350-701 · Question #179
350-701 Question #179: Real Exam Question with Answer & Explanation
The correct answer is D: VPC flow logs. Stealthwatch Cloud can be deployed without software agents, relying on the native AWS Virtual Private Cloud (VPC) flow logs. https://aws.amazon.com/marketplace/pp/prodview-woiawecmdlezq
Question
An engineer needs behavioral analysis to detect malicious activity on the hosts, and is configuring the organization's public cloud to send telemetry using the cloud provider's mechanisms to a security device. Which mechanism should the engineer configure to accomplish this goal?
Options
- Amirror port
- BNetFlow
- CFlow
- DVPC flow logs
Explanation
Stealthwatch Cloud can be deployed without software agents, relying on the native AWS Virtual Private Cloud (VPC) flow logs. https://aws.amazon.com/marketplace/pp/prodview-woiawecmdlezq
Topics
Community Discussion
No community discussion yet for this question.