An unhandled error has occurred.
Reload
X
UIZFORGE
Exams
Pricing
Career Paths
Resources
EN
Login
Sign Up
1
/ 5
Intermediate
Which scenario would most likely require a log source extension on top of a vendor DSM?
The log source is using TLS syslog instead of UDP
The retention bucket is changing from 90 to 180 days
The DSM parses most fields but the vendor added a new event type whose source IP lives in a custom field that the DSM does not map
The Event Collector is in a different VLAN than the source
AI Tutor
Stuck? Get a hint