NSE5_FAZ-7.2 Exam Details

  • Exam Code
    :NSE5_FAZ-7.2
  • Exam Name
    :Fortinet NSE 5 - FortiAnalyzer 7.2
  • Certification
    :Fortinet Certifications
  • Vendor
    :Fortinet
  • Total Questions
    :137 Q&As
  • Last Updated
    :May 25, 2026

Fortinet NSE5_FAZ-7.2 Online Questions & Answers

  • Question 121:

    Which two actions should an administrator take to view Compromised Hosts on FortiAnalyzer? (Choose two.)

    A. Enable web filtering in firewall policies on FortiGate devices, and make sure these logs are sent to FortiAnalyzer.
    B. Make sure all endpoints are reachable by FortiAnalyzer.
    C. Enable device detection on an interface on the FortiGate devices that are connected to the FortiAnalyzer device.
    D. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up to date.

  • Question 122:

    What are offline logs on FortiAnalyzer?

    A. Compressed logs, which are also known as archive logs, are considered to be offline logs.
    B. When you restart FortiAnalyzer. all stored logs are considered to be offline logs.
    C. Logs that are indexed and stored in the SQL database.
    D. Logs that are collected from offline devices after they boot up.

  • Question 123:

    If you upgrade the FortiAnalyzer firmware, which report element can be affected?

    A. Custom datasets
    B. Report scheduling
    C. Report settings
    D. Output profiles

  • Question 124:

    Which two statements are true regarding FortiAnalyzer log forwarding? (Choose two.)

    A. Both modes, forwarding and aggregation, support encryption of logs between devices.
    B. In aggregation mode, you can forward logs to syslog and CEF servers as well.
    C. Aggregation mode stores logs and content files and uploads them to another FortiAnalyzer device at a scheduled time.
    D. Forwarding mode forwards logs in real time only to other FortiAnalyzer devices.

  • Question 125:

    Refer to the exhibit.

    Based on the partial outputs displayed, which devices can be members of a FortiAnalyzer Fabric?

    A. FortiAnalyzerl and FortiAnalyzer3
    B. FortiAnalyzer1 and FortiAnalyzer2
    C. All devices listed can be members
    D. FortiAnalyzer2 and FortiAnalyzer3

  • Question 126:

    What is required to authorize a FortiGate on FortiAnalyzer using Fabric authorization?

    A. A FortiGate ADOM
    B. The FortiGate serial number
    C. A pre-shared key
    D. Valid FortiAnalyzer credentials

  • Question 127:

    Which two statements about log forwarding are true? (Choose two.)

    A. Forwarded logs cannot be filtered to match specific criteria.
    B. Logs are forwarded in real-time only.
    C. The client retains a local copy of the logs after forwarding.
    D. You can use aggregation mode only with another FortiAnalyzer.

  • Question 128:

    How does FortiAnalyzer retrieve specific log data from the database?

    A. SQL FROM statement
    B. SQL GET statement
    C. SQL SELECT statement
    D. SQL EXTRACT statement

  • Question 129:

    In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices arenotresolving to a hostname.

    How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?

    A. Resolve IP addresses on a per-ADOM basis to reduce delay on FortiView while IPs resolve
    B. Configure# set resolve-ip enablein the system FortiView settings
    C. Configure local DNS servers on FortiAnalyzer
    D. Resolve IP addresses on FortiGate

  • Question 130:

    If you upgrade your FortiAnalyzer firmware, what report elements can be affected?

    A. Output profiles
    B. Report settings
    C. Report scheduling
    D. Custom datasets

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE5_FAZ-7.2 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.