27 Oct Practice Test Question- Netflow Records
Preparing for your next security certification exam? After trying your hand at this practice test question, join the FREE CertMike Study Group for the CISSP, Security+, CySA+, PenTest+, CISM+ or SSCP certification to receive new questions each week. You’ll also receive free access to my customized study strategies.
Which one of the following fields would NOT be found in a NetFlow record?
A. Payload
B. Source Address
C. Destination Address
D. Timestamp
Correct Answer: A
Think of NetFlow as similar to a telephone bill. You get a record of communications, but not the actual communications themselves. So, source address, destination address, and timestamp are included in those records and are not the correct answer to this question, where we’re looking for something that is NOT included in NetFlow logs.
NetFlow records only contain summary information about network connections. They do not contain the actual content, or payload, from the connection. So, payload is the correct answer here.
No Comments