QuestionQ16

Configure incidents and automation

Which two settings must be configured to enable FortiSIEM to apply tags to devices in FortiClient EMS?

Choose two
  • A FortiEMS API credentials defined on FortiSIEM
  • B Remediation script configured
  • C ZTNA tags defined on FortiSIEM
  • D FortiSIEM API credentials defined on FortiEMS
Explanation

FortiSIEM needs a configured FortiClient EMS API credential to authenticate to the EMS server, and it uses the FortiClient EMS set-tag remediation script to apply a tag to an endpoint. EMS, rather than FortiSIEM, manages Zero Trust tagging rules; FortiSIEM selects and sends the tag through the EMS API.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!