Home » IBM » C2150-624 » What type of information is it designed to extract?
An Administrator using IBM Security QRadar SIEM V7.2.8 is using the RegEx syntax below:
(bd{1,3}.d{1,3}.d{1,3}.d{1,3}b)
What type of information is it designed to extract?
A. An IP Address
B. GPS Coordinates
C. A Telephone Number
D. A simple integer no longer than 4 digits
Correct Answer: A
Explanation/Reference:
Sample regular expressions:
• email: (+@[A.].*V[a-z]{2,}$)
• URL: (http://[a-zA-Z0-9H]+.[a-zA-Z]{2,3}(/S’)?$)
• Domain Name: (http[s]?://(.+?)["/?:])
• Floating Point Number: ([-+]?d*.?d*$)
• Integer: ([-+]?d’$)
• IP Address: (bd{1,3}_d{1,3}.d{1,3}.d{1,3}b)
For example: To match a log that resembles: SEVERITY=43 Construct the following Regular Expression: SEVERnY=([-+]?d’$)
Reference: http://www.siem.su/docs/ibm/Administration_and_introduction/User_Guide.pdf
Download Printable PDF. VALID exam to help you PASS.
|
|