Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam C1000-162 All Questions
Exam C1000-162 All Questions

View all questions & answers for the C1000-162 exam

IBM Security Systems C1000-162 Question # 41 Topic 5 Discussion

C1000-162 Exam Topic 5 Question 41 Discussion:
Question #: 41
Topic #: 5

After analyzing an active offense where many source systems were observed connecting to a specific destination via local-to-local LDAP traffic, an ^lyst discovered that the targeted system is a legitimate LDAP server within the organization.

x avoid confusion in future analyses, how can this type of traffic to the target system be flagged as expected and be excluded from further offense ation?


A.

Add the IP address of the LDAP server to the BB:Host Definition: LDAP Servers building block.


B.

Remove the IP address of the source systems from the Global False Positive Events building block.


C.

Add the IP address of the source systems to the All Default Positive building block.


D.

Remove the IP address of the LDAP server from the network hierarchy.


Get Premium C1000-162 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.