Splunk
SPLK-3001 · Question #85
Which of the following lookup types in Enterprise Security contains information about known hostile IP addresses?
The correct answer is B. Threat intel. https://docs.splunk.com/Documentation/ES/6.4.1/Admin/Manageinternallookups
Threat Intelligence Framework
Question
Which of the following lookup types in Enterprise Security contains information about known hostile IP addresses?
Options
- ASecurity domains.
- BThreat intel.
- CAssets.
- DDomains.
How the community answered
(27 responses)- A4% (1)
- B85% (23)
- C7% (2)
- D4% (1)
Explanation
https://docs.splunk.com/Documentation/ES/6.4.1/Admin/Manageinternallookups
Topics
#threat intelligence#hostile IP#lookup types#threat intel framework
Community Discussion
No community discussion yet for this question.