FCP_FAZ_AD-7.4 Exam Questions
184 real FCP_FAZ_AD-7.4 exam questions with expert-verified answers and explanations. Page 3 of 4.
- Question #102
Which two statements are true regarding fabric connectors? (Choose two.)
- Question #103
Which two statements about a FortiAnalyzer Fabric are true? (Choose two.)
- Question #104
Refer to the exhibit. What does the data point at 12:20 indicate?
- Question #105
What is the purpose of predefined report templates on FortiAnalyzer?
- Question #106
What is the purpose of output variables?
- Question #107
Refer to the exhibit. What does the data point at 21:20 indicate?
- Question #108
Which two statements are correct regarding the export and import of playbooks? (Choose two.)
- Question #109
Which SQL query is in the correct order to query the database in the FortiAnslyzer?
- Question #110
Refer to the exhibits. How many events will be added to the incident created after running this playbook?
- Question #111
You are looking for a playbook that was exported by a junior administrator. You perform a search and find the files listed below. Which file will perform an import operation?
- Question #112
Refer to the exhibit. Which statement is correct regarding the event displayed?
- Question #113
What is required to authorize a FortiGate on FortiAnalyzer using Fabric authorization?
- Question #114
Refer to the exhibit. Which FortiAnalyzer tool can refer to the Cyber Kill Chain stages and allows you to identify which Fortinet products can protect you against new vulnerabiliti...
- Question #115
Refer to the exhibit. Laptopt is used by several administrators to manage FortiAnalyzer. You want to configure a generic text filter that matches all login attempts to the web inte...
- Question #116
If the primary FortiAnalyzer in an HA cluster fails, how is the new primary elected?
- Question #117
What are two advantages of grouping similar reports? (Choose two.)
- Question #118
Which statement is true about sending notifications with incident updates?
- Question #119
Which statement correctly describes the management extensions available on FortiAnalyzer?
- Question #120
A play book contains five tasks in total. An administrator executed the playbook and four out of five tasks finished successfully, but one task failed. What will be the status of t...
- Question #121
When working with FortiAnalyzer reports, what is the purpose of a dataset?
- Question #122
Refer to the exhibit. The image displays the configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster. What can you conclude from the configuratio...
- Question #123
You crested a playbook on FortiAnalyzer that uses a FortiOS connector. When configuring the FortiGate side, which type of trigger must be used so that the actions in an automation...
- Question #124
What must you consider when using log fetching? (Choose two.)
- Question #125
Which two statements are true regarding the outbreak detection service? (Choose two.)
- Question #126
What are two effects of enabling auto-cache in a FortiAnalyzer report? (Choose two.)
- Question #127
Why must you wait for several minutes before you run a playbook that you just created?
- Question #128
Which statement describes online logs on FortiAnalyzer?
- Question #129
How can you attach a report to an incident?
- Question #130
Which item must you configure on FortiAnalyzer to email generated reports automatically?
- Question #131
Which statement about the FortiSOAR management extension is correct?
- Question #132
Why run the command diagnose sql status sqlplugind?
- Question #133
What are two benefits of using fabric connectors? (Choose two.)
- Question #134
Which log will generate an event with the status Contained?
- Question #135
Refer to the exhibit. Laptop1 is used by several administrators to manage FortiAnalyzer. You want to configure a generic text filter that matches all login attempts to the web inte...
- Question #136
After generating a report, you notice the information you were expecting to see is not included in it. What are two possible reasons for this scenario? (Choose two.)
- Question #137
What is the purpose of using prefilters when configuring event handlers?
- Question #138
Which statement describes a dataset in FortiAnalyzer?
- Question #139
A playbook contains five tasks in total. An administrator runs the playbook and four out of five tasks finish successfully, but one task fails. What will be the status of the playb...
- Question #140
What is the purpose of trigger variables?
- Question #141
Which statement about sending notifications with incident updates is true?
- Question #142
Refer to the exhibit. What is the purpose of using the Chart Builder feature on FortiAnalyzer?
- Question #143
What happens when the IOC breach detection engine on FortiAnalyzer finds web logs that match a blocklisted IP address?
- Question #144
Refer to the exhibit. The image shows the details of a playbook after it finished running. What is the status of the playbook?
- Question #145
View the exhibit: What does the 1000MB maximum for disk utilization refer to?
- Question #146
You've moved a registered logging device out of one ADOM and into a new ADOM. What happens when you rebuild the new ADOM database?
- Question #147
What happens when a log file saved on FortiAnalyzer disks reaches the size specified in the device log settings?
- Question #148
Refer to the exhibit. Which statement is correct regarding the event displayed?
- Question #149
Which FortiAnalyzer feature allows you to retrieve the archived logs matching a specific timeframe from another FortiAnalyzer device?
- Question #150
What is the recommended method of expanding disk space on a FortiAnalyzer VM?
- Question #151
How are logs forwarded when FortiAnalyzer is using aggregation mode?