Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 350-201 Topic 2 Question 82 Discussion

Actual exam question for Cisco's 350-201 exam
Question #: 82
Topic #: 2
[All 350-201 Questions]

An analyst received multiple alerts on the SIEM console of users that are navigating to malicious URLs. The analyst needs to automate the task of receiving alerts and processing the data for further investigations. Three variables are available from the SIEM console to include in an automation script: console_ip, api_token, and reference_set_name. What must be added to this script to receive a successful HTTP response?

#!/usr/bin/python import sys import requests

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

Myra
6 months ago
I agree with Coral, console_ip and api_token are the variables needed for a successful HTTP response.
upvoted 0 times
...
Coral
6 months ago
I think we should only include console_ip and api_token in the script for automation.
upvoted 0 times
...
Felix
6 months ago
I disagree, I believe {1}, {3} is the right combination to get a successful HTTP response.
upvoted 0 times
...
Marcos
6 months ago
I think we need to add {1}, {2} to the script.
upvoted 0 times
...
Marge
7 months ago
I think D) console_ip, reference_set_name could also work. It depends on how the script is structured and what data needs to be processed.
upvoted 0 times
...
Robt
7 months ago
I see your point, Yong. Including both variables in the script makes sense for processing the data accurately.
upvoted 0 times
...
Yong
7 months ago
I disagree. I believe the answer is A) {1}, {2}. We need both variables to receive a successful HTTP response.
upvoted 0 times
...
Celeste
7 months ago
I think the answer is C) console_ip, api_token.
upvoted 0 times
...
Leslie
8 months ago
Haha, good point! Gotta have that try-except block to catch any nasty exceptions. Otherwise, you might as well just throw your laptop out the window when things go wrong.
upvoted 0 times
Hyman
8 months ago
C) console_ip, api_token
upvoted 0 times
...
Mila
8 months ago
Haha, good point! Gotta have that try-except block to catch any nasty exceptions.
upvoted 0 times
...
Barbra
8 months ago
B) {1}, {3}
upvoted 0 times
...
Nakita
8 months ago
A) {1}, {2}
upvoted 0 times
...
...
Latricia
8 months ago
Yeah, I'm with you guys on option C. But you know, if I were the analyst, I'd probably also want to include some error handling in the script, just in case something goes wrong with the request. Can't have the script crashing on me during an investigation!
upvoted 0 times
...
Noe
8 months ago
I agree, option C does seem like the right choice. We need the console_ip to specify the destination, and the api_token to authenticate our request. The other options just don't seem complete enough.
upvoted 0 times
...
Aimee
8 months ago
Hmm, this question seems a bit tricky. We need to include the correct variables to get a successful HTTP response, but the answer choices are a bit ambiguous. I'm leaning towards option C - console_ip and api_token. That seems like the most logical combination to authenticate and communicate with the SIEM console.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77