NSE5_FAZ-7.2 Fortinet NSE 5 - FortiAnalyzer 7.2 Questions and Answers
Which two statements are correct regarding the export and import of playbooks? (Choose two.)
Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)
What can you do on FortiAnalyzer to restrict administrative access from specific locations?
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with IPsec? (Choose two.)
Which SQL query is in the correct order to query the database in the FortiAnslyzer?
You are using RAID with a FortiAnalyzer that supports software RAID, and one of the hard disks on
FortiAnalyzer has failed.
What is the recommended method to replace the disk?
Refer to the exhibit.

Which image corresponds to the packet capture shown in the exhibit?
A)

B)

C)

D)

After generating a report, you notice the information you were expecting to see is not included in it. What are two possible reasons for this scenario? (Choose two.)
Refer to the exhibit.

The image displays the configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster.
What can you conclude from the configuration displayed?
Which item must you configure on FortiAnalyzer to email generated reports automatically?
Which two statement are true regardless initial Logs sync and Log Data Sync for Ha on FortiAnalyzer?
Which two statements are true regarding the outbreak detection service? (Choose two.)
What is required to authorize a FortiGate on FortiAnalyzer using Fabric authorization?
A playbook contains five tasks in total. An administrator runs the playbook and four out of five tasks finish successfully, but one task fails. What will be the status of the playbook after it is run?
What are two effects of enabling auto-cache in a FortiAnalyzer report? (Choose two.)
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
Refer to the exhibit.

What is the purpose of using the Chart Builder feature on FortiAnalyzer?
FortiAnalyzer reports are dropping analytical data from 15 days ago, even though the data policy setting for
analytics logs is 60 days.
What is the most likely problem?
FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?





