[2022年12月25日] 究極のNSE5_FAZ-6.4準備ガイド!無料最新のFortinet練習テスト問題集 [Q44-Q69]

Share

[2022年12月25日] 究極のNSE5_FAZ-6.4準備ガイド!無料最新のFortinet練習テスト問題集

今すぐゲットせよ!高評価Fortinet NSE5_FAZ-6.4試験問題集


Fortinet NSE5_FAZ-6.4 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • Customize and generate reports
  • Manage registered devices
トピック 2
  • Troubleshoot device communication issues
  • Device registration and communication
トピック 3
  • Configure administrative access
  • Configure high availability (HA)
トピック 4
  • Troubleshoot and manage logs
  • Register devices in ADOMs
トピック 5
  • Troubleshoot reports
  • Troubleshoot RAID
  • Protect log data
  • Logs and reports
トピック 6
  • Configure event handlers
  • System configuration

 

質問 44
For which two purposes would you use the command set log checksum? (Choose two.)

  • A. To encrypt log communications
  • B. To send an identical set of logs to a second logging server
  • C. To prevent log modification or tampering
  • D. To help protect against man-in-the-middle attacks during log upload from FortiAnalyzer to an SFTP server

正解: C,D

 

質問 45
Which two constraints can impact the amount of reserved disk space required by FortiAnalyzer? (Choose two.)

  • A. Total quota
  • B. License type
  • C. RAID level
  • D. Disk size

正解: C,D

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/368682/disk-space-allocation

 

質問 46
Which two statements are true regarding high availability (HA) on FortiAnalyzer? (Choose two.)

  • A. All devices in a FortiAnalyzer HA cluster must run in the same operation mode: analyzer or collector.
  • B. FortiAnalyzer HA supports synchronization of logs as well as some system and configuration settings.
  • C. FortiAnalyzer HA can function without VRRP. and VRRP is required only if you have more than two FortiAnalyzer devices in a cluster.
  • D. FortiAnalyzer HA implementation is supported by many public cloud infrastructures such as AWS, Microsoft Azure, and Google Cloud.

正解: A,D

 

質問 47
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)

  • A. SSL is the default setting.
  • B. SSL encryption levels are globally set on FortiAnalyzer.
  • C. FortiAnalyzer encryption level must be equal to, or higher than, FortiGate.
  • D. SSL can send logs in real-time only.
  • E. SSL communications are auto-negotiated between the two devices.

正解: A,B

 

質問 48
Which two statements about log forwarding are true? (Choose two.)

  • A. You can use aggregation mode only with another FortiAnalyzer.
  • B. Logs are forwarded in real-time only.
  • C. The client retains a local copy of the logs after forwarding.
  • D. Forwarded logs cannot be filtered to match specific criteria.

正解: A,C

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/420493/modes
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/621804/log-forwarding

 

質問 49
FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?

  • A. To send an identical set of logs to a second logging server
  • B. To prevent log modification during backup
  • C. To upload logs to an SFTP server
  • D. To encrypt log communication between devices

正解: D

 

質問 50
Refer to the exhibit.

The exhibit shows "remoteservergroup" is an authentication server group with LDAP and RADIUS servers.
Which two statements express the significance of enabling "Match all users on remote server" when configuring a new administrator? (Choose two.)

  • A. Use remoteadmin from LDAP and RADIUS servers will be able to log in to FortiAnalyzer at anytime.
  • B. Administrator can log in to FortiAnalyzer using their credentials on remote servers LDAP and RADIUS.
  • C. It creates a wildcard administrator using LDAP and RADIUS servers.
  • D. It allows administrators to use two-factor authentication.

正解: A,B

 

質問 51
Which statement is true regarding Macros on FortiAnalyzer?

  • A. Macros are supported only on the FortiGate ADOM.
  • B. Macros are ADOM specific and each ADOM will have unique macros relevant to that ADOM.
  • C. Macros are predefined templates for reports and cannot be customized.
  • D. Macros are useful in generating excel log files automatically based on the reports settings.

正解: C

 

質問 52
An administrator has moved FortiGate A from the root ADOM to ADOM1. However, the administrator is not able to generate reports for FortiGate A in ADOM1.
What should the administrator do to solve this issue?

  • A. Use the execute sql-local rebuild-db command to rebuild all ADOM databases.
  • B. Use the execute sql-report run ADOM1 command to run a report.
  • C. Use the execute sql-local rebuild-adom ADOM1 command to rebuild the ADOM database.
  • D. Use the execute sql-local rebuild-adom root command to rebuild the ADOM database.

正解: C

 

質問 53
Refer to the exhibit.

What is the purpose of using the Chart Builder feature on FortiAnalyzer?

  • A. In Log View, this feature allows you to build a chart and chart automatically, on the top 100 log entries.
  • B. You can add charts to generated reports using this feature.
  • C. In Log View, this feature allows you to build a dataset and chart automatically, based on the filtered search results.
  • D. This feature allows you to build a chart under FortiView.

正解: C

 

質問 54
Which two statements are true regarding fabric connectors? (Choose two.)

  • A. Cloud-Out connections allow you to send real-time logs to pubic cloud accounts like Amazon S3, Azure Blob , and Google Cloud.
  • B. Configuring fabric connectors to send notification to ITSM platform upon incident creation Is more efficient than third-party information from the FortiAnalyzer API.
  • C. Storage connector service does not require a separate license to send logs to cloud platform.
  • D. Fabric connectors allow to save storage costs and improve redundancy.

正解: A,B

 

質問 55
What two things should an administrator do to view Compromised Hosts on FortiAnalyzer? (Choose two.)

  • A. Enable web filtering in firewall policies on FortiGate devices, and make sure these logs are sent to FortiAnalyzer.
  • B. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up-to-date.
  • C. Enable device detection on an interface on the FortiGate devices that are connected to the FortiAnalyzer.
  • D. Make sure all endpoints are reachable by FortiAnalyzer.

正解: A,B

 

質問 56
Why should you use an NTP server on FortiAnalyzer and all registered devices that log into FortiAnalyzer?

  • A. To properly correlate logs
  • B. To resolve host names
  • C. To use real-time forwarding
  • D. To improve DNS response times

正解: A

解説:

 

質問 57
What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log settings?

  • A. The log file rolls over and is archived.
  • B. The log file is purged from the database.
  • C. The log file is stored as a raw log and is available for analytic support.
  • D. The log file is overwritten.

正解: A

解説:
Reference:
81a4-00505692583a/FortiAnalyzer-6.0.5-Administration-Guide.pdf
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/355632/log-browse

 

質問 58
Which two statements are true regarding high availability (HA) on FortiAnalyzer? (Choose two.)

  • A. FortiAnalyzer HA supports synchronization of logs as well as some system and configuration settings.
  • B. All devices in a FortiAnalyzer HA cluster must run in the same operation mode: analyzer or collector.
  • C. FortiAnalyzer HA implementation is supported by many public cloud infrastructures such as AWS, Microsoft Azure, and Google Cloud.
  • D. FortiAnalyzer HA can function without VRRP. and VRRP is required only if you have more than two FortiAnalyzer devices in a cluster.

正解: A,B

 

質問 59
What are two of the key features of FortiAnalyzer? (Choose two.)

  • A. Centralized log repository
  • B. Virtual domains (VDOMs)
  • C. Reports
  • D. Cloud-based management

正解: A,C

 

質問 60
If you upgrade the FortiAnalyzer firmware, which report element can be affected?

  • A. Output profiles
  • B. Report scheduling
  • C. Report settings
  • D. Custom datasets

正解: B

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/upgrade-guide/669300/checking-reports

 

質問 61
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?

  • A. Antivirus logs
  • B. Web filter logs
  • C. IPS logs
  • D. Application control logs

正解: B

解説:
Reference:
FortiAnalyzer_Admin_Guide/3600_FortiView/0200_Using_FortiView/1200_Compromised_hosts_page.htm?
TocPath=FortiView%7CUsing%20FortiView%7C_____6

 

質問 62
What can the CLI command # diagnose test application oftpd 3 help you to determine?

  • A. What devices and IP addresses are connecting to FortiAnalyzer
  • B. What devices are registered and unregistered
  • C. What ADOMs are enabled and configured
  • D. What logs, if any, are reaching FortiAnalyzer

正解: A

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/cli-reference/395556/test#test_application

 

質問 63
What two things should an administrator do to view Compromised Hosts on FortiAnalyzer? (Choose two.)

  • A. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up-to-date.
  • B. Enable device detection on an interface on the FortiGate devices that are connected to the FortiAnalyzer.
  • C. Make sure all endpoints are reachable by FortiAnalyzer.
  • D. Enable web filtering in firewall policies on FortiGate devices, and make sure these logs are sent to FortiAnalyzer.

正解: A

 

質問 64
Which daemon is responsible for enforcing raw log file size?

  • A. miglogd
  • B. oftpd
  • C. logfiled
  • D. sqlplugind

正解: B

 

質問 65
Logs are being deleted from one of your ADOMs earlier that the configured setting for archiving in your data policy. What is the most likely problem?

  • A. CPU resources are too high.
  • B. Logs in that ADOM are being forwarded in real-time to another FortiAnalyzer device.
  • C. The ADOM disk quota is set too low based on log rates.
  • D. The total disk space is insufficient and you need to add other disk.

正解: C

解説:
https://help.fortinet.com/fmgr/50hlp/56/5-6-1/FMG FAZ/1100_Storage/0017_Deleted%20device%20logs.htm
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/87802/automatic-deletion

 

質問 66
Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally?
(Choose two.)

  • A. Output profile
  • B. SFTP server
  • C. Mail server
  • D. Report scheduling

正解: A,C

 

質問 67
What are offline logs on FortiAnalyzer?

  • A. Logs that are collected from offline devices after they boot up.
  • B. When you restart FortiAnalyzer. all stored logs are considered to be offline logs.
  • C. Logs that are indexed and stored in the SQL database.
  • D. Compressed logs, which are also known as archive logs, are considered to be offline logs.

正解: D

 

質問 68
View the exhibit.

Why is the total quota less than the total system storage?

  • A. The logfiled process is just estimating the total quota
  • B. Some space is reserved for system use, such as storage of compression files, upload files, and temporary report files
  • C. The oftpd process has not archived the logs yet
  • D. 3.6% of the system storage is already being used.

正解: B

解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/368682/disk-space-allocation

 

質問 69
......

合格率取得する秘訣はNSE5_FAZ-6.4認定試験エンジンPDF:https://www.jpntest.com/shiken/NSE5_FAZ-6.4-mondaishu

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡