Which of the following are the default ports that must be configured on Splunk to allow connections from SOAR?
Which app allows a user to send Splunk Enterprise Security notable events to Phantom?
Which of the following are the steps required to complete a full backup of a Splunk Phantom deployment' Assume the commands are executed from /opt/phantom/bin and that no other backups have been made.
Within the 12A2 design methodology, which of the following most accurately describes the last step?
Which of the following actions will store a compressed, secure version of an email attachment with suspected malware for future analysis?
Why is it good playbook design to create smaller and more focused playbooks? (select all that apply)
Seventy can be set during ingestion and later changed manually. What other mechanism can change the severity or a container?
In a playbook, more than one Action block can be active at one time. What is this called?
Which of the following are the default ports that must be configured on Splunk to allow connections from Phantom?
Which of the following is a step when configuring event forwarding from Splunk to Phantom?
Under Asset Ingestion Settings, how many labels must be applied when configuring an asset?
What is the primary objective of using the I2A2 playbook design methodology?
Configuring Phantom search to use an external Splunk server provides which of the following benefits?
Which of the following expressions will output debug information to the debug window in the Visual Playbook Editor?
When working with complex data paths, which operator is used to access a sub-element inside another element?
During a second test of a playbook, a user receives an error that states: 'an empty parameters list was passed to phantom.act()." What does this indicate?
Which of the following supported approaches enables Phantom to run on a Windows server?
Which is the primary system requirement that should be increased with heavy usage of the file vault?