What represents the current status in the investigation of a Case?
A. Notifications
B. Cases
C. Annotations
D. Stages
By default, which TCP/IP port is used by ArcSight Command Center to communicate with a web browser client?
A. 1521
B. 9443
C. 8443
D. 443
From where are the local ArcSight Console Preference Settings accessed?
A. File Menu
B. Edit Menu
C. Tools Menu
D. View Menu
What stores information about logons, user actions, and the resulting events in the most concise way?
A. Event annotations
B. Session Lists
C. Active Lists
D. Cases
Package bundles are exported with which file extension?
A. .xml file
B. .exe file
C. .msc file
D. .arb file
Which user role is responsible for building content within ESM?
A. Administrator
B. Analyst
C. Author
D. Operator
Asset categories can be assigned to zones as well as assets. What happens to the assets that belong to a zone with a category of "Critical"?
A. All assets in the zone inherit the zone's category.
B. Nothing happens. Assets in the zone maintain their own individual category identities.
C. Assets with a category that matches the zone category are grouped into a "Critical" asset group.
D. Assets in the zone inherit the zone's category and are grouped into a "Critical" asset group.
What is stored in a database partition?
A. as much data as it can hold
B. a user-configurable number of events
C. events from a one week time period
D. events from a 24-hour time period
Which output formats are available when running a report? (Select two.)
A. XML
B. HTML
C. PDF
D. JPEG
Which command is a valid investigate command?
A. Add [Attribute=Value] to Filter
B. Create [Filter=Value]
C. Add [Value!=Condition] to Filter
D. Add to Filter [List of Related Conditions]