| Exam Name: | Fortinet NSE 7 - Security Operations 7.6 Architect | ||
| Exam Code: | NSE7_SOC_AR-7.6 Dumps | ||
| Vendor: | Fortinet | Certification: | Fortinet Certified Professional Security Operations |
| Questions: | 57 Q&A's | Shared By: | arla |
Refer to the exhibit.
You notice that the custom event handler you configured to detect SMTP reconnaissance activities is creating a large number of events. This is overwhelming your notification system.
How can you fix this?
While monitoring your network, you discover that one FortiGate device is sending significantly more logs to FortiAnalyzer than all of the other FortiGate devices in the topology.
Additionally, the ADOM that the FortiGate devices are registered to consistently exceeds its quota.
What are two possible solutions? (Choose two.)