To create a custom feed, initiate the action by selecting which top-level module?

To create a custom feed, initiate the action by selecting which top-level module?A . InvestigateB . AdminC . MonitorD . ConfigureView AnswerAnswer: D

January 12, 2021No CommentsREAD MORE +

In RSA NetWitness. viewing text or image data associated with a session is accessed through a

In RSA NetWitness. viewing text or image data associated with a session is accessed through aA . packet level drillB . meta value viewC . session reconstruction viewD . decoder analysis viewView AnswerAnswer: C

January 12, 2021No CommentsREAD MORE +

Parsers can be enabled on which of the following?

Parsers can be enabled on which of the following?A . Packet Decoder onlyB . Packet Decoder and Log DecoderC . Packet Decoder and Log Decoder and ConcentratorD . Packet Decoder and Log Decoder and Concentrator and BrokerView AnswerAnswer: B

January 12, 2021No CommentsREAD MORE +

When storage on the core devices fills to capacity, what happens?

When storage on the core devices fills to capacity, what happens?A . new traffic cannot be ingestedB . the decoder leverages capacity in the concentrator, and collection continuesC . the decoder leverages capacity in the broker, and collection continuesD . the oldest stored sessions are deleted and collection continuesView AnswerAnswer:...

January 12, 2021No CommentsREAD MORE +

What are three important things to configure on a Log Decoder'?

What are three important things to configure on a Log Decoder'?A . Capture Auto-Start. Service Parsers, Capture InterfaceB . Capture Settings. Aggregation Auto-Start. Profile settingsC . Investigation Settings. Capture Settings. Service ParsersD . Aggregation Auto-Start. Capture Settings. Investigation SettingsView AnswerAnswer: A

January 11, 2021No CommentsREAD MORE +

Which RSA NetWitness component captures and parses data off the wire?

Which RSA NetWitness component captures and parses data off the wire?A . Packet DecoderB . BrokerC . ConcentratorD . Log DecoderView AnswerAnswer: A

January 10, 2021No CommentsREAD MORE +

What are the two basic operations you might perform to make use of a Live resource?

What are the two basic operations you might perform to make use of a Live resource?A . move and copyB . download and enableC . save and applyD . subscribe and deployView AnswerAnswer: D

January 5, 2021No CommentsREAD MORE +

You can configure replication for log data by setting up a remote collector and creating

You can configure replication for log data by setting up a remote collector and creatingA . a Virtual Log CollectorB . a lockboxC . host groupsD . destination groupsView AnswerAnswer: D

January 5, 2021No CommentsREAD MORE +

To report on matches in the NWDB against a series of fixed values, include which feature in your report definition?

To report on matches in the NWDB against a series of fixed values, include which feature in your report definition?A . An Application RuleB . A ListC . An Enrichment SourceD . A SubscriptionView AnswerAnswer: B

January 4, 2021No CommentsREAD MORE +

Administrators can use the Profile feature to limit views with (Choose three)

Administrators can use the Profile feature to limit views with (Choose three)A . Meta groupsB . Custom column groupsC . Assigned pre-queriesD . Automated role assignmentE . Data privacy policiesF . List viewView AnswerAnswer: A,B,C

January 4, 2021No CommentsREAD MORE +