nerdexam
IBM

C1000-026 · Question #42

C1000-026 Question #42: Real Exam Question with Answer & Explanation

Sign in or unlock C1000-026 to reveal the answer and full explanation for question #42. The question stem and answer options stay visible for context.

Question

An administrator needs to extract a property from an intrusion detection system (IDS) log. Using a regular expression, the administrator wants to extract a specific part of the log showing the matching "policy ID" of the IDS. Which type of property must the administrator create?

Options

  • ACustom event property
  • BCustom flow property
  • CCustom asset property
  • DNormalized event property

Unlock C1000-026 to see the answer

You've previewed enough free C1000-026 questions. Unlock C1000-026 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full C1000-026 Practice