Which of the following is TRUE regarding disabling detections for a host?
A.
The DetectionSummaryEvent continues being sent to the Streaming API for that host
B.
After disabling detections, the host will operate in Reduced Functionality Mode (RFM) until detections are enabled
C.
The detections for that host are removed from the console immediately. No new detections will display in the console going forward unless detections are enabled
D.
After disabling detections, the data for all existing detections prior to disabling detections is removed from the Event Search
This section is not available anymore. Please use the main Exam Page.CCFA Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
aN0omY
1 week, 6 days ago