Which two methods can you use to restrict administrative access on FortiAnalyzer? (Choose two.)
What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log
settings?
An administrator, fortinet, can view logs and perform device management tasks, such as adding and removing registered devices. However, administrator fortinet is not able to create a mail server that can be used to send alert emails.
What can be the problem?
Which log type does the FortiAnalyzer indicators of compromise feature use to identify infected hosts?
Which two statements are true about FortiAnalyzer log forwarding modes? (Choose two.)
What is the best approach to handle a hard disk failure on a FortiAnalyzer that supports hardware RAID?
How can you configure FortiAnalyzer to permit administrator logins from only specific locations?
FortiAnalyzer uses the Optimized Fabric Transfer Protocok (OFTP) over SSL for what purpose?
If the primary FortiAnalyzer in an HA cluster fails, how is the new primary elected?
If a hard disk fails on a FortiAnalyzer that supports software RAID, what should you do to bring the
FortiAnalyzer back to functioning normally, without losing data?
Which SQL query is in the correct order to query the database in the FortiAnslyzer?
Which two methods can you use to send event notifications when an event occurs that matches a configured
event handler? (Choose two.)
An administrator has configured the following settings:
config system fortiview settings
set resolve-ip enable
end
What is the significance of executing this command?
Which two statements about high availability (HA) on FortiAnalyzer are true? (Choose two.)
Refer to the exhibit.
What is the purpose of configuring FortiAnalyzer with the settings displayed in the image?
Which two methods are the most common methods to control and restrict administrative access on FortiAnalyzer? (Choose two.)
Refer to the exhibits.
How many events will be added to the incident created after running this playbook?
Which FortiAnalyzer feature allows you to retrieve the archived logs matching a specific timeframe from
another FortiAnalyzer device?
Refer to the exhibit.
Based on the partial outputs displayed, which devices can be members of a FortiAnalyzer Fabric?
Which two statements express the advantages of grouping similar reports? (Choose two.)
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons? (Choose three)
The connection status of a new device on FortiAnalyzer is listed as Unauthorized.
What does that status mean?
Which FortiAnalyzer feature allows you to use a proactive approach when managing your network security?
Which two statements are true regarding high availability (HA) on FortiAnalyzer? (Choose two.)
Which two of the following must you configure on FortiAnalyzer to email a FortiAnalyzer report externally?
(Choose two.)
In order for FortiAnalyzer to collect logs from a FortiGate device, what configuration is required? (Choose two.)
Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)
Which two actions should an administrator take to view Compromised Hosts on FortiAnalyzer? (Choose two.)
After you have moved a registered logging device out of one ADOM and into a new ADOM, what is the
purpose of running the following CLI command?
execute sql-local rebuild-adom