exam questions

Exam 200-201 All Questions

View all questions & answers for the 200-201 exam

Exam 200-201 topic 1 question 64 discussion

Actual exam question from Cisco's 200-201
Question #: 64
Topic #: 1
[All 200-201 Questions]

Which data format is the most efficient to build a baseline of traffic seen over an extended period of time?

  • A. syslog messages
  • B. full packet capture
  • C. NetFlow
  • D. firewall event logs
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
alhamry
7 months, 2 weeks ago
The best answer is "C. NetFlow." NetFlow is a protocol developed by Cisco for collecting IP traffic information as it enters or exits an interface of a router or switch. It provides detailed information about traffic flows, including the source and destination IP addresses, ports, protocols, and the amount of data transferred. NetFlow data is a compact format that summarizes the network traffic data and is therefore an efficient way to build a baseline of traffic seen over an extended period of time. It can help detect patterns of network traffic that may be indicative of security threats or other abnormal activity. In contrast, full packet capture and firewall event logs can provide more detailed information about network traffic but can be less efficient in terms of storage and processing requirements. Syslog messages can also provide valuable information, but may not provide the level of detail needed for building a baseline of traffic over an extended period of time.
upvoted 1 times
...
drdecker100
10 months, 1 week ago
Selected Answer: C
NetFlow is a feature that provides network traffic information for network analysis, monitoring, and security. It is a protocol used to collect and record information about IP network traffic flows, including source and destination IP addresses, source and destination ports, protocol types, and other relevant information. NetFlow data can be stored and analyzed over time to gain insights into network usage and identify changes in traffic patterns. Compared to full packet capture, which captures all packets in their entirety and can quickly become very large, NetFlow data is more compact and summarizes network traffic data.
upvoted 1 times
...
MartinRB
10 months, 1 week ago
Selected Answer: C
This is a Cisco exam and NetFlow is Cisco product, they always root for theirs even if other products are better
upvoted 2 times
...
SecurityGuy
11 months ago
Selected Answer: C
Netflow - It is a protocol developed by Cisco that is used to collect and record all IP Traffic going to and from a Cisco router or switch that is Netflow enabled. - Keyword is "most efficient".
upvoted 3 times
...
hansamaru
1 year, 1 month ago
The keywords is "most efficient", must be netflow
upvoted 2 times
...
cy_analyst
1 year, 2 months ago
Selected Answer: B
B because in the official book says: the details provided by capturing packets are necessary for establishing baselines as well as security requirements and therefore is the best approach versus what limited data NetFlow can provide. Throughput-546-Omar Santos.
upvoted 1 times
...
Eng_ahmedyoussef
1 year, 2 months ago
Selected Answer: C
Netflow ==> traffic seen over an extended #period of time#
upvoted 2 times
...
halamah
2 years, 1 month ago
NET FLOW
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...