Fortinet NSE 7 - Advanced Analytics 6.3 認定 NSE7_ADA-6.3 試験問題:
1. Refer to the exhibit.
If the Z-score for this rule is greater than or equal to three, what does this mean?
A) The rate of firewall connection is optimum.
B) The rate of firewall connection is above the historical average value.
C) The rate of firewall connection is above the current average value.
D) The rate of firewall connection is below historical average value.
2. What is the disadvantage of automatic remediation?
A) Threat behaviors occurring during the night could take hours to respond to.
B) It can make a disruptive change to a user, block access to an application, or disconnect critical systems from the network.
C) It is equivalent to running an IPS in monitor-only mode - watches but does not block.
D) External threats or attacks detected by FortiSIEM will need user interaction to take action on an already overworked SOC team.
3. How do customers connect to a shared multi-tenant instance on FortiSOAR?
A) The customer must install a tenant node to connect to the MSSP shared multi-tenant instance.
B) The MSSP must install a Secure Message Exchange node to connect to the customer's shared multi-tenant instance.
C) The MSSP must install an agent node on the customer's network to connect to the customer's shared multi-tenant instance.
D) The MSSP must provide secure network connectivity between the FortiSOAR manager node and the customer devices.
4. Which syntax will register a collector to the supervisor?
A) phProvisionCollector --add
B) phProvisionCollector --add
C) phProvisionCollector --add
D) phProvisionCollector --add
質問と回答:
質問 # 1 正解: B | 質問 # 2 正解: B | 質問 # 3 正解: C | 質問 # 4 正解: D |