Which of the following alert actions can be transmitted to a user as notification that a Cisco Security MARS rule has fired, and that an incident has been logged?
Which action enables the Cisco Security MARS appliance to ignore false-positive events by either dropping the events completely, or by just logging them to the database?
What is a benefit of using the dollar variable (as in $TARGET01) when creating queries in Cisco Security MARS?