Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Exam PSE-Cortex All Questions
Exam PSE-Cortex All Questions

View all questions & answers for the PSE-Cortex exam

Paloalto Networks PSE-Cortex Professional PSE-Cortex Question # 45 Topic 5 Discussion

PSE-Cortex Exam Topic 5 Question 45 Discussion:
Question #: 45
Topic #: 5

Cortex XSOAR has extracted a malicious IP address involved in command-and-control traffic.

What is the best method to automatically block this IP from communicating with endpoints without requiring a configuration change on the firewall?


A.

Create a NetOps ticket requesting a configuration change to the firewall to block the IP.


B.

Add the IP address to an external dynamic list used by the firewall.


C.

Add the IP address to a threat intelligence management malicious IP list to elevate priority of future alerts.


D.

Block the IP address by creating a deny rule in the firewall.


Get Premium PSE-Cortex Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.