NSE5_FSM-6.3 · Question #35
An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?
The correct answer is D. WMI method will collect security, application, and system events logs. WMI Method: Windows Management Instrumentation (WMI) is a set of specifications from Microsoft for consolidating the management of devices and applications in a network. Log Collection: WMI is used to collect various types of logs from Windows devices. Security Logs: Contains…
Question
An administrator is using SNMP and WMI credentials to discover a Windows device. How will the WMI method handle this?
Options
- AWMI method will collect only traffic and IIS logs.
- BWMI method will collect only DNS logs.
- CWMI method will collect only DHCP logs.
- DWMI method will collect security, application, and system events logs.
How the community answered
(50 responses)- A6% (3)
- B20% (10)
- C4% (2)
- D70% (35)
Explanation
WMI Method: Windows Management Instrumentation (WMI) is a set of specifications from Microsoft for consolidating the management of devices and applications in a network. Log Collection: WMI is used to collect various types of logs from Windows devices. Security Logs: Contains records of security-related events such as login attempts and resource Application Logs: Contains logs generated by applications running on the system. System Logs: Contains logs related to the operating system and its components. Comprehensive Data Collection: By using WMI, FortiSIEM can gather a wide range of event logs that are crucial for monitoring and analyzing the security and performance of Windows devices.
Topics
Community Discussion
No community discussion yet for this question.