Where are attachments to investigations stored?
Answer : A
Glass tables can display static images and text, the results of ad-hoc searches, and which of the following objects?
Answer : C
After installing Enterprise Security, the distributed configuration management tool can be used to create which app to configure indexers?
Answer : D
An administrator is asked to configure an ''Nslookup'' adaptive response action, so that it appears as a selectable option in the notable event's action menu when an analyst is working in the Incident Review dashboard. What steps would the administrator take to configure this option?
Answer : D
An administrator is provisioning one search head prior to installing ES. What are the reference minimum requirements for OS, CPU, and RAM for that machine?
Answer : C
Which of the following is a risk of using the Auto Deployment feature of Distributed Configuration Management to distribute indexes.conf?
Answer : A
How is it possible to navigate to the list of currently-enabled ES correlation searches?
Answer : C