nerdexam
Fortinet

NSE5_FSM-6.3 · Question #35

An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?

The correct answer is D. WMI method will collect security, application, and system events logs. WMI Method: Windows Management Instrumentation (WMI) is a set of specifications from Microsoft for consolidating the management of devices and applications in a network. Log Collection: WMI is used to collect various types of logs from Windows devices. Security Logs: Contains…

Device and collector management

Question

An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?

Options

  • AWMI method will collect only traffic and IIS logs.
  • BWMI method will collect only DNS logs.
  • CWMI method will collect only DHCP logs.
  • DWMI method will collect security, application, and system events logs.

How the community answered

(50 responses)
  • A
    6% (3)
  • B
    20% (10)
  • C
    4% (2)
  • D
    70% (35)

Explanation

WMI Method: Windows Management Instrumentation (WMI) is a set of specifications from Microsoft for consolidating the management of devices and applications in a network. Log Collection: WMI is used to collect various types of logs from Windows devices. Security Logs: Contains records of security-related events such as login attempts and resource Application Logs: Contains logs generated by applications running on the system. System Logs: Contains logs related to the operating system and its components. Comprehensive Data Collection: By using WMI, FortiSIEM can gather a wide range of event logs that are crucial for monitoring and analyzing the security and performance of Windows devices.

Topics

#WMI credentials#Windows device discovery#event logs#device monitoring

Community Discussion

No community discussion yet for this question.

Full NSE5_FSM-6.3 Practice