FortiAnalyzer%20includes%20a%20number%
20of,create%20and%2For%20build%20reports.&text=A%20template%20populates%20the%20Layout,that%
20is%20to%20be%20created.
https://help.fortinet.com/fa/faz50hlp/56/5-6-2/FMG-FAZ/2300_Reports/0010_Predefined_reports.htm
質問 # 64
Which two constraints can impact the amount of reserved disk space required by FortiAnalyzer? (Choose two.)
- A. Total quota
- B. RAID level
- C. Disk size
- D. License type
正解:B、C
解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/368682/disk-space-allocation
質問 # 65
......
Fortinet NSE5_FAZ-7.0 試験は、FortiAnalyzer 7.0 に関連する様々なトピックをカバーする包括的なアセスメントです。この試験では、候補者の FortiAnalyzer 7.0 を設定、管理、トラブルシューティングする知識と理解をテストします。試験は、ログ管理、レポート生成、およびイベント分析などのトピックもカバーしています。
Fortinet NSE5_FAZ-7.0試験は包括的で厳しい認定プログラムであり、候補者はネットワークセキュリティの概念と実践に深い理解を持っている必要があります。試験は、FortiAnalyzerの展開、設定、および管理、ログの収集と分析、イベント管理、およびレポートなど、さまざまなトピックをカバーしています。成功した候補者は、FortiAnalyzerの設定と管理、ネットワートラフィックとセキュリティイベントの分析、および総合的なレポートの生成によって、セキュリティの脅威と脆弱性を特定するのに役立つ専門知識を証明できます。Fortinet NSE5_FAZ-7.0認定を取得することにより、ITプロフェッショナルはキャリアの見通しを向上させ、ネットワークセキュリティの卓越性に対する取り組みを証明できます。
Fortinet NSE5_FAZ-7.0試験は、FortiAnalyzer 7.0を使用してネットワークセキュリティイベントを管理および分析することにおいて候補者のスキルと知識を評価するために設計された認定試験です。この試験は、Fortinet製品を使用し、ネットワークセキュリティ情報を監視および分析する責任がある専門家に最適です。これは包括的で、ベンダーにとらわれない試験であり、FortiAnalyzer 7.0のすべての側面をカバーしています。
最新(2023)Fortinet NSE5_FAZ-7.0試験問題集:https://jp.fast2test.com/NSE5_FAZ-7.0-premium-file.html
NSE5_FAZ-7.0練習問題集で検証済みのFast2test更新された116問題あります:https://drive.google.com/open?id=1pA0Lb_roq-VjwW_Bp_y6uZ98fyWohFVU