
Fortinet NSE5_FAZ-7.2日本語認定試験問題集には138練習テスト問題があります
最新NSE5_FAZ-7.2日本語試験問題集には高得点で一発合格
質問 # 47
特定の場所からのみ管理者ログインを許可するように FortiAnalyzer を構成するにはどうすればよいですか?
- A. 静的ルートを使用する
- B. 信頼できるホストを使用する
- C. 安全なプロトコルを使用する
- D. 管理プロファイルを使用する
正解:B
解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/186508/trusted-hosts
質問 # 48
データ ポリシーで構成されたアーカイブ設定よりも前に、ADOM の 1 つからログが削除されています。
最も可能性の高い問題は何ですか?
- A. ログ レートに基づいて、ADOM ディスク クォータの設定が低すぎます
- B. CPU リソースが多すぎます
- C. 合計ディスク容量が不足しているため、別のディスクを追加する必要があります
- D. ADOM のログが別の FortiAnalyzer デバイスにリアルタイムで転送されます
正解:A
解説:
Reference:
20logs.htm
質問 # 49
IPsec を使用した FortiAnalyzer と FortiGate 間の通信の保護に関して正しいのはどれですか? (2つお選びください。)
- A. IPsec は、FortiAnalyzer の CLI を介してのみ有効になります。
- B. IPsec トンネル ID と事前共有キーを確立する必要があります。
- C. トンネルの FortiAnalyzer 側のみを構成する必要があります。FortiGate 側は自動ネゴシエートされます。
- D. SSL が有効になっている場合、IPsec を有効にすることはできません。
正解:A、B
解説:
Option B is correct because you must establish an IPsec tunnel ID and pre-shared key to secure the communication between FortiAnalyzer and FortiGate with IPsec12. The tunnel ID is a unique identifier for each tunnel and the pre-shared key is a secret passphrase that authenticates the peers.
Option D is correct because IPsec is only enabled through the CLI on FortiAnalyzer1. You cannot configure IPsec settings through the GUI on FortiAnalyzer.
質問 # 50
ログ転送に関する 2 つの記述のうち、正しいものはどれですか? (2つお選びください。)
- A. 集計モードは別の FortiAnalyzer でのみ使用できます。
- B. 転送されたログは、特定の条件に一致するようにフィルタリングできません。
- C. ログはリアルタイムのみで転送されます。
- D. クライアントは、転送後にログのローカル コピーを保持します。
正解:A、D
解説:
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/420493/modes
https://docs.fortinet.com/document/fortianalyzer/6.2.5/administration-guide/621804/log-forwarding
質問 # 51
set log checksum コマンドを使用する目的は次のうちどれですか? (2つお選びください。)
- A. FortiAnalyzer から SFTP サーバーへのログのアップロード中の中間者攻撃から保護するため
- B. ログの改ざんや改ざんを防止するため
- C. 同一のログのセットを 2 番目のログ サーバーに送信します。
- D. ログ通信を暗号化する場合
正解:A、B
解説:
To prevent logs from being tampered with while in storage, you can add a log checksum using the config system global command. You can configure FortiAnalyzer to record a log file hash value, timestamp, and authentication code when the log is rolled and archived and when the log is uploaded (if that feature is enabled). This can also help against man-in-the-middle only for the transmission from FortiAnalyzer to an SSH File Transfer Protocol (SFTP) server during log upload.
FortiAnalyzer_7.0_Study_Guide-Online page 149
質問 # 52
FortiAnalyzer でのログの取得に関して正しい 2 つの記述はどれですか? (2つお選びください。)
- A. FortiAnalyzer デバイスは、フェッチ サーバーまたはクライアントの役割のいずれかを実行でき、もう一方の端にある同じ FortiAnalyzer デバイスを使用して 2 つの役割を同時に実行できます。
- B. ログの取得により、管理者は、アーカイブされたログを 1 つの FortiAnalyzer デバイスから取得し、別の FortiAnalyzer デバイスに送信することで、履歴データに対してクエリとレポートを実行できます。
- C. ログの取得は、同じファームウェア バージョンを実行している 2 台の FortiAnalyzer デバイスでのみ実行できます。
- D. ログの取得により、管理者は冗長性を確保するために別の FortiAnalyzer から分析ログを取得できます。
正解:B、C
解説:
Reference:
Using FortiAnalyzer, you can enable log fetching. This allows FortiAnalyzer to fetch the archived logs of specified devices from another FortiAnalyzer, which you can then run queries or reports on for forensic analysis.
The FortiAnalyzer device that fetches logs operates as the fetch client, and the other FortiAnalyzer device that sends logs operates as the fetch server. Log fetching can happen only between two FortiAnalyzer devices, and both of them must be running the same firmware version. A FortiAnalyzer device can perform either the fetch server or client role, and it can perform two roles at the same time with different FortiAnalyzer devices at the other end.
FortiAnalyzer_7.0_Study_Guide-Online pag. 168
質問 # 53
FortiAnalyzer が FortiGate デバイスからログを収集するには、どのような構成が必要ですか? (2つお選びください。)
- A. ログ暗号化を有効にする必要があります
- B. FortiGate を FortiAnalyzer に登録する必要があります
- C. ADOM を有効にする必要があります
- D. FortiGate でリモート ログを有効にする必要があります
正解:B、D
解説:
Pg 70: "after you add and register a FortiGate device with the FortiAnalyzer unit, you must also ensure that the FortiGate device is configured to send logs to the FortiAnalyzer unit."
https://docs.fortinet.com/uploaded/files/4614/FortiAnalyzer-5.4.6-Administration%20Guide.pdf Pg 45: "ADOMs must be enabled to support the logging and reporting of NON-FORTIGATE devices, such as FortiCarrier, FortiClientEMS, FortiMail, FortiWeb, FortiCache, and FortiSandbox."
質問 # 54
作成したばかりの Playbook を実行する前に、なぜ数分間待たなければならないのでしょうか?
- A. FortiAnalyzer は、他の Playbook が実行されていないことを確認するためにその時間を必要とします。
- B. FortiAnalyzer は新しいプレイブックを解析するために時間が必要です。
- C. FortiAnalyzer では、現在の Playbook をバックアップする時間が必要です。
- D. FortiAnalyzer には、新しいプレイブックをデバッグする時間が必要です。
正解:B
質問 # 55
アウトブレイク検出サービスに関して正しい 2 つの記述はどれですか? (2つお選びください。)
- A. 追加ライセンスが必要です。
- B. 新しいイベント ハンドラーとレポートを自動的にダウンロードします。
- C. アウトブレーク アラートはルート ADOM でのみ使用できます。
- D. 新しいアラートは電子メールで受信されます。
正解:A、B
質問 # 56
FortiAnalyzer 管理者ログオンを検証するためにどのリモート認証サーバーを構成できますか? (3つお選びください)
- A. LDAP
- B. PKI
- C. TACACS+
- D. ローカル
- E. 半径
正解:A、C、E
質問 # 57
FortiAnalyzer の高可用性 (HA) に関して正しい 2 つの記述はどれですか? (2つお選びください。)
- A. FortiAnalyzer HA は、ログの同期と一部のシステム設定および構成設定をサポートします。
- B. FortiAnalyzer HA クラスター内のすべてのデバイスは、同じ動作モード (アナライザーまたはコレクター) で実行する必要があります。
- C. FortiAnalyzer HA は VRRP がなくても機能します。VRRP は、クラスター内に 3 つ以上の FortiAnalyzer デバイスがある場合にのみ必要です。
- D. FortiAnalyzer HA の実装は、AWS、Microsoft Azure、Google Cloud などの多くのパブリック クラウド インフラストラクチャによってサポートされています。
正解:A、B
解説:
Reference:
FortiAnalyzer HA implementation works only in networks where Virtual Router Redundancy Protocol (VRRP) is permitted. Therefore it may not be supported by some public cloud infrastructures.
質問 # 58
FortiAnalyzer レポートで自動キャッシュを有効にすることによる 2 つの効果は何ですか? (2つお選びください。)
- A. レポートの生成時間が短縮されます。
- B. 新しく生成されるレポートのサイズは、ディスク領域を節約するために最適化されます。
- C. FortiAnalyzer のローカル キャッシュは、生成されたレポートの保存に使用されます。
- D. 新しいログを受信すると、ハード キャッシュ データが自動的に更新されます。
正解:A、D
質問 # 59
FortiAnalyzer では、ワイルドカード管理者アカウントとは何ですか?
- A. LDAP グループのメンバーにアクセスを許可するアカウント
- B. 二要素認証が必要なアカウント
- C. FortiAuthenticator 上の任意のユーザー アカウントに対して検証するアカウント
- D. 読み取り専用権限でゲストアクセスを許可するアカウント
正解:A
解説:
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/747268/configuring-wildcard-admin-accounts
質問 # 60
FortiAnalyzer の事前定義テンプレートの目的は何ですか?
- A. 必要に応じて編集および変更できます。
- B. 事前定義されたテキスト、グラフ、マクロを含むレポート レイアウトを指定します。
- C. 模擬レポートを生成するための事前定義されたデータが含まれています
- D. 期間、デバイスの選択、スケジュールを含むレポート設定を指定します。
正解:B
解説:
Reference:
2300_Reports/0010_Predefined_reports.htm#:~:text=FortiAnalyzer%20includes%20a%20number%
20of,create%20and%2For%20build%20reports.&text=A%20template%20populates%20the%20Layout,that%
20is%20to%20be%20created.
https://help.fortinet.com/fa/faz50hlp/56/5-6-2/FMG-FAZ/2300_Reports/0010_Predefined_reports.htm
質問 # 61
レポートの自動キャッシュ設定はどのような目的に役立ちますか? (2つお選びください。)
- A. 新しいログが到着したときに hcache を自動的に更新するには
- B. レポートの生成時に診断を提供します。
- C. レポートの作成時間を短縮するため
- D. ログ挿入遅延率を軽減する場合
正解:A、C
質問 # 62
HA クラスター内のプライマリ FortiAnalyzer に障害が発生した場合、新しいプライマリはどのように選択されますか?
- A. 最初にファームウェアのバージョンを確認します。
- B. 設定されている IP アドレスが最初にチェックされます。
- C. アクティブなポート番号が最初にチェックされます。
- D. 設定された優先度が最初にチェックされます。
正解:D
解説:
In the case of a primary device failure, FortiAnalyzer HA uses the following rules to select a new primary:
* All cluster devices are assigned a priority from 80 to 120. The default priority is 100. If the primary device becomes unavailable, the device with the highest priority is selected as the new primary device. For example, a device with a priority of 110 is selected over a device with a priority of 100.
* If multiple devices have the same priority, the device whose primary IP address has the greatest value is selected as the new primary device. For example, 123.45.67.124 is selected over 123.45.67.123.
* If a new device with a higher priority or a greater value IP address joins the cluster, the new device does not replace (or pre-empt) the current primary device automatically.
FortiAnalyzer_7.0_Study_Guide-Online page 62
質問 # 63
......
無料提供中NSE5_FAZ-7.2日本語ブレーン問題集とNSE5_FAZ-7.2日本語リアル試験問題を試そう:https://www.jpntest.com/shiken/NSE5_FAZ-7.2-JPN-mondaishu