An OT administrator is defining an incident notification policy using FortiSIEM and would like to configure the system with a notification policy. If an incident occurs, the administrator would like to be able to intervene and block an IP address or disable a user in Active Directory from FortiSIEM.
Which step must the administrator take to achieve this task?
azjlmpang
7 months, 2 weeks agoali_red
1 year, 1 month agoSpippolo
1 year, 3 months ago303User
1 year, 5 months agopochmendoza
1 year, 6 months agoBen1224
1 year, 7 months ago