Question 66

Which data model populated the panels on the Risk Analysis dashboard?
  • Question 67

    Which columns in the Assets lookup are used to identify an asset in an event?
  • Question 68

    "10.22.63.159", "websvr4", and "00:26:08:18: CF:1D" would be matched against what in ES?
  • Question 69

    An administrator is asked to configure an "Nslookup" adaptive response action, so that it appears as a selectable option in the notable event's action menu when an analyst is working in the Incident Review dashboard. What steps would the administrator take to configure this option?
  • Question 70

    Which component normalizes events?