XSIAM-ENGINEER · Question #22
A Cortex XDR agent is installed on an endpoint, but the agent is unable to download content updates and has not registered with the Cortex XSIAM server. An engineer troubleshoots the network…
The correct answer is B. cytool config proxy --host crtxbroker01.company.net --port 8888. The correct command is cytool config proxy --host crtxbroker01.company.net --port 8888, which configures the Cortex XDR agent to route its traffic through the Broker VM acting as a proxy. This allows the agent to register and download updates without requiring direct internet…
Question
A Cortex XDR agent is installed on an endpoint, but the agent is unable to download content updates and has not registered with the Cortex XSIAM server. An engineer troubleshoots the network connection and determines that, by design, this endpoint does not have direct internet access to the required network destinations for the Cortex XDR agent traffic. A Broker VM that has the local agent settings applet enabled with Agent Proxy configured is reachable by the endpoint. The Broker VM details are as follows:
- FQDN: crtxbroker01.company.net
- Proxy listening port: 8888
How should the engineer configure the Cortex XDR agent to use the existing Broker VM as a proxy for the agent network traffic?
Options
- Acytool proxy set "crtxbroker01. company.net: 8888"
- Bcytool config proxy --host crtxbroker01.company.net --port 8888
- Ccytool set proxy --host crtxbroker01.company.net --port 8888
- Dcytool proxy config "crtxbroker01.company.net:8888"
How the community answered
(19 responses)- A5% (1)
- B89% (17)
- C5% (1)
Explanation
The correct command is cytool config proxy --host crtxbroker01.company.net --port 8888, which configures the Cortex XDR agent to route its traffic through the Broker VM acting as a proxy. This allows the agent to register and download updates without requiring direct internet access.
Topics
Community Discussion
No community discussion yet for this question.