ExamGecko
Question list
Search
Search

Question 45 - SPLK-3002 discussion

Report
Export

Besides creating notable events, what are the default alert actions a correlation search can execute? (Choose all that apply.)

A.
Ping a host.
Answers
A.
Ping a host.
B.
Send email.
Answers
B.
Send email.
C.
Include in RSS feed.
Answers
C.
Include in RSS feed.
D.
Run a script.
Answers
D.
Run a script.
Suggested answer: B, C, D

Explanation:

Throttling applies to any correlation search alert type, including notable events and actions (RSS feed, email, run script, and ticketing).

B, C, and D are correct answers because they are the default alert actions that a correlation search can execute besides creating notable events. You can configure a correlation search to send an email, include the results in an RSS feed, or run a custom script when the search matches a defined pattern. Ping a host is not a default alert action for correlation searches.

Reference:Configure correlation search settings in ITSI

asked 23/09/2024
Hariett Mambo
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first