AB. Explanation: A network profile should include some important elements, such as the following:
Total throughput – the amount of data passing from a given source to a given destination in a given period of time
Session duration – the time between the establishment of a data flow and its termination
Ports used – a list of TCP or UDP processes that are available to accept data
Critical asset address space – the IP addresses or the logical location of essential systems or data
Network Profiling - Total throughput, session duration, ports used, critical address space. As forest says its AB. Taken from cybersecurity course by IT Pro.tv
I Agree. Also from cert guide by Omar S. Chapter 10 : Network Profiling
"These are methods used to capture network-based data that can reveal how systems are functioning on the network. The areas of focus for this section are determining throughput, ports used, session duration, and address space."
A-D: The two elements used to profile a network are total throughput and listening ports.
Total throughput is the amount of data sent or received over a network in a given period of time. This can be used to identify unusual traffic patterns, such as a sudden increase in traffic to a particular server.
Listening ports are the ports on a device that are open and listening for incoming connections. It can be used to identify the applications running on a device and the services available.
Network Profiling =
1)Session duration: This is the time between the establishment of a data flow and its termination.
2)Total throughput: This is the amount of data passing from a given source to a given destination in a given period of time.
3)Ports used: This is a list of TCP or UDP processes that are available to accept data.
4)Critical asset address space: These are the IP addresses or the logical location of essential systems or data.
From the book CCNA Cybersecurity Operations Companion Guide
A & B are correct,
based on page 688, section NETWORK PROFILING of: Cisco CyberOps Associate CBROPS 200-201 Official Cert Guide by Omar Santos
NETWORK PROFILING
This section focuses on network profiling concepts.
These are methods used to capture network-based data that can reveal how systems are functioning on the network. The areas of focus for this section are determining throughput, ports used, session duration, and address space.
The correct answers are A, B.
Profiling data are data that system has gathered, these data helps for incident response and to detect incident
Network profiling = throughput, sessions duration, port used, Critical Asset Address Space
Host profiling = Listening ports, logged in accounts, running processes, running tasks,applications
This section is not available anymore. Please use the main Exam Page.200-201 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
forest111
Highly Voted 4 years, 4 months agoslimer
6 months, 2 weeks agobren_
4 years, 4 months agobren_
4 years, 4 months agobren_
4 years, 4 months agoFriendly
4 years, 2 months agoDunky
Highly Voted 4 years agobeowolf
3 years, 12 months agofejec
3 years, 7 months agoFaio
Most Recent 1 year, 8 months agoslippery31
1 year, 11 months agoMaliDong
2 years, 5 months agoEng_ahmedyoussef
2 years, 7 months agocy_analyst
2 years, 7 months agostudyelprof
2 years, 7 months agoaddpro7
3 years agoRolandoFiee
3 years, 3 months agoUzumaki_Aliyy
3 years, 4 months agohalamah
3 years, 5 months agohalamah
3 years, 5 months ago[Removed]
3 years, 7 months agoanonymous1966
3 years, 7 months agoanonymous1966
3 years, 8 months agoanonymous1966
3 years, 8 months ago