Exam FCSS_ADA_AR-6.7 Topic 2 Question 119 Discussion
Actual exam question for Fortinet's FCSS_ADA_AR-6.7 exam
Question #: 119
Topic #: 2
Question #: 119
Topic #: 2
For what type of data values does the rule engine query the profile database?
Suggested Answer: D Vote an answer
FortiSIEM's rule engine queries the profile database to analyze historical behavior and detect anomalies. The profile database stores statistical baselines, which include:
# Statistical average (mean values over time)
# Standard deviation (variability from the mean)
These values help the rule engine determine whether an observed metric (such as logins, failed attempts, network traffic, or system performance) deviates significantly from the normal pattern for the same hour of the day.
# Statistical average (mean values over time)
# Standard deviation (variability from the mean)
These values help the rule engine determine whether an observed metric (such as logins, failed attempts, network traffic, or system performance) deviates significantly from the normal pattern for the same hour of the day.
by Yvonne at May 28, 2025, 07:13 AM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).