CrowdStrike Certified Falcon Administrator - 2024 Version 온라인 연습
최종 업데이트 시간: 2025년08월07일
당신은 온라인 연습 문제를 통해 CrowdStrike CCFA-200b 시험지식에 대해 자신이 어떻게 알고 있는지 파악한 후 시험 참가 신청 여부를 결정할 수 있다.
시험을 100% 합격하고 시험 준비 시간을 35% 절약하기를 바라며 CCFA-200b 덤프 (최신 실제 시험 문제)를 사용 선택하여 현재 최신 393개의 시험 문제와 답을 포함하십시오.
/ 4
Question No : 1
How can you find a list of hosts that have not communicated with the CrowdStrike Cloud in the last 30 days?
정답:
Question No : 2
With Custom Alerts, it is possible to __________.
정답:
Question No : 3
Custom IOA rules are defined using which syntax?
정답:
Question No : 4
Which of the following is an effective Custom IOA rule pattern to kill any process attempting to access www.badguydomain.com?
정답:
Question No : 5
If a user wanted to install an older version of the Falcon sensor, how would they find the older installer file?
정답:
Question No : 6
What information is provided in Logan Activities under Visibility Reports?
정답:
Question No : 7
Why is it critical to have separate sensor update policies for Windows/Mac/*nix?
정답:
Question No : 8
An administrator creating an exclusion is limited to applying a rule to how many groups of hosts?
정답:
Question No : 9
Which of the following applies to Custom Blocking Prevention Policy settings?
정답:
Question No : 10
Where do you obtain the Windows sensor installer for CrowdStrike Falcon?
정답:
Question No : 11
How do you assign a Prevention policy to one or more hosts?
정답:
Question No : 12
Which is a filter within the Host setup and management > Host management page?
정답:
Question No : 13
You have been provided with a list of 100 hashes that are not malicious but your company has deemed to be inappropriate for work computers. They have asked you to ensure that they are not allowed to run in your environment. You have chosen to use Falcon to do this.
Which is the best way to accomplish this?
정답:
Question No : 14
You have an existing workflow that is triggered on a critical detection that sends an email to the escalation team. Your CISO has asked to also be notified via email with a customized message.
What is the best way to update the workflow?
정답:
Question No : 15
The Falcon sensor uses certificate pinning to defend against man-in-the-middle attacks.
Which statement is TRUE concerning Falcon sensor certificate validation?