nerdexam
Fortinet

FCP_FAZ_AD-7.4 · Question #15

Which two statements regarding FortiAnalyzer log forwarding modes are true? (Choose two.)

The correct answer is A. Both modes, forwarding and aggregation, support encryption of logs between devices. D. Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device. Both modes, forwarding and aggregation, support encryption of logs between devices. Both forwarding and aggregation modes can use encryption to securely transfer logs between FortiAnalyzer devices. Aggregation mode stores logs and content files and uploads them to another…

Logging and Archiving

Question

Which two statements regarding FortiAnalyzer log forwarding modes are true? (Choose two.)

Options

  • ABoth modes, forwarding and aggregation, support encryption of logs between devices.
  • BIn aggregation mode, you can forward logs to syslog and CEF servers.
  • CForwarding mode forwards logs in real time only to other FortiAnalyzer devices.
  • DAggregation mode stores logs and content files and uploads them to another FortiAnalyzer device

How the community answered

(30 responses)
  • A
    70% (21)
  • B
    10% (3)
  • C
    20% (6)

Explanation

Both modes, forwarding and aggregation, support encryption of logs between devices. Both forwarding and aggregation modes can use encryption to securely transfer logs between FortiAnalyzer devices. Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device at a scheduled time. In aggregation mode, logs are stored and then transferred to another FortiAnalyzer at a scheduled time, rather than in real-time. This mode is typically used when consolidating logs from multiple devices into a central FortiAnalyzer.

Topics

#log forwarding#aggregation mode#real-time forwarding#log encryption

Community Discussion

No community discussion yet for this question.

Full FCP_FAZ_AD-7.4 Practice