Questão 1
Questão
Unified event correlation and risk management
Collect, parse, normalize, index. and store security logs
Responda
-
FortiSIEM
-
FortiAnalyzer
-
FortiManager
Questão 2
Questão
Hosted subscription-based service
Long—term log storage and reporting
Bound to Fortinet Support account
FortiGate includes a free tier
Responda
-
FortiCloud
-
FortiSIEM
-
FortiAnalyzer
Questão 3
Questão
Long term, dedicated storage of log data
Reports
Log limit dependent on model
Responda
-
FortiAnalyzer
-
FortiSIEM
-
Syslog
Questão 4
Questão
Logging server
Central repository for networked devices
Consolidates logs
Responda
-
FortiSIEM
-
FortiAnalyzer
-
Syslog
Questão 5
Questão
Like FortiAnalyzer. can also store logs and generate reports, but has fixed amount per day that is less than equivalent size FortiAnalyzer
Primary purpose: central administrative management of networked devices
Responda
-
FortiManager
-
FortiSIEM
-
FortiCloud
Questão 6
Questão
Configure logging options: (select 4)
Responda
-
store-and-upload (CLI configuration only)
-
Real time
-
Every Minute
-
Every 5 Minutes (default)
-
store-and-download (CLI configuration only)
-
Every 10 Minutes (default)
-
Every 30 seconds
Questão 7
Questão
By default, if the FortiAnaIyzer disk is full, the oldest logs never are overwritten. However, you can configure FortiAnalyzer to stop logging.
Questão 8
Questão
Fortigate uses ___ for log transmission
Responda
-
UDP 514 or TCP 514
-
UDP 415 or TCP 415
Questão 9
Questão
If using reliable logging, you can encrypt communications using
Questão 10
Questão
The primary purpose of which device is to store and analyze logs?
Responda
-
A. FortiAnaIyzer
-
B. FortiManager
Questão 11
Questão
What protocol does FortiGate use to send encrypted logs to FortiAnalyzer?
Questão 12
Questão
If you enable reliable logging, which transport protocol will FortiGate use?
Questão 13
Questão
Hiding user names in logs:
Questão 14
Questão
What setting on your firewall policy must you enable to generate logs on traffic sent through that firewall policy?
Responda
-
A. Log Allowed Traffic
-
B. Event Logging
Questão 15
Questão
Which log type can generate a large number of logs and is therefore disabled by default?
Responda
-
A. Local Traffic Log
-
B. Event Logging
Questão 16
Questão
What effect does the CLI command set user—anonymize enable have on traffic and UTM logs?
Questão 17
Questão
True or False? Menu items that display under Log & Report depend on the incoming logs.
Questão 18
Questão
On the FortiGate GUI, log can help you find a specific log entry more efficiently.
Questão 19
Questão
With email alerts, you can trigger alert emails based on or log severity level.
Responda
-
A. event
-
B. threat weight
Questão 20
Questão
What happens when logs roll?
Questão 21
Questão
When you download logs on the GUI,...
Responda
-
A. all logs in the SQL database are downloaded.
-
B. only your current View, including any filters set, are downloaded.
Questão 22
Questão
What does the following CLI command do?
config log disk setting
set upload enable