Which two ports must be open between FortiSOAR HA nodes'* (Choose two.)
A. Port 5432
B. Port 25
C. Port 6380
D. Port 9200
Explanation: In a FortiSOAR HA configuration, certain ports must be open for communication between nodes. Port 5432 is required for PostgreSQL database communication, which is essential for data replication between HA nodes. Port 9200 is used by Elasticsearch, which FortiSOAR leverages for indexing and search functions across the nodes. These ports must be accessible between nodes to ensure seamless operation and data consistency within the cluster.
Which three actions can be performed from within the war room? (Choose three)
A. View graphical representation of all records linked to an incident in the Artifacts lab
B. Change the room's status to Escalated to enforce hourly updates.
C. Investigate issues by tagging results as evidence.
D. Use the Task Manager tab to create, manage, assign, and track tasks.
E. Integrate a third-party instant messenger directly into the collaboration workspace.
Explanation: In FortiSOAR's War Room, users can perform several actions to manage incidents effectively. They can view a graphical representation of records linked to an incident in the Artifacts lab, which helps visualize connections and dependencies. Additionally, the War Room supports tagging investigation results as evidence, allowing for a structured approach to incident documentation. Users can also manage tasks via the Task Manager tab, facilitating task creation, assignment, and tracking within the incident response workflow.
Which two relationship types are configurable on FortiSOAR? (Choose two.)
A. Siblings
B. Grandparents
C. Parents
D. Relatives
What are two system-level logs that can be purged using application configuration? (Choose two.)
A. Connector logs
B. Reporting logs
C. Audit togs
D. Executed Playbook logs
Explanation: In FortiSOAR, system-level logs that can be purged include both "Audit logs" and "Executed Playbook logs." These types of logs can be configured to be purged periodically to free up storage space and ensure that unnecessary logs do not impact system performance. The application configuration allows administrators to schedule automatic purges, which can be especially useful in high-activityenvironments where log data accumulates quickly. Purging these logs helps maintain a cleaner and more efficient system.
Which product is essential to level 3 of the SOC automation model?
A. FortiAnalyzer
B. FortiAuthenticator
C. FortiManager
D. FortiSOAR
Page 1 out of 6 Pages |