Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet NSE6_FSM_AN-7.4 Exam - Topic 1 Question 6 Discussion

How can you query the configuration management database (CMDB) in an analytics search?
A) Click Value > Select from CMDB.
B) On the CMDB tab, select an entry, and then click Create Search.
C) On the Admin tab, click CMDB Search.
D) Click Attribute > Select from CMDB.

Fortinet NSE6_FSM_AN-7.4 Exam - Topic 1 Question 6 Discussion

Actual exam question for Fortinet's NSE6_FSM_AN-7.4 exam
Question #: 6
Topic #: 1
[All NSE6_FSM_AN-7.4 Questions]

How can you query the configuration management database (CMDB) in an analytics search?

Show Suggested Answer Hide Answer
Suggested Answer: A

The correct answer is A because CMDB objects are referenced from the Value field after selecting the appropriate event attribute and operator. The FortiSIEM Study Guide gives a structured search example that references the CMDB. In that example, the attribute is Reporting IP, the operator is IN, and the value is selected from CMDB groups such as Devices: Windows and Networks: Inside Net. The guide explains that to show events reported by Windows servers within a specific network, you set the attribute and operator first, then browse the CMDB and select the relevant CMDB group value. This confirms the workflow: the CMDB reference is chosen as the value of the condition, not as the attribute itself. Option B is incorrect because the CMDB tab is not used to launch the analytics search this way. Option C is not a valid workflow. Option D is wrong because the attribute is selected from event or CMDB attribute lists, while the CMDB object or group is selected in the value field.


Contribute your Thoughts:

0/2000 characters

Currently there are no comments in this discussion, be the first to comment!


Save Cancel