Which action will you take to enable

Cisco Security MARS combines network intelligence, context correlation, vector analysis, anomaly detection, hotspot identification, and automated mitigation capabilities. Which action will you take to enable the Cisco Security MARS appliance to ignore false-positive events by either dropping the events completely, or by just logging them to the database?

Cisco Security MARS combines network intelligence, context correlation, vector analysis, anomaly detection, hotspot identification, and automated mitigation capabilities. Which action will you take to enable the Cisco Security MARS appliance to ignore false-positive events by either dropping the events completely, or by just logging them to the database?

A.
Inactivating the rules

B.
Creating drop rules

C.
Deleting the false-positive events from the Incidents page

D.
Deleting the false-positive events from the Event Management page



Leave a Reply 0

Your email address will not be published. Required fields are marked *