Want to pass your CrowdStrike Certified Falcon Administrator CCFA-200 exam in the very first attempt? Try Pass2lead! It is equally effective for both starters and IT professionals.
VCE
What is the primary purpose of using glob syntax in an exclusion?
A. To specify a Domain be excluded from detections
B. To specify exclusion patterns to easily exclude files and folders and extensions from detections
C. To specify exclusion patterns to easily add files and folders and extensions to be prevented
D. To specify a network share be excluded from detections
Which of the following is an effective Custom IOA rule pattern to kill any process attempting to access www.badguydomain.com?
A. .*badguydomain.com.*
B. \Device\HarddiskVolume2\*.exe -SingleArgument www.badguydomain.com /kill
C. badguydomain\.com.*
D. Custom IOA rules cannot be created for domains
What is the name for the unique host identifier in Falcon assigned to each sensor during sensor installation?
A. Endpoint ID (EID)
B. Agent ID (AID)
C. Security ID (SID)
D. Computer ID (CID)