Exam SPLK-3001 All QuestionsBrowse all questions from this exam
Question 69

Which of the following lookup types in Enterprise Security contains information about known hostile IP addresses?

    Correct Answer: B

    In Enterprise Security, the lookup type that contains information about known hostile IP addresses is Threat Intel. This lookup type is specifically designed to track and manage indicators of compromise, including hostile IP addresses, to help organizations detect and respond to security threats.

Discussion
bestoonOption: C

Correct answer is C. Assets lookup is where you can find IP and mac fields. Configure > Content Management > Type:Managed lookup > Assets

bestoon

Modifying the answer after some research. Assets lookup is the type where you can add IP addresses for your assets in your environment. Threat Intel is the type where the Known hostile IP addresses is defined. I missed the key word "known hostile ". So Correct answer should be B.