Free NSE6_FSR-7.3 Exam Braindumps (page: 4)

Page 3 of 11

Which service on FortiSOAR is the playbook scheduler?

  1. cyops-torccat
  2. colcrybeatd
  3. celeryd
  4. uwsgi

Answer(s): B

Explanation:

In FortiSOAR, the service responsible for the playbook scheduling functionality is colcrybeatd. This service manages the timing and execution of scheduled playbooks, allowing for the automation of various tasks at specified intervals. It ensures that playbooks execute according to their configured schedules, which can include tasks such as data ingestion, threat detection, or incident response actions. Proper functioning of this service is essential for the reliable automation of time-dependent processes within FortiSOAR.



A security analyst has reported unauthorized access to System Configuration. You must review the user's current level of access, and then restrict their access according to your organization's requirements. As part of your auditing process, which two actions should you perform? (Choose two.)

  1. Remove the create, read, update, and delete (CRUD) permissions or roles that the user does not require.
  2. View the user's effective role permissions, and then investigate which role is providing that access.
  3. Remove all record ownership that is assigned to the user.
  4. Review the user's learn hierarchy to ensure that the appropriate relationships are configured.

Answer(s): B,D

Explanation:

To audit and restrict a user's access within FortiSOAR, particularly in response to unauthorized access reports, it's necessary to review the user's effective role permissions. This involves checking which roles grant the user access to the System Configuration module and adjusting as needed. Additionally, reviewing the user's team hierarchy ensures that the user's access aligns with the organization's policies. Misconfigurations in team relationships can sometimes inadvertently provide elevated access; hence, confirming that the team setup is correct is a critical part of the auditing process.



An administrator is issuing the following command on a node trying to join a FortiSOAR duster as a standby: csadm ha join-cluster --status active --role secondary --primary-node 10.0.1.160 The node fails to join the cluster.
What is the issue?

  1. The role value should be worker.
  2. The primary node needs to be resolvable via FQDN.
  3. The IP address should be for secondary-node Instead of primary-node.
  4. The status value should be passive.

Answer(s): D

Explanation:

When joining a FortiSOAR cluster as a standby node, the correct status value should be passive. Using active would imply that the node is trying to join as an active node, which could cause conflicts in the cluster setup. In FortiSOAR, standby nodes must be set as passive to ensure they are recognized correctly and to avoid conflicts with the primary node or other active nodes within the cluster. Therefore, setting the status to passive will resolve the issue and allow the node to join the cluster as intended.



When deleting a user account on FortiSOAR, you must enter the user ID in which file on FortiSOAR?

  1. userDelete.txt.
  2. config_yml
  3. scripts
  4. usersToDelete.txt

Answer(s): D

Explanation:

When deleting a user account in FortiSOAR, the user ID must be entered into the usersToDelete.txt file. This file is specifically used to list users that are marked for deletion. Once the user IDs are listed in this file, the system can process the deletion of these accounts as part of its user management operations. This method ensures that only specified users are deleted, as referenced in FortiSOAR's administrative controls.






Post your Comments and Discuss Fortinet NSE6_FSR-7.3 exam with other Community members:

NSE6_FSR-7.3 Discussions & Posts