Download as pdf or txt
Download as pdf or txt
You are on page 1of 3

8/4/24, 11:12 FortiSIEM 6.

3 Sample Questions: Attempt review

 FCP - FortiSIEM 6.3 Sample Questions


Started on Monday, April 8, 2024, 7:44 AM
State Finished
Completed on Monday, April 8, 2024, 7:50 AM
Time taken 6 mins 37 secs
Points 5/10
Grade 50 out of 100

Question 1

Incorrect

0 points out of 1

What is a prerequisite for a FortiSIEM supervisor with a worker deployment, using the proprietary flat file database?

Select one:
The event database must be on NFS.
The CMDB database must be on NFS.
The event database must be on a local disk. 
The \archive mount must be on a local disk.

Question 2

Incorrect

0 points out of 1

What is the best discovery scan option for a network environment where ping is disabled on all network devices?

Select one:
Range scan
CMDB scan
Smart scan
L2 scan 

Question 3

Correct

1 points out of 1

Which statement correctly describes how FortiSIEM uses thresholds for different metrics?

Select one:
FortiSIEM uses fixed hardcoded thresholds for all performance metrics.
FortiSIEM uses global and per device thresholds for all performance metrics.
FortiSIEM uses global thresholds for all security metrics.
FortiSIEM uses per device thresholds for all security metrics.

https://training.fortinet.com/mod/quiz/review.php?attempt=18642950&cmid=324535 1/3
8/4/24, 11:12 FortiSIEM 6.3 Sample Questions: Attempt review

Question 4
Incorrect

0 points out of 1

What operating system is FortiSIEM based on?

Select one:
Microsoft Windows
RedHat 
Ubuntu
Cent OS

Question 5
Incorrect

0 points out of 1

Which is the best command to use to troubleshoot SNMP discovery issues?

Select one:
phSNMPTest

snmptest 

ssh

snmpwalk

Question 6

Correct

1 points out of 1

Which is the best command to use to determine whether or not syslog is being received from a network device?

Select one:
netcat

phDeviceTest

phSyslogRecorder

tcpdump

Question 7

Correct

1 points out of 1

Which configuration is required to register a FortiSIEM appliance license?

Select one:
Static IP address
Static hardware ID
Static storage
Static MAC address

https://training.fortinet.com/mod/quiz/review.php?attempt=18642950&cmid=324535 2/3
8/4/24, 11:12 FortiSIEM 6.3 Sample Questions: Attempt review

Question 8
Correct

1 points out of 1

What protocol can you use to collect Windows event logs in an agentless method?

Select one:
SMTP
SNMP
WMI
SSH

Question 9

Correct

1 points out of 1

Which two export methods are available for FortiSIEM analytics results? (Choose two.)

Select one or more:


CSV
HTML
PDF
PNG

Question 10
Incorrect

0 points out of 1

Which two FortiSIEM components are capable of performing discovery? (Choose two.)

Select one or more:


FortiSIEM Windows Agent
Worker 
Collector
Supervisor

https://training.fortinet.com/mod/quiz/review.php?attempt=18642950&cmid=324535 3/3

You might also like