Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

Note! Following NSE5_FSM-5.2 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is NSE5_FSM-6.3

NSE5_FSM-5.2 Exam Dumps - Fortinet NSE 5 - FortiSIEM 5.2

Question # 4

A FortiSIEM administrator wants to restrict a network administrator to running searches for only firewall devices. Under role management, which option does the FortiSIEM administrator need to configure to achieve this scenario?

A.

CMDB Report Conditions

B.

Data Conditions

C.

UI Access

Full Access
Question # 5

Refer to the exhibit.

How was the FortiGate device discovered by FortiSIEM?

A.

Through GUI log discovery

B.

Through syslog discovery

C.

Using the pull events method

D.

Through auto log discovery

Full Access
Question # 6

Refer to the exhibit.

A FortiSlEM administrator wants to group some attributes for a report, but is not able to do so successfully.

As shown in the exhibit, why are some of the fields highlighted in red?

A.

The Event Receive Time attribute is not available for logs.

B.

The attribute COUNT(Matched event) is an invalid expression.

C.

Unique attributes cannot be grouped.

D.

No RAW Event Log attribute is available for devices.

Full Access