ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 121 - CV0-004 discussion

Report
Export

A company's content management system (CMS) service runs on an laaS cluster on a public cloud. The CMS service is frequently targeted by a malicious threat actor using DDoS.

Which of the following should a cloud engineer monitor to identify attacks?

A.
Network flow logs
Answers
A.
Network flow logs
B.
Endpoint detection and response logs
Answers
B.
Endpoint detection and response logs
C.
Cloud provider event logs
Answers
C.
Cloud provider event logs
D.
Instance syslog
Answers
D.
Instance syslog
Suggested answer: A

Explanation:

To identify DDoS attacks against a CMS service, a cloud engineer should monitor network flow logs. These logs provide data about the IP traffic going to and from network interfaces in a public cloud, which is essential for detecting the increased traffic volumes typically associated with DDoS attacks.

Reference: CompTIA Cloud+ Study Guide (Exam CV0-004) - Chapter on Security in the Cloud

asked 02/10/2024
Faviola Gomez Carbajal
25 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first