The Brute Force Access Behavior Detected correlation search is enabled, and is generating many false positives. Assuming the input data has already been validated. How can the correlation search be made less sensitive?
A) Edit the search and modify the notable event status field to make the notable events less urgent.
B) Edit the search, look for where or xswhere statements, and after the threshold value being compared to make it less common match.
C) Edit the search, look for where or xswhere statements, and alter the threshold value being compared to make it a more common match.
D) Modify the urgency table for this correlation search and add a new severity level to make notable events from this search less urgent.
Correct Answer:
Verified
Q39: What is the first step when preparing
Q40: How is it possible to navigate to
Q41: What is the maximum recommended volume of
Q42: What should be used to map a
Q43: Which of the following actions may be
Q45: A customer site is experiencing poor performance.
Q46: When installing Enterprise Security, what should be
Q47: Which of the following actions can improve
Q48: An administrator is asked to configure an
Q49: Which of the following actions would not
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents