An OT administrator is defining an incident notification policy using FortiSIEM and would like to configure the system with a notification policy. If an incident occurs, the administrator would like to be able to intervene and block an IP address or disable a user in Active Directory from FortiSIEM.
Which step must the administrator take to achieve this task?
azjlmpang
9 months, 3 weeks agoali_red
1 year, 3 months agoSpippolo
1 year, 5 months ago303User
1 year, 8 months agopochmendoza
1 year, 9 months agoBen1224
1 year, 9 months ago