Fortinet NSE5_FSM-5.2 Fortinet NSE 5 - FortiSIEM 5.2 Exam Practice Test

Page: 1 / 14
Total 42 questions
Question 1

What is a prerequisite for a FortiSIEM supervisor with a worker deployment, using the proprietary flat file database?



Answer : B


Question 2

Refer to the exhibit.

A FortiSIEM administrator wants to collect both SIEM event logs and performance and availability metrics (PAM) events from a Microsoft Windows server

Which protocol should the administrator select in the Access Protocol drop-down list so that FortiSIEM will collect both SIEM and PAM events?



Answer : A


Question 3

Which database is used for storing anomaly data, that is calculated for different parameters, such as traffic and device resource usage running averages, and standard deviation values?



Answer : A


Question 4

What operating system is FortiSIEM based on?



Answer : A


Question 5

Which two export methods are available for FortiSIEM analytics results? (Choose two.)



Answer : A, D


Question 6

Refer to the exhibit.

Three events are collected over a 10-minutc time period from two servers Server A and Server B.

Based on the settings being used for the rule subpattern. how many incidents will the servers generate?



Answer : A


Question 7

What protocol can be used to collect Windows event logs in an agentless method?



Answer : C


Page:    1 / 14   
Total 42 questions