Summer Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

XDR-Engineer Exam Dumps - Palo Alto Networks XDR Engineer

Go to page:
Question # 4

A new parsing rule is created, and during testing and verification, all the logs for which field data is to be parsed out are missing. All the other logs from this data source appear as expected. What may be the cause of this behavior?

A.

The Broker VM is offline

B.

The parsing rule corrupted the database

C.

The filter stage is dropping the logs

D.

The XDR Collector is dropping the logs

Full Access
Question # 5

What are two possible actions that can be triggered by a dashboard drilldown? (Choose two.)

A.

Navigate to a different dashboard

B.

Initiate automated response actions

C.

Link to an XQL query

D.

Send alerts to console users

Full Access
Question # 6

A cloud administrator reports high network bandwidth costs attributed to Cortex XDR operations and asks for bandwidth usage to be optimized without compromising agent functionality. Which two techniques should the engineer implement? (Choose two.)

A.

Configure P2P download sources for agent upgrades and content updates

B.

Enable minor content version updates

C.

Enable agent content management bandwidth control

D.

Deploy a Broker VM and activate the local agent settings applet

Full Access
Question # 7

During deployment of Cortex XDR for Linux Agents, the security engineering team is asked to implement memory monitoring for agent health monitoring. Which agent service should be monitored to fulfill this request?

A.

dypdng

B.

clad

C.

pyxd

D.

pmd

Full Access
Question # 8

How can a customer ingest additional events from a Windows DHCP server into Cortex XDR with minimal configuration?

A.

Activate Windows Event Collector (WEC)

B.

Install the XDR Collector

C.

Enable HTTP collector integration

D.

Install the Cortex XDR agent

Full Access
Go to page: