nerdexam
Fortinet

NSE4 · Question #138

A FortiAnalyzer device could use which security method to secure the transfer of log data from FortiGate devices?

The correct answer is B. IPSec. FortiAnalyzer can use IPSec to establish a secure, encrypted tunnel for transferring log data from FortiGate devices, ensuring confidentiality and integrity.

Submitted by zhang_li· Apr 18, 2026Logging and Monitoring

Question

A FortiAnalyzer device could use which security method to secure the transfer of log data from FortiGate devices?

Options

  • ASSL
  • BIPSec
  • Cdirect serial connection
  • DS/MIME

How the community answered

(52 responses)
  • A
    2% (1)
  • B
    94% (49)
  • D
    4% (2)

Why each option

FortiAnalyzer can use IPSec to establish a secure, encrypted tunnel for transferring log data from FortiGate devices, ensuring confidentiality and integrity.

ASSL

While SSL/TLS provides encryption for certain services, IPSec is the primary and recommended method for securing the dedicated log transfer tunnel between FortiGate and FortiAnalyzer.

BIPSecCorrect

IPSec VPN is a robust and widely used method to create secure, encrypted tunnels between FortiGate and FortiAnalyzer devices, protecting log data in transit.

Cdirect serial connection

A direct serial connection is used for console access or initial setup, not for continuous, high-volume, secure log data transfer over a network.

DS/MIME

S/MIME is a standard for securing email communications, not for securing log data transfer between network security devices.

Concept tested: FortiGate-FortiAnalyzer log security (IPSec)

Source: https://docs.fortinet.com/document/fortianalyzer/7.4.0/administration-guide/607248/connecting-fortianalyzer-to-your-fortinet-devices

Topics

#FortiAnalyzer#FortiGate#Log Management#IPSec#Secure Communication

Community Discussion

No community discussion yet for this question.

Full NSE4 Practice