An administrator modified a configuration setting in the Global System Notifications using the QRadar Console Admin tab.
What is the last step to apply changes?
A. Re-login to QRadar console
B. Reload Web Server
C. Restart Services
D. Deploy Changes
正解:D
質問 2:
To comply with specific regulations, an administrator has been requested to increase asset retention to 365 days.
In which QRadar section can the administrator find the asset retention settings?
A. Admin Tab / Asset Retention
B. Assets Tab / Retention settings
C. Admin Tab / System settings
D. Assets Tab / Asset Retention
正解:C
解説: (Pass4Test メンバーにのみ表示されます)
質問 3:
An administrator has been tasked to create a saved search that shows a list of multiple login failures for a single user by username. The administrator has done the following:
1. Selected Last Hour in the view option.
2. In the Add filter window, selected the search parameter Custom Rule [Indexed].
3. Selected Equals for Operator.
4. Selected Authentication for Rule Group.
What is the next step the administrator needs to perform for the Rule option?
A. Select multiple login failures from the same source
B. Select login failures followed by success to the same username
C. Select multiple login failures for a single username
D. Select multiple login failures to the same destination
正解:C
質問 4:
An administrator has added a new Event Processor to a QRadar deployment.
How many events per second (EPS) are granted from the temporary license and how many days will those EPS last?
A. 10000 EPS for a 35 day period
B. 5000 EPS for a 45 day period
C. 10000 EPS for a 45 day period
D. 5000 EPS for a 35 day period
正解:D
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
An administrator needs to upgrade their QRadar environment. The administrator has downloaded the Patchupdate File from Fixcentral and transferred this Image to the Appliance.
Which commands does the administrator need to run to start the upgrade process?
A. 1. mount -o loop -t squashfs XX_patchupdate.sfs /media/updates
2. cd /media/updates
3. /installer
B. 1. patch XX_patchupdate.sfs
C. 1. cd /media/updates
2. yum update XX_patchupdate.sfs
D. 1. cd/medial/updates
2. systemctl stop Qradar
3. Qradar.sh upgrade all
4. systemctl reboot
正解:A
Kawashima -
Pass4Testさん、試験に合格できました。本当に助けになりました。三日前に試験に受けて、無事合格でした。Pass4Testさんあざっす。