Cisco 200-201 Practice Test - Questions Answers, Page 20
List of questions
Question 191
What is a difference between signature-based and behavior-based detection?
Question 192
Refer to the exhibit.
An engineer received an event log file to review. Which technology generated the log?
Question 193
What is the difference between inline traffic interrogation and traffic mirroring?
Question 194
Refer to the exhibit.
A company employee is connecting to mail google.com from an endpoint device. The website is loaded but with an error. What is occurring?
Question 195
An analyst is using the SIEM platform and must extract a custom property from a Cisco device and capture the phrase, 'File: Clean.' Which regex must the analyst import?
Question 196
What describes the concept of data consistently and readily being accessible for legitimate users?
Question 197
Refer to the exhibit.
Which frame numbers contain a file that is extractable via TCP stream within Wireshark?
Question 198
Refer to the exhibit.
Which stakeholders must be involved when a company workstation is compromised?
Question 199
How does an attack surface differ from an attack vector?
Question 200
How does TOR alter data content during transit?
Question