Fortinet NSE7_ADA-6.3 Practice Test - Questions Answers, Page 2

List of questions
Question 11

In the event of a WAN link failure between the collector and the supervisor, by default, what is the maximum number of event files stored on the collector?
Question 12

What is the disadvantage of automatic remediation?
Question 13

What are the modes of Data Ingestion on FortiSOAR? (Choose three.)
Question 14

How can you empower SOC by deploying FortiSOAR? (Choose three.)
Question 15

Which of the following are two Tactics in the MITRE ATT&CK framework? (Choose two.)
Question 16

Refer to the exhibit. Click on the calculator button.
Based on the information provided in the exhibit, calculate the unused events for the next three minutes for a 520 EPS license.
Question 17

Refer to the exhibit.
An administrator wants to remediate the incident from FortiSIEM shown in the exhibit.
What option is available to the administrator?
Question 18

What happens to UEBA events when a user is off-net?
Question 19

Refer to the exhibit.
An administrator runs an analytic search for all FortiGate SSL VPN logon failures. The results are grouped by source IP, reporting IP, and user. The administrator wants to restrict the results to only those rows where the COUNT >= 3.
Which user would meet that condition?
Question 20

Refer to the exhibit.
Is the Windows agent delivering event logs correctly?
Question