Question 1

Refer to the exhibit.

The FortiSIEM administrator is examining events for two devices to investigate an issue However, the administrator is not getting any results from their search.
Based on the selected fillers shown in the exhibit, why is the search returning no results?
  • Question 2

    Which two FortiSIEM components work together to provide real-time event correlation?
  • Question 3

    Which three ports can be used to send Syslogs to FortiSIEM? (Choose three.)
  • Question 4

    What are the four categories of incidents?
  • Question 5

    Refer to the exhibit.

    A FortiSlEM administrator wants to group some attributes for a report, but is not able to do so successfully.
    As shown in the exhibit, why are some of the fields highlighted in red?