CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 10: NSE7_SOC_AR-7.6: Fortinet NSE 7 - Security Operations 7.6 Architect

Refer to the exhibit. You are reviewing the Triggering Events page for a FortiSIEM incident. You want to remove the Reporting IP column because you have only one firewall in the topology. How do you accomplish this?

Nội dung câu hỏi

Refer to the exhibit. You are reviewing the Triggering Events page for a FortiSIEM incident. You want to remove the Reporting IP column because you have only one firewall in the topology. How do you accomplish this?

Minh họa câu hỏi

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Customize the display columns for this incident. — đáp án hiện tại
  2. B. Remove the Reporting IP attribute from the raw logs using parsing rules.
  3. C. Disable correlation for the Reporting IP field in the rule subpattern.
  4. D. Clear the Reporting IP field from the Triggered Attributes section when you configure the Incident Action.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề