What is a task of the SmartEvent Correlation Unit?
A. Add events to the events database.
B. Look for patterns according to the installed Event Policy.
C. Assign a severity level to an event
D. Display the received events.
Explanation:
One Comment on “What is a task of the SmartEvent Correlation Unit?”
PALsays:
The Correlation Unit analyzes each log entry as it enters a Log server, looking for patterns according to the installed Event Policy. The logs contain data from both Check Point products and certain third-party devices. When a threat pattern is identified, the Correlation Unit forwards what is known as an event to the SmartEvent server.
Source : https://sc1.checkpoint.com/documents/R76/CP_R76_SmartEvent_AdminGuide/17393.htm
The Correlation Unit analyzes each log entry as it enters a Log server, looking for patterns according to the installed Event Policy. The logs contain data from both Check Point products and certain third-party devices. When a threat pattern is identified, the Correlation Unit forwards what is known as an event to the SmartEvent server.
Source : https://sc1.checkpoint.com/documents/R76/CP_R76_SmartEvent_AdminGuide/17393.htm
0
0