CompTIA
CY0-001 · Question #65
Which log type is MOST useful for detecting DNS tunneling?
The correct answer is B. DNS query logs. DNS logs reveal abnormal query lengths and frequencies typical of tunneling.
Threat Management
Question
Which log type is MOST useful for detecting DNS tunneling?
Options
- AFirewall allow logs
- BDNS query logs
- CAuthentication logs
- DNetflow logs only
How the community answered
(34 responses)- A3% (1)
- B94% (32)
- C3% (1)
Explanation
DNS logs reveal abnormal query lengths and frequencies typical of tunneling.
Topics
#DNS tunneling#DNS query logs#log analysis#threat detection
Community Discussion
No community discussion yet for this question.