nerdexam
CompTIA

CY0-001 · Question #65

Which log type is MOST useful for detecting DNS tunneling?

The correct answer is B. DNS query logs. DNS logs reveal abnormal query lengths and frequencies typical of tunneling.

Threat Management

Question

Which log type is MOST useful for detecting DNS tunneling?

Options

  • AFirewall allow logs
  • BDNS query logs
  • CAuthentication logs
  • DNetflow logs only

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    94% (32)
  • C
    3% (1)

Explanation

DNS logs reveal abnormal query lengths and frequencies typical of tunneling.

Topics

#DNS tunneling#DNS query logs#log analysis#threat detection

Community Discussion

No community discussion yet for this question.

Full CY0-001 Practice