Drag and Drop

Drag and Drop
Drag the technology on the left to the data type the technology provides on the right.
Select and Place:


cisco-exams

7 thoughts on “Drag and Drop

  1. I agree with Carlos answer
    carlos says:
    01/31/2018 at 2:33 AM
    tcpdump and wireshark are -> full packet capture
    web content filtering -> transaction data
    traditional stateful firewall -> connection event
    netflow -> session data

    1. disagree:
      Based on deffinitions below:
      traditional stateful firewall -> connection event
      web content filtering -> transaction specific

      Connection event
      Connection events are the records of any connection that occurs in a monitored network.

      Transaction data
      application-specific records generated from network traffic. Logs deeper connection-level information, which may span multiple packets within a connection. Must have predefined templates for protocol formatting. Common for logging HTTP header/request information, SMTP command data, etc.

  2. tcpdump -> full packet capture
    web content filtering -> transaction data
    traditional stateful firewall -> connection event
    netflow -> session data

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.