Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Fortinet logo

FortinetNSE 5 - SD-WAN Core Administrator

Domain 5Objective 2

Describe FortiSASE Logs to Identify Potential Security Threats NSE5-SD-WAN-CORE-ADMINISTRATOR Practice Questions (Page 5)

Part of the Analytics domain, which accounts for 15-25% of the NSE5-SD-WAN-CORE-ADMINISTRATOR exam.

22questions here
5free pages
6concepts
15-25%of the exam

Questions 21–22

  1. 21foundation · easy

    Which pattern in a FortiSASE security log is most likely to indicate a potential brute-force attack?

    Select an answer first
  2. 22expert · hard

    A FortiSASE administrator is investigating a potential data exfiltration incident. Reviewing the traffic logs, they see a user uploading a large file to a personal cloud storage service. The threat logs show no blocked events for this user. The event logs show a successful login from the user's usual IP address. What additional log source should the administrator correlate to determine if this is a security incident?

    Select an answer first
Finished these 2 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE5-SD-WAN-CORE-ADMINISTRATOR” is a trademark of its owner, used for identification only.