New Year Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70track

Free Fortinet FCP_FAZ_AN-7.6 Practice Exam with Questions & Answers | Set: 2

Questions 11

Aplaybook contains five tasks in total. An administrator runs the playbook and four out of five tasks finish successfully, but one task fails.

What will be the status of the playbook after it is run?

Options:
A.

Attention required

B.

Upstream_failed

C.

Failed

D.

Success

Fortinet FCP_FAZ_AN-7.6 Premium Access
Questions 12

Refer to the exhibit with partial output:

Your colleagueexported a playbook and has sent it to you for review. You open the file in a text editor and observer the output as shown in the exhibit.

Which statement about the export is true?

Options:
A.

The export data type is zipped.

B.

The playbook is misconfigured.

C.

The option to include the connector was not selected.

D.

Your colleague put a password on the export.

Questions 13

You are tasked with finding logs corresponding to a suspected attack on your network.

You need to use an interface where all identified threats within timeframe are listed and organized. You also need to be able to quickly export the information to a PDF file.

Where can you go to accomplish this task?

Options:
A.

Log Browse

B.

Log View

C.

Fabric View

D.

FortiView

Questions 14

Exhibit.

FCP_FAZ_AN-7.6 Question 14

Which statement about the event displayed is correct?

Options:
A.

The risk source is isolated.

B.

The security risk was blocked or dropped.

C.

The security event risk is considered open.

D.

An incident was created from this event.

Questions 15

Which log will generate an event with the status Unhandled?

Options:
A.

An AV log with action=quarantine.

B.

An IPS log with action=pass.

C.

A WebFilter log willaction=dropped.

D.

An AppControl log with action=blocked.

Questions 16

What is the purpose of running the command diagnose sql status sqlreportd?

Options:
A.

To view a list of scheduled reports

B.

To list the current SQL processes running

C.

To display the SQL query connections and hcache status

D.

To identify the database log insertion status

Questions 17

(An analyst is using FortiAI on FortiAnalyzer to simplify certain tasks but is worried about exceeding the monthly token limit. Which query will take the fewest FortiAI tokens? (Choose one answer))

Options:
A.

Show logs for 192.168.1.10 (past week)

B.

Show all logs from the past week

C.

Can you show me all the log entries for the endpoint 192.168.1.10?

D.

Show logs for 192.168.1.10

Questions 18

Refer to Exhibit:

Client-1 is trying to access the internet for web browsing.

All FortiGate devices in the topology are part of a Security Fabric with logging to FortiAnalyzer configured. All firewall policies have logging enabled. All web filter profiles are configured to log only violations.

Which statement about the logging behavior for this specific traffic flow is true?

Options:
A.

Only FGT-B will create traffic logs.

B.

FGT-B will see the MAC address of FGT-A as the destination and notifies FGT-A to log this flow.

C.

FGT B will create traffic logs and will create web filter logs if it detects a violation.

D.

Only FGT-A will create web filter logs if it detects a violation.

Questions 19

(Which two statements about FortiAnalyzer Fabric deployments are true? (Choose two answers))

Options:
A.

Supervisors can be in high availability (HA) for redundancy purposes only.

B.

Fabric members can operate in analyzer mode only.

C.

Fabric members do not forward their logs to the supervisor.

D.

Supervisors and members must be in the same time zone.

Questions 20

Which statement about SQL SELECT queries is true?

Options:
A.

They can be used to purge log entries from the database.

B.

They must be followed immediately by a WHEREclause.

C.

They can be used to display the database schema.

D.

They are not used in macros.