Check Point Certified Security Administrator (CCSA) R81.10 Guide (page 120):
"SmartEvent correlates logs and detects real security threats. It provides a centralized display of aggregated data and potential attack patterns from perimeter devices, internal devices, Security Gateways, and third-party security devices."
Correct. SmartEvent correlates logs from all Check Point enforcement points, including end-points, to identify suspicious activity from the clutter. Rapid data analysis and custom event logs immediately alert administrators to anomalous behavior such as someone attempting to use the same credential in multiple geographies simultaneously.
Ref: https://www.checkpoint.com/products/smartevent/
upvoted 3 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
NineInchName
1 year, 10 months agomonkemann21
2 years, 1 month ago