Podcast
Questions and Answers
Which systems can be used to send notifications when a match is found in the logs?
Which systems can be used to send notifications when a match is found in the logs?
- Email only
- SNMP traps only
- Fabric connector only
- All of the above (correct)
What is the purpose of setting up the back end for notification methods?
What is the purpose of setting up the back end for notification methods?
- To configure the email server (correct)
- To configure the notification settings
- To configure the event handler
- To configure the event status
What does the 'Contained' event status indicate?
What does the 'Contained' event status indicate?
- Other scenarios
- The security risk is mitigated by being blocked or dropped
- The security event risk is not mitigated or contained
- The risk source is isolated (correct)
Which event status indicates that the security event risk is not mitigated or contained?
Which event status indicates that the security event risk is not mitigated or contained?
How can event handlers send notifications to other systems?
How can event handlers send notifications to other systems?
What is the purpose of configuring the desired event status in the handler settings?
What is the purpose of configuring the desired event status in the handler settings?
Which event status indicates that the security risk is mitigated by being blocked or dropped?
Which event status indicates that the security risk is mitigated by being blocked or dropped?
What is the purpose of event notifications in FortiAnalyzer?
What is the purpose of event notifications in FortiAnalyzer?
What is the purpose of the 'Blank' event status?
What is the purpose of the 'Blank' event status?
Which of the following is NOT a possible status for events in FortiAnalyzer?
Which of the following is NOT a possible status for events in FortiAnalyzer?
Which action can be taken for an event in the Event Monitor?
Which action can be taken for an event in the Event Monitor?
What format is used to save exported event handlers?
What format is used to save exported event handlers?
How can you reuse event handlers in a different A-dom?
How can you reuse event handlers in a different A-dom?
What type of actions can be performed on an event in the Event Monitor?
What type of actions can be performed on an event in the Event Monitor?
What does acknowledging an event in the Event Monitor do?
What does acknowledging an event in the Event Monitor do?
What does the Mitigated status indicate for a security risk?
What does the Mitigated status indicate for a security risk?
What can be seen in the All Events view?
What can be seen in the All Events view?
What should be given priority when managing events?
What should be given priority when managing events?
What should be done with mitigated events?
What should be done with mitigated events?
What type of format should be chosen when exporting an event handler if you need to read the file in plaintext?
What type of format should be chosen when exporting an event handler if you need to read the file in plaintext?
Flashcards are hidden until you start studying