200-201 · Question #259
Drag and Drop Question Drag and drop the data source from the left onto the data type on the right. Answer:
The correct answer is NetFlow; IPS; Wireshark; server log. The correct arrangement maps each data source to its corresponding data type: NetFlow provides full packet capture session/flow data (metadata about network conversations), IPS generates alert-based data (intrusion detection/prevention events), Wireshark captures full packet…
Question
Drag and Drop Question Drag and drop the data source from the left onto the data type on the right. Answer:
Exhibit
Answer Area
Drag items
Correct arrangement
- NetFlow
- IPS
- Wireshark
- server log
Explanation
The correct arrangement maps each data source to its corresponding data type: NetFlow provides full packet capture session/flow data (metadata about network conversations), IPS generates alert-based data (intrusion detection/prevention events), Wireshark captures full packet data (raw packet-level detail for deep inspection), and server logs provide log-based data (application/system event records). Each tool is purpose-built for its respective data type - NetFlow for summarized flow metadata, IPS for signature-based alerts, Wireshark for raw packet capture, and server logs for application-level event tracking.
Topics
Community Discussion
No community discussion yet for this question.
