exam questions

Exam 210-250 All Questions

View all questions & answers for the 210-250 exam

Exam 210-250 topic 1 question 9 discussion

Actual exam question from Cisco's 210-250
Question #: 9
Topic #: 1
[All 210-250 Questions]

Which security monitoring data type is associated with application server logs?

  • A. alert data
  • B. statistical data
  • C. session data
  • D. transaction data
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
kvetak
5 years, 5 months ago
Neither response seems correct based on course slides: * Alert Data consists of messages generated by IPSs or IDSs in response to traffic that violates a rule or matches the signature of a known exploit. * Transaction data consists of the messages that are exchanged during network sessions. Can be viewed in packet capture transcripts.  * Session Data is a record of a conversation between two network endpoints. Includes a session ID, the amount of data transferred by source and destination, and information related to the duration of the session. Bro is a network security monitoring tool. * Statistical Data is about network traffic. Created through the analysis of other forms of network data. Allow conclusions to be made that describe or predict network behavior. Normal network behavior can be compared to current traffic to detect anomalies.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago