When reaching out to TAC for additional technical support related to a Security Event; what are two critical pieces of information you need to collect from the Agent? (Choose two.)
A.
The prevention archive from the alert.
B.
The unique agent id.
C.
The distribution id of the agent.
D.
The agent technical support file.
E.
A list of all the current exceptions applied to the agent.
https://docs-cortex.paloaltonetworks.com/r/Cortex-XDR/Cortex-XDR-Prevent-Administrator-Guide/Retrieve-Support-Logs-from-an-Endpoint
changing answer to A & D from reviewing this link
This should be A and D
Alert Data dump
Agent Tech support file
upvoted 1 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Chiquitabandita
3 months, 4 weeks agoChiquitabandita
4 months agodarylmaeb24
7 months, 3 weeks ago