What are the four categories of incidents?
A. Devices, users, high risk, and low riskDevice discovery information is stored in which database?
A. CMDBRefer to the exhibit.

The FortiSIEM administrator is examining events for two devices to investigate an issue However, the administrator is not getting any results from their search. Based on the selected fillers shown in the exhibit, why is the search returning no results?
A. Parenthesis are missingWhich database is used for storing anomaly data, that is calculated for different parameters, such as traffic and device resource usage running averages, and standard deviation values?
A. Profile DBRefer to the exhibit.

A FortiSIEM is continuously receiving syslog events from a FortiGate firewall The FortiSlfcM administrator is trying to search the raw event logs for the last two hours that contain the keyword tcp . However, the administrator is getting no results from the search.
Based on the selected filters shown in the exhibit, why are there no search results?
A. The keyword is case sensitive Instead of typing TCP in the Value field. the administrator should type tcp.Which item is required to register a FortiSIEM appliance license?
A. Static storageWhich protocol is almost always required for the FortiSIEM GUI discovery process?
A. SNMPAn administrator wants to search for events received from Linux and Windows agents.
Which attribute should the administrator use in search filters, to view events received from agents only.
A. External Event Receive ProtocolWhat are the minimum memory requirements for the FortiSIEM supervisor virtual appliance, when the proprietary flat file database is used?
A. 16GB RAMRefer to the exhibit.

A FortiSlEM administrator wants to group some attributes for a report, but is not able to do so successfully. As shown in the exhibit, why are some of the fields highlighted in red?
A. The Event Receive Time attribute is not available for logs.Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Fortinet exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your NSE5_FSM-5.2 exam preparations and Fortinet certification application, do not hesitate to visit our Vcedump.com to find your solutions here.