ExamGecko
Question list
Search
Search

Question 361 - PCNSA discussion

Report
Export

An administrator should filter NGFW traffic logs by which attribute column to determine if the entry is for the start or end of the session?

A.
Receive Time
Answers
A.
Receive Time
B.
Type
Answers
B.
Type
C.
Destination
Answers
C.
Destination
D.
Source
Answers
D.
Source
Suggested answer: B

Explanation:

The Type attribute column in the NGFW traffic logs indicates whether the log entry is for the start or end of the session. The possible values are START, END, DROP, DENY, and INVALID. The START value means that the log entry is for the start of the session, and the END value means that the log entry is for the end of the session.The other values indicate that the session was terminated by the firewall for various reasons12.Reference:Traffic Log Fields,Session Log Best Practices

asked 23/09/2024
Carlos Eduardo Araujo Fonseca
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first