CCCS-203B · Question #184
What is the primary action required to enable runtime protection for containers in a cloud environment using CrowdStrike Falcon?
The correct answer is A. Enable the runtime protection policy within the Falcon console and assign it to a host group. Option A: Runtime protection is controlled through policies in the Falcon console. Assigning a properly configured policy to a host group activates runtime protection for the designated hosts and their containers. Option B: Falcon's container runtime protection is host-based…
Question
What is the primary action required to enable runtime protection for containers in a cloud environment using CrowdStrike Falcon?
Options
- AEnable the runtime protection policy within the Falcon console and assign it to a host group.
- BInstall the Falcon sensor inside each running container.
- CUpdate the container runtime (e.g., Docker or containerd) to the latest version.
- DDeploy the Falcon Container Sensor to the host running the container.
How the community answered
(47 responses)- A87% (41)
- B9% (4)
- C2% (1)
- D2% (1)
Explanation
Option A: Runtime protection is controlled through policies in the Falcon console. Assigning a properly configured policy to a host group activates runtime protection for the designated hosts and their containers. Option B: Falcon's container runtime protection is host-based and does not involve installing sensors inside individual containers. Option C: Keeping the container runtime updated is a best practice for security but does not directly enable CrowdStrike's runtime protection features. Option D: While deploying the Falcon Container Sensor is essential for container security, it is not the step that specifically enables runtime protection. This action prepares the environment but does not activate runtime protection policies.
Topics
Community Discussion
No community discussion yet for this question.