exam questions

Exam NSE5_FAZ-7.0 All Questions

View all questions & answers for the NSE5_FAZ-7.0 exam

Exam NSE5_FAZ-7.0 topic 1 question 17 discussion

Actual exam question from Fortinet's NSE5_FAZ-7.0
Question #: 17
Topic #: 1
[All NSE5_FAZ-7.0 Questions]

Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)

  • A. Both modes, forwarding and aggregation, support encryption of logs between devices.
  • B. In aggregation mode, you can forward logs to syslog and CEF servers as well.
  • C. Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device at a scheduled time.
  • D. Forwarding mode forwards logs in real time only to other FortiAnalyzer devices.
Show Suggested Answer Hide Answer
Suggested Answer: AC 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
MaxTalin
11 months, 3 weeks ago
Correct A and C Aggregation mode stores logs and content files and uploads them to the FortiAnalyzer server at a scheduled time.
upvoted 1 times
...
chyeahhh
1 year, 6 months ago
can confirm this was on exam today (6/15)
upvoted 1 times
...
kavela1
1 year, 11 months ago
C&D https://docs2.fortinet.com/document/fortianalyzer/7.0.5/administration-guide/420493/modes
upvoted 1 times
...
nerostart
1 year, 12 months ago
Selected Answer: AC
Aggregation mode is only supported between two FortiAnalyer devices.
upvoted 1 times
...
lucient
2 years ago
Selected Answer: AC
Right answers A) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 148: The log communication between devices can be protected by encryption, with the desired encryption level, using the commands shown on the slide. (You need to interpret this. "Real time" and "aggregation" is about the "moment" when Fortigate sends the logs. However, no matter the moment, Fortigate will upload logs encrypted or unencrypted based on previous / differente config). C) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 147: Aggregation: Logs and content files stored and uploaded at scheduled time. Wrong answers B) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 146: Aggregation mode is only supported between two FortiAnalyzer devices. D) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 147: FortiAnalyzer can also forward logs in real-time mode to a syslog server, a Common Event Format (CEF) server, or another FortiAnalyzer.
upvoted 3 times
...
ilbartonicola
2 years ago
Selected Answer: AC
Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong forwarding mode can forward logs in real-time mode to a syslog server, cef or another fortianalyzer
upvoted 1 times
...
BaraoAzul
2 years, 1 month ago
Selected Answer: AC
Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong. Forwarding is always in real time and does not ONLY forward to other FortiAnalyzer devices. It also forwards to Syslog/CEF. D is wrong. Answer is A and C.
upvoted 4 times
...
wayne0926
2 years, 1 month ago
Correct Answer: C & D Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong. Aggregation: Logs and content filters stored and uploaded at scheduled time. Forwarding: Realtime or near realtime forwarding logs to servers FortiAnalyzer 7.0 Study Guide online page no: 146 & 147
upvoted 2 times
...
ulya_taliesin
2 years, 1 month ago
I think here is B and C
upvoted 1 times
ulya_taliesin
2 years, 1 month ago
C and D sorry
upvoted 2 times
whatz
2 years ago
D: is wrong. Answer states that FortiAnalyzer can only forward in real time to other FortiAnalyzers. The Admin guide clearly states that real time can also be sent to other destinations: "You can forward logs from a FortiAnalyzer unit to another FortiAnalyzer unit, a syslog server, or a Common Event Format (CEF) server when you use the default forwarding mode in log forwarding." (https://docs2.fortinet.com/document/fortianalyzer/7.0.5/administration-guide/621804/log-forwarding)
upvoted 1 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...