exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 274 discussion

Actual exam question from CompTIA's SY0-601
Question #: 274
Topic #: 1
[All SY0-601 Questions]

A company was recently breached, Part of the company’s new cybersecurity strategy is to centralize the logs from all security devices. Which of the following components forwards the logs to a central source?

  • A. Log enrichment
  • B. Log aggregation
  • C. Log parser
  • D. Log collector
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Knowledge33
Highly Voted 2 years, 6 months ago
Selected Answer: D
Log collectors are pieces of software that function to gather data from multiple independent sources and feed it into a unified source such as a SIEM. Log aggregation is the process of combining logs together. This is done to allow different formats from different systems to work together.
upvoted 32 times
...
rodwave
Highly Voted 2 years, 6 months ago
Selected Answer: D
Answer: Log collector Log collectors are pieces of software that function by gathering data from multiple independent sources and feed it into a unified source such as a SIEM. Log collectors will collect the logs and then the SIEM solution will store the logs.
upvoted 10 times
...
LordJaraxxus
Most Recent 1 year, 2 months ago
Selected Answer: D
Log collectors. The SIEM collects log data from devices throughout the network and stores these logs in a searchable database
upvoted 1 times
...
Susan4041
1 year, 4 months ago
Selected Answer: B
B. Log aggregation Explanation: Log aggregation involves collecting and centralizing logs from various sources or devices into a central repository. This allows for a unified and comprehensive view of the logs, making it easier to analyze and monitor security events.
upvoted 1 times
MortG7
1 year, 1 month ago
Log aggregation DO NOT forward anything. Log Collector.
upvoted 2 times
...
...
Teleco0997
1 year, 6 months ago
Selected Answer: D
useful difference for anyone interested: Log collection: centralized collection of events from multiple sources Log aggregation: As distinct from collection, aggregation refers to normalizing data from different sources so that it is consistent and searchable ALSO the question asks for the COMPONENT, and option B is the action log aggregaTION
upvoted 2 times
...
val4
1 year, 7 months ago
why not log collector?
upvoted 1 times
...
val4
1 year, 7 months ago
collect=aggregate?
upvoted 1 times
...
ApplebeesWaiter1122
1 year, 10 months ago
Selected Answer: D
A log collector is responsible for gathering logs from various sources, such as security devices, servers, and applications, and forwarding them to a centralized location or log management system. It acts as an intermediary between the source devices and the central repository, ensuring that all relevant logs are collected and transmitted securely.
upvoted 2 times
...
SophyQueenCR82
2 years, 1 month ago
d-----Log aggregation and log collection are two separate functions in a SIEM system: Log aggregation refers to the process of collecting logs from different sources and bringing them together into a central location, where they can be easily accessed and analyzed. This can be done by using various protocols and techniques, such as Syslog, SNMP, or APIs. Log collection refers to the process of gathering logs from various sources, such as servers, network devices, and endpoints, and forwarding them to a central location for further processing and analysis. A log collector is a tool or a software component that is responsible for collecting logs from different sources and forwarding them to a central location. In short, log aggregation is the process of bringing logs together, while log collection is the process of getting logs from different sources and forwarding them to a central location.
upvoted 4 times
...
EduardosSS
2 years, 1 month ago
Selected Answer: D
key word : forwards
upvoted 2 times
...
NerdAlert
2 years, 2 months ago
Selected Answer: D
page 107 of Stewart's Sybex Sec+ study guide, literally right next to each other: Log aggregation - SIEM performs aggregation of logs, event details, and system measurements pulled from the range of devices throughout the network into the centralized management server. Log Collectors - Logs can be protected against accidental and intentional malicious change using log collectors or centralized logging services, such as SIEM and Syslog. What! So the Log Collector is the "Component" (keyword) they are looking for. The action Log Collectors do is Log Aggregation. CompTIA, when we finish this exam, we are gonna celebrate, then we are gonna fight! Over all these questions' wording!
upvoted 3 times
...
LaBooty123456
2 years, 3 months ago
Selected Answer: B
Answer: LOG AGGREGATOR What is a log aggregator? Log Aggregation Definition Log aggregation is the mechanism for capturing, normalizing, and consolidating logs from different sources to a centralized platform for correlating and analyzing the data. A collector would be something like windows event collector or a packet sniffer that forwards logs to wireshark. it takes single type of log and sends it back.
upvoted 1 times
...
mike47
2 years, 3 months ago
Selected Answer: D
Log Collector is the answer as it collects data from "many different Sources" and brings tall of it to one single place.
upvoted 2 times
...
carpathia
2 years, 6 months ago
Selected Answer: D
pg 123 Conklin's book, Log Collectors.
upvoted 2 times
...
nobnarb
2 years, 6 months ago
Selected Answer: B
Log aggregation is the mechanism for capturing, normalizing, and consolidating logs from different sources to a centralized platform for correlating and analyzing the data.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...