Why should you use an NTP server on FortiAnalyzer and all registered devices that log into FortiAnalyzer?
Refer to the exhibit.
Which image corresponds to the packet capture shown in the exhibit?
A)
B)
C)
D)
Which clause is considered mandatory in SELECT statements used by the FortiAnalyzer to generate reports?
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)
Logs are being deleted from one of the ADOMs earlier than the configured setting for archiving in the data
policy.
What is the most likely problem?
Refer to the exhibit.
Laptop1 is used by several administrators to manage FortiAnalyzer. You want to configure a generic text filter that matches all login attempts to the web interface generated by any user other than "admin", and coming from Laptop1.
Which filter will achieve the desired result?
What is the best approach to handle a hard disk failure on a FortiAnalyzer that supports hardware RAID?
In Log View, you can use the Chart Builder feature to build a dataset and chart based on the filtered search results.
Similarly, which feature you can use for FortiView?
What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log
settings?
Which FortiAnalyzer feature allows you to use a proactive approach when managing your network security?
Which two statements about high availability (HA) on FortiAnalyzer are true? (Choose two.)
Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)
A play book contains five tasks in total. An administrator executed the playbook and four out of five tasks finished successfully, but one task failed. What will be the status of the playbook after its execution?
Which statements are true of Administrative Domains (ADOMs) in FortiAnalyzer? (Choose two.)
Refer to the exhibit.
The image displays the configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster.
What can you conclude from the configuration displayed?
Which two actions should an administrator take to view Compromised Hosts on FortiAnalyzer? (Choose two.)
Refer to the exhibit.
Which two statements are true regarding enabling auto-cache on FortiAnalyzer? (Choose two.)
Refer to the exhibit.
What is the purpose of configuring FortiAnalyzer with the settings displayed in the image?
Refer to the exhibit.
What is the purpose of using the Chart Builder feature on FortiAnalyzer?
Refer to the exhibits.
How many events will be added to the incident created after running this playbook?
In order for FortiAnalyzer to collect logs from a FortiGate device, what configuration is required? (Choose two.)
In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname.
How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?
A rogue administrator was accessing FortiAnalyzer without permission, and you are tasked to see what activity was performed by that rogue administrator on FortiAnalyzer.
What can you do on FortiAnalyzer to accomplish this?
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)
For proper log correlation between the logging devices and FortiAnalyzer, FortiAnalyzer and all registered
devices should:
Refer to the exhibit.
The exhibit shows the creation of a new administrator on FortiAnalyzer.
What are two effects of enabling the choice Match all users on remote server when configuring a new administrator? (Choose two.)
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate to FortiAnalyzer with any user account in a single LDAP group? (Choose two.)
When you perform a system backup, what does the backup configuration contain? (Choose two.)
FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate on FortiAnalyzer with any user account in a single LDAP group? (Choose two.)
How can you configure FortiAnalyzer to permit administrator logins from only specific locations?
Which two statement are true regardless initial Logs sync and Log Data Sync for Ha on FortiAnalyzer?