FCP_FAZ_AN-7.4 Online Practice Questions

Home / Fortinet / FCP_FAZ_AN-7.4

Latest FCP_FAZ_AN-7.4 Exam Practice Questions

The practice questions for FCP_FAZ_AN-7.4 exam was last updated on 2025-08-31 .

Viewing page 1 out of 13 pages.

Viewing questions 1 out of 68 questions.

Question#1

Which statements are true of Administrative Domains (ADOMs) in FortiAnalyzer? (Choose two.)

A. ADOMs constrain other administrator's access privileges to a subset of devices in the device list.
B. ADOMs are enabled by default.
C. Once enabled, the Device Manager, FortiView, Event Management, and Reports tab display per ADO
D. All administrators can create ADOMs--not just the admin administrator.

Question#2

As part of your analysis, you discover that a Medium severity level incident is fully remediated.
You change the incident status to Closed:Remediated.
Which statement about your update is true?

A. The incident can no longer be deleted.
B. The corresponding event will be marked as Mitigated.
C. The incident dashboard will be updated.
D. The incident severity will be lowered.

Question#3

Which two statements about local logs on FortiAnalyzer are true? (Choose two.)

A. They are not supported in FortiView.
B. You can view playbook logs for all ADOMs in the root ADO
C. Event logs show system-wide information, whereas application logs are ADOM specific.
D. Event logs are available only in the root ADO

Explanation:
FortiAnalyzer manages and stores various types of logs, including local logs, across different ADOMs (Administrative Domains). Each type of log serves specific purposes, with some logs being ADOM-specific and others providing system-wide information.
Option A - Local Logs Not Supported in FortiView:
Local logs are indeed supported in FortiView. FortiView provides visibility and analytics for different log types across the system, including local logs, allowing users to view and analyze data efficiently. Conclusion: Incorrect.
Option B - Playbook Logs for All ADOMs in the Root ADOM:
FortiAnalyzer allows centralized viewing of playbook logs across all ADOMs from the root ADOM.
This feature provides an overarching view of playbook executions, facilitating easier monitoring and
management for administrators.
Conclusion: Correct.
Option C - Event Logs vs. Application Logs:
Event Logs provide information about system-wide events, such as login attempts, configuration changes, and other critical activities that impact the overall system. These logs apply across the FortiAnalyzer instance.
Application Logs are more specific to individual ADOMs, capturing details that pertain to ADOM-specific applications and configurations.
Conclusion: Correct.
Option D - Event Logs Only in Root ADOM:
Event logs are available across different ADOMs, not exclusively in the root ADOM. They capture system-wide events, but they can be accessed within specific ADOM contexts as needed.
Conclusion: Incorrect.
Conclusion:
Correct Answer:
B. You can view playbook logs for all ADOMs in the root ADOM and C. Event logs show system-wide information, whereas application logs are ADOM specific.
These answers correctly describe the characteristics and visibility of local logs within FortiAnalyzer.
Reference: FortiAnalyzer 7.4.1 documentation on log types, ADOM configuration, and FortiView functionality.

Question#4

What two things should an administrator do to view Compromised Hosts on FortiAnalyzer? (Choose two.)

A. Enable web filtering in firewall policies on FortiGate devices, and make sure these logs are sent to FortiAnalyzer.
B. Enable device detection on an interface on the FortiGate devices that are connected to the FortiAnalyzer.
C. Subscribe FortiAnalyzer to FortiGuard to keep its local threat database up-to-date.
D. Make sure all endpoints are reachable by FortiAnalyzer.

Question#5

In Log View, you can use the Chart Builder feature to build a dataset and chart based on the filtered search results. Similarly, which feature you can use for FortiView?

A. Export to Report Chart
B. Export to PDF
C. Export to Chart Builder
D. Export to Custom Chart

Exam Code: FCP_FAZ_AN-7.4Q & A: 194 Q&AsUpdated:  2025-08-31

 Get All FCP_FAZ_AN-7.4 Q&As