Question 1
Question
Unified event correlation and risk management
Collect, parse, normalize, index. and store security logs
Answer
-
FortiSIEM
-
FortiAnalyzer
-
FortiManager
Question 2
Question
Hosted subscription-based service
Long—term log storage and reporting
Bound to Fortinet Support account
FortiGate includes a free tier
Answer
-
FortiCloud
-
FortiSIEM
-
FortiAnalyzer
Question 3
Question
Long term, dedicated storage of log data
Reports
Log limit dependent on model
Answer
-
FortiAnalyzer
-
FortiSIEM
-
Syslog
Question 4
Question
Logging server
Central repository for networked devices
Consolidates logs
Answer
-
FortiSIEM
-
FortiAnalyzer
-
Syslog
Question 5
Question
Like FortiAnalyzer. can also store logs and generate reports, but has fixed amount per day that is less than equivalent size FortiAnalyzer
Primary purpose: central administrative management of networked devices
Answer
-
FortiManager
-
FortiSIEM
-
FortiCloud
Question 6
Question
Configure logging options: (select 4)
Answer
-
store-and-upload (CLI configuration only)
-
Real time
-
Every Minute
-
Every 5 Minutes (default)
-
store-and-download (CLI configuration only)
-
Every 10 Minutes (default)
-
Every 30 seconds
Question 7
Question
By default, if the FortiAnaIyzer disk is full, the oldest logs never are overwritten. However, you can configure FortiAnalyzer to stop logging.
Question 8
Question
Fortigate uses ___ for log transmission
Answer
-
UDP 514 or TCP 514
-
UDP 415 or TCP 415
Question 9
Question
If using reliable logging, you can encrypt communications using
Question 10
Question
The primary purpose of which device is to store and analyze logs?
Answer
-
A. FortiAnaIyzer
-
B. FortiManager
Question 11
Question
What protocol does FortiGate use to send encrypted logs to FortiAnalyzer?
Question 12
Question
If you enable reliable logging, which transport protocol will FortiGate use?
Question 13
Question
Hiding user names in logs:
Question 14
Question
What setting on your firewall policy must you enable to generate logs on traffic sent through that firewall policy?
Answer
-
A. Log Allowed Traffic
-
B. Event Logging
Question 15
Question
Which log type can generate a large number of logs and is therefore disabled by default?
Answer
-
A. Local Traffic Log
-
B. Event Logging
Question 16
Question
What effect does the CLI command set user—anonymize enable have on traffic and UTM logs?
Question 17
Question
True or False? Menu items that display under Log & Report depend on the incoming logs.
Question 18
Question
On the FortiGate GUI, log can help you find a specific log entry more efficiently.
Question 19
Question
With email alerts, you can trigger alert emails based on or log severity level.
Answer
-
A. event
-
B. threat weight
Question 20
Question
What happens when logs roll?
Question 21
Question
When you download logs on the GUI,...
Answer
-
A. all logs in the SQL database are downloaded.
-
B. only your current View, including any filters set, are downloaded.
Question 22
Question
What does the following CLI command do?
config log disk setting
set upload enable