200-201 · Question #147
Refer to the exhibit. Which technology generates this log?
The correct answer is D. firewall. The log details, including source/destination IPs, ports, protocols, and allow/deny actions, are characteristic of logs generated by a firewall.
Question
Refer to the exhibit. Which technology generates this log?
Exhibit
Options
- ANetFlow
- BIDS
- Cweb proxy
- Dfirewall
How the community answered
(53 responses)- A2% (1)
- B2% (1)
- C4% (2)
- D92% (49)
Why each option
The log details, including source/destination IPs, ports, protocols, and allow/deny actions, are characteristic of logs generated by a firewall.
NetFlow (or IPFIX) logs provide aggregated network session information but typically do not include explicit 'allow/deny' actions or detailed policy enforcement decisions.
An IDS (Intrusion Detection System) primarily generates alerts when suspicious activity is detected, rather than detailed logs of all network connection attempts and their allow/deny status.
A web proxy specifically logs web requests (URLs, user agents, HTTP methods), not general network connection attempts at the IP/port level, and focuses on HTTP/HTTPS traffic.
Firewalls are security devices that monitor and control network traffic based on predefined rules, and their logs characteristically record connection attempts, source/destination IP addresses, ports, protocols, timestamps, and the action taken (e.g., allowed or denied) for each connection, matching the implied log structure.
Concept tested: Firewall log identification
Source: https://learn.microsoft.com/en-us/azure/firewall/firewall-diagnostics
Topics
Community Discussion
No community discussion yet for this question.
