2026年01月19日更新されたFCP_FAZ_AD-7.4トレーニング最新認定問題をゲットFortinet Network Security Expert合格目指せ [Q13-Q29]

Share

2026年01月19日更新されたFCP_FAZ_AD-7.4トレーニング最新認定問題をゲットFortinet Network Security Expert合格目指せ

認定トレーニングFCP_FAZ_AD-7.4試験問題集でテストエンジン


Fortinet FCP_FAZ_AD-7.4 認定試験の出題範囲:

トピック出題範囲
トピック 1
  • System Configuration: This section assesses the capabilities of network and security analysts in managing FortiAnalyzer systems. It includes tasks like performing initial configurations, setting up high-availability systems, and configuring RAID for storage.
トピック 2
  • Administration: This section evaluates the ability of network and security analysts to configure administrative access and manage Administrative Domains (ADOMs). It covers tasks such as setting user permissions, managing backups, and disk quotas, and ensuring secure and efficient management of administrative privileges within FortiAnalyzer systems.
トピック 3
  • Device Management: Here, Fortinet network and security analysts are evaluated on their ability to handle devices linked to FortiAnalyzer. This includes adding new devices, managing them efficiently, and troubleshooting communication issues.
トピック 4
  • Logs and Reports Management: This part of the exam measures the candidate's ability to handle log data and generate reports using FortiAnalyzer. Network and security analysts must show proficiency in managing, analyzing, and reviewing logs to ensure effective system monitoring and auditing processes are in place.

 

質問 # 13
Which statements are true regarding securing communications between FortiAnalyzer and FortiGate with SSL? (Choose two.)

  • A. FortiAnalyzer encryption level must be equal to, or higher than, FortiGate.
  • B. SSL can send logs in real-time only.
  • C. SSL is the default setting.
  • D. SSL communications are auto-negotiated between the two devices.
  • E. SSL encryption levels are globally set on FortiAnalyzer.

正解:C、E


質問 # 14
Which two parameters impact the amount of reserved disk space required by FortiAnalyzer? (Choose two.)

  • A. Disk size
  • B. RAID level
  • C. Total quota
  • D. License type

正解:B

解説:
RAID level affects how much disk space is reserved for redundancy and fault tolerance. For example, RAID 1 mirrors data, meaning you need more space for redundancy, while RAID 5 or RAID 6 reserves space for parity.
Disk size directly influences the total available and reserved space since the larger the disk, the more space may need to be reserved for system functions, logs, and other operations.
The total quota and license type do not directly impact the reserved disk space, though they do influence other aspects of capacity and functionality.


質問 # 15
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate on FortiAnalyzer with any user account in a single LDAP group? (Choose two.)

  • A. An administrator group
  • B. One or more remote LDAP servers
  • C. A local wildcard administrator account
  • D. LDAP servers IP addresses added as trusted hosts

正解:A、B

解説:
To allow non-local administrators to authenticate on FortiAnalyzer with any user account in a single LDAP group, you must configure one or more remote LDAP servers and an administrator group. First, you configure the LDAP server(s) by specifying the server name, IP, and other details such as the Common Name Identifier and Distinguished Name. Then, you add the LDAP server to a user group.
Finally, you create an administrator account that uses this user group for authentication, allowing any user from the specified LDAP group to authenticate.
Reference: FortiAnalyzer 7.2 Administrator Guide, "Configuring remote authentication for administrators using LDAP" section.


質問 # 16
A play book contains five tasks in total. An administrator executed the playbook and four out of five tasks finished successfully, but one task failed. What will be the status of the playbook after its execution?

  • A. Success
  • B. Upstream_failed
  • C. Failed
  • D. Running

正解:C

解説:
Playbook jobs that include one or more failed tasks are labeled as Failed in Playbook Monitor. FortiAnalyzer_7.0_Study Guide page No: 247 Playbook jobs that include one or more failed tasks are labeled as Failed in Playbook Monitor. A failed status, however, does not mean that all tasks failed. Some individual actions may have been completed successfully.


質問 # 17
What are offline logs on FortiAnalyzer?

  • A. Any logs collected from offline devices after they boot up
  • B. Logs that are indexed and stored in the SQL database
  • C. Compressed logs, also known as archive logs
  • D. Real-time logs that are not yet indexed

正解:C

解説:
Archive logs: When a real-time log file in Archive has been completely inserted, that file is compressed and considered to be offline." https://docs.fortinet.com/document/fortianalyzer/7.4.3/administration-guide/381919
/logs


質問 # 18
An administrator has moved a FortiGate device from the root ADOM to ADOM1.
Which two statements are true regarding logs? (Choose two.)

  • A. Analytics logs will be moved to ADOM1 from the root ADOM after you rebuild the database.
  • B. Analytics logs will be moved to ADOM1 from the root ADOM automatically.
  • C. Archived logs will be moved to ADOM1 from the root ADOM automatically.
  • D. Logs will be present in both ADOMs immediately after the move.

正解:A、B

解説:
When a device is moved from one ADOM to another, analytics logs can be moved automatically, but you may need to rebuild the database for the logs to be fully transferred and usable in the new ADOM. Archived logs, however, do not move automatically between ADOMs.


質問 # 19
What are analytics logs on FortiAnalyzer?

  • A. Logs that are saved in the active log file with the. log extension.
  • B. Logs that are compressed and saved to a log file with the, gz extension.
  • C. Logs that are indexed and stored in the SQL database.
  • D. Logs that are rolled over when the log file reaches a specific size.

正解:C

解説:
Analytics logs on FortiAnalyzer are those that are indexed and stored in the SQL database.
These logs are considered online and provide real-time access for analysis and reporting.
https://help.fortinet.com/fa/faz50hlp/56/5-6-2/FortiAnalyzer_Admin_Guide/0300_Key_concepts
/0600_Log_Storage/0400_Archive_analytics_logs.htm


質問 # 20
Which statement describes online logs on FortiAnalyzer?

  • A. Logs that reached a specific size and were rolled over
  • B. Logs that can be used to create reports
  • C. Logs that can be viewed using Log Browse
  • D. Logs that are saved to disk, compressed, and available in FortiView

正解:B


質問 # 21
Refer to the exhibit.

Which statement is correct regarding the event displayed?

  • A. An incident was created from this event.
  • B. The security risk was blocked or dropped.
  • C. The security event risk is considered open.
  • D. The risk source is isolated.

正解:C

解説:
Events in FortiAnalyzer will be in one of four statuses. The current status will determine if more actions need to be taken by the security team or not.
The possible statuses are:
Unhandled: The security event risk is not mitigated or contained, so it is considered open.
Contained: The risk source is isolated.
Mitigated: The security risk is mitigated by being blocked or dropped.
(Blank): Other scenarios.
FortiAnalyzer_7.0_Study_Guide-Online pag. 206


質問 # 22
What remote authentication servers can you configure to validate your FortiAnalyzer administrator logons?
(Choose three)

  • A. Local
  • B. PKI
  • C. RADIUS
  • D. TACACS+
  • E. LDAP

正解:C、D、E


質問 # 23
Refer to the exhibit.

What is the purpose of using the Chart Builder feature on FortiAnalyzer?

  • A. You can add charts to generated reports using this feature.
  • B. In Log View, this feature allows you to build a dataset and chart automatically, based on the filtered search results.
  • C. In Log View, this feature allows you to build a chart and chart automatically, on the top 100 log entries.
  • D. This feature allows you to build a chart under FortiView.

正解:B


質問 # 24
After generating a report, you notice the information you were expecting to see is not included in it. What are two possible reasons for this scenario? (Choose two.)

  • A. The logfiled service has not indexed all the expected logs.
  • B. The time frame selected in the report is wrong.
  • C. You enabled auto-cache with extended log filtering.
  • D. The logs were overwritten by the data retention policy.

正解:A、D


質問 # 25
Which two statements are true regarding the log synchronization states for HA on FortiAnalyzer?
(Choose two.)

  • A. By default. Log Data Sync is disabled on all backup devices.
  • B. With Initial Logs Sync, when you add a unit to an HA cluster, the primary device synchronizes its logs with the backup device.
  • C. Log Data Sync provides real-time log synchronization to all backup devices.
  • D. When Log Data Sync is turned on, the backup device reboots and then rebuilds the log database with the synchronized logs.

正解:B、C

解説:
Log Data Sync provides real-time log synchronization to all backup devices. - Log Data Sync in FortiAnalyzer HA setups is designed to ensure that all backup devices in the cluster are kept up-to-date with real-time log data from the primary device. This synchronization helps maintain log integrity and availability even in the event of a primary device failure.
With Initial Logs Sync, when you add a unit to an HA cluster, the primary device synchronizes its logs with the backup device. - When a new unit is added to an HA cluster, Initial Logs Sync is crucial to ensure that the new unit starts with a complete set of logs. This process involves the primary device synchronizing its existing logs to the newly added backup unit, which ensures consistency across the cluster.


質問 # 26
Refer to the exhibit.

The image displays "he configuration of a FortiAnalyzer the administrator wants to join to an existing HA cluster.
What can you conclude from the configuration displayed?

  • A. This FortiAnalyzer will trigger a failover after losing communication with its peers for 10 seconds.
  • B. After joining to the cluster, this FortiAnalyzer will keep an updated log database.
  • C. This FortiAnalyzer will join to the existing HA cluster as the primary.
  • D. This FortiAnalyzer is configured to receive logs in its port1.

正解:B

解説:
Operation Mode: The mode is set to "High Availability" which indicates that this FortiAnalyzer is intended to be part of an HA cluster.
Preferred Role: The "Primary" role is selected, meaning this device is configured to act as the primary unit in the HA cluster. This is a crucial setting as it determines the device's behavior and responsibilities within the cluster.
Cluster Virtual IP: A specific IP address (192.168.101.222) is assigned to be used by devices in the network to communicate with the cluster. This Virtual IP will be shared between the units in the cluster.
Cluster Settings: These include configurations for heartbeat interval, failover threshold, and priority which are crucial for maintaining cluster health and managing failover scenarios.
Given these points, the correct conclusion from the options provided is:
C: This FortiAnalyzer will join the existing HA cluster as the primary.


質問 # 27
Which two settings must you configure on FortiAnalyzer to allow non-local administrators to authenticate on FortiAnalyzer with any user account in a single LDAP group? (Choose two.)

  • A. An administrator group
  • B. One or more remote LDAP servers
  • C. LDAP servers IP addresses added as trusted hosts
  • D. A local wildcard administrator account

正解:B、D

解説:
A wildcard administrator account allows any user from the specified LDAP group to authenticate, and the remote LDAP servers must be configured to validate those user credentials. The combination of these settings enables authentication via LDAP for non-local users.


質問 # 28
When you perform a system backup, what does the backup configuration contain? (Choose two.)

  • A. System information
  • B. Generated reports
  • C. Device list
  • D. Authorized devices logs

正解:A、C

解説:
https://help.fortinet.com/fa/cli-olh/5-6-5/Content/Document/1400_execute/backup.htm


質問 # 29
......

合格を確定するガイドでFCP_FAZ_AD-7.4試験準備しよう:https://www.goshiken.com/Fortinet/FCP_FAZ_AD-7.4-mondaishu.html

Fortinet Network Security Expert FCP_FAZ_AD-7.4無料最新のリアル試験問題と回答:https://drive.google.com/open?id=1VZ6as2kn1iUUHMy6SRCAT-ooknmIzy7W