What are two required components of a rule? (Choose two.)
A Subpattern defines the specific conditions or event patterns the rule is designed to detect, and the Detection Technology specifies the type of detection logic (e.g., real-time, historical). Both are essential for a rule to function in FortiSIEM.
Currently there are no comments in this discussion, be the first to comment!