Question 31

If an incident's status is Cleared, what does this mean?
  • Question 32

    What are the four categories of incidents?
  • Question 33

    What does the Frequency field determine on a rule?
  • Question 34

    Refer to the exhibit.

    A FortiSIEM administrator wants to collect both SIEM event logs and performance and availability metrics (PAM) events from a Microsoft Windows server Which protocol should the administrator select in the Access Protocol drop-down list so that FortiSIEM will collect both SIEM and PAM events?
  • Question 35

    In FortiSIEM enterprise licensing mode, it the link between the collector and data center FortiSlEM cluster is down, what happens?