ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 113 - JN0-636 discussion

Report
Export

You are asked to deploy Juniper atp appliance in your network. You must ensure that incidents and alerts are sent to your SIEM.

In this scenario, which logging output format is supported?

A.
WELF
Answers
A.
WELF
B.
JSON
Answers
B.
JSON
C.
CEF
Answers
C.
CEF
D.
binay
Answers
D.
binay
Suggested answer: C

Explanation:

The Juniper ATP Appliance platform collects, inspects and analyzes advanced and stealthy web, file, and email-based threats that exploit and infiltrate client browsers, operating systems, emails and applications. Juniper ATP Appliance's detection of malicious attacks generates incident and event details that can be sent to connected SIEM platforms in CEF, LEEF or Syslog formats1. CEF (Common Event Format) is an open log management standard that improves the interoperability of securityrelated information from different vendors2. Juniper ATP Appliance supports CEF format for sending events and system audit notifications to SIEM servers. You can configure the CEF format in the Juniper ATP Appliance Central Manager WebUI Config > Notifications > SIEM Settings1. Therefore, the correct answer is C. CEF is a supported logging output format for Juniper ATP Appliance. The other options are incorrect because:

A) WELF (WebTrends Enhanced Log Format) is a proprietary log format developed by WebTrends Corporation for web analytics3. Juniper ATP Appliance does not support WELF format for SIEM integration.

B) JSON (JavaScript Object Notation) is a lightweight data-interchange format that is easy for humans and machines to read and write4. Juniper ATP Appliance supports JSON format for HTTP API results, but not for SIEM notifications1.

D) Binary is a numeric system that uses only two digits: 0 and 1. Binary is not a logging output format for Juniper ATP Appliance or any SIEM platform.

Reference:

SIEM Syslog, LEEF and CEF Logging

Common Event Format Configuration Guide

WebTrends Enhanced Log Format

JSON

asked 18/09/2024
David Powell
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first