
FortinetNSE 5 - SD-WAN Core Administrator
Domain 5Objective 2
Describe FortiSASE Logs to Identify Potential Security Threats NSE5-SD-WAN-CORE-ADMINISTRATOR Practice Questions (Page 5)
Part of the Analytics domain, which accounts for 15-25% of the NSE5-SD-WAN-CORE-ADMINISTRATOR exam.
22questions here
5free pages
6concepts
15-25%of the exam
Questions 21–22
- 21
Which pattern in a FortiSASE security log is most likely to indicate a potential brute-force attack?
Select an answer first - 22
A FortiSASE administrator is investigating a potential data exfiltration incident. Reviewing the traffic logs, they see a user uploading a large file to a personal cloud storage service. The threat logs show no blocked events for this user. The event logs show a successful login from the user's usual IP address. What additional log source should the administrator correlate to determine if this is a security incident?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to NSE5-SD-WAN-CORE-ADMINISTRATOR
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Fortinet. “NSE5-SD-WAN-CORE-ADMINISTRATOR” is a trademark of its owner, used for identification only.