Question 1

Refer to the exhibit.

If events are grouped by Event Receive Time, Reporting IP, and User attributes in FortiSIEM, how many results will be displayed?
  • Question 2

    Refer to the exhibit.

    A FortiSIEM is continuously receiving syslog events from a FortiGate firewall The FortiSlfcM administrator is trying to search the raw event logs for the last two hours that contain the keyword tcp . However, the administrator is getting no results from the search.
    Based on the selected filters shown in the exhibit, why are there no search results?
  • Question 3

    Which protocol is almost always required for the FortiSIEM GUI discovery process?
  • Question 4

    Refer to the exhibit.

    A FortiSIEM is continuously receiving syslog events from a FortiGate firewall The FortiSlfcM administrator is trying to search the raw event logs for the last two hours that contain the keyword tcp . However, the administrator is getting no results from the search.
    Based on the selected filters shown in the exhibit, why are there no search results?
  • Question 5

    Refer to the exhibit.

    A FortiSIEM administrator wants to collect both SIEM event logs and performance and availability metrics (PAM) events from a Microsoft Windows server Which protocol should the administrator select in the Access Protocol drop-down list so that FortiSIEM will collect both SIEM and PAM events?