Right answers
A) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 148: The log communication between devices can be protected by encryption, with the desired encryption level, using the commands shown on the slide. (You need to interpret this. "Real time" and "aggregation" is about the "moment" when Fortigate sends the logs. However, no matter the moment, Fortigate will upload logs encrypted or unencrypted based on previous / differente config).
C) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 147: Aggregation: Logs and content files stored and uploaded at scheduled time.
Wrong answers
B) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 146: Aggregation mode is only supported between two FortiAnalyzer devices.
D) FortiAnalyzer_7.0_Study_Guide-Online.pdf page 147: FortiAnalyzer can also forward logs in real-time mode to a syslog server, a Common Event Format (CEF) server, or another FortiAnalyzer.
Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong
forwarding mode can forward logs in real-time mode to a syslog server, cef or another fortianalyzer
Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong.
Forwarding is always in real time and does not ONLY forward to other FortiAnalyzer devices. It also forwards to Syslog/CEF. D is wrong. Answer is A and C.
Correct Answer: C & D
Aggregation mode is only supported between two FortiAnalyer devices, so B is wrong.
Aggregation: Logs and content filters stored and uploaded at scheduled time.
Forwarding: Realtime or near realtime forwarding logs to servers
FortiAnalyzer 7.0 Study Guide online page no: 146 & 147
D: is wrong. Answer states that FortiAnalyzer can only forward in real time to other FortiAnalyzers. The Admin guide clearly states that real time can also be sent to other destinations:
"You can forward logs from a FortiAnalyzer unit to another FortiAnalyzer unit, a syslog server, or a Common Event Format (CEF) server when you use the default forwarding mode in log forwarding." (https://docs2.fortinet.com/document/fortianalyzer/7.0.5/administration-guide/621804/log-forwarding)
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
MaxTalin
11 months, 3 weeks agochyeahhh
1 year, 6 months agokavela1
1 year, 11 months agonerostart
1 year, 12 months agolucient
2 years agoilbartonicola
2 years agoBaraoAzul
2 years, 1 month agowayne0926
2 years, 1 month agoulya_taliesin
2 years, 1 month agoulya_taliesin
2 years, 1 month agowhatz
2 years ago