Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 200-201 Exam - Topic 2 Question 94 Discussion

An engineer must configure network systems to detect command-and-control communications by decrypting ingress and egress perimeter traffic and allowing network security devices to detect malicious outbound communications. Which technology must be used to accomplish this task?
C) digital certificates
A) static IP addresses
B) signatures
D) cipher suite

Cisco 200-201 Exam - Topic 2 Question 94 Discussion

Actual exam question for Cisco's 200-201 exam
Question #: 94
Topic #: 2
[All 200-201 Questions]

An engineer must configure network systems to detect command-and-control communications by decrypting ingress and egress perimeter traffic and allowing network security devices to detect malicious outbound communications. Which technology must be used to accomplish this task?

Show Suggested Answer Hide Answer
Suggested Answer: C

Digital certificates are essential for decrypting ingress and egress perimeter traffic, as they provide the necessary encryption keys for secure communications. By using digital certificates, network security devices can inspect the decrypted traffic to detect any malicious outbound communications that may indicate command-and-control activity.


Contribute your Thoughts:

0/2000 characters
Jade
9 months ago
Totally agree, signatures are key for identifying threats!
upvoted 0 times
...
Billi
9 months ago
Wait, can cipher suites really decrypt traffic like that? Sounds off.
upvoted 0 times
...
Peggy
10 months ago
Static IPs won't help with decryption, that's a no-go.
upvoted 0 times
...
Ben
10 months ago
I think digital certificates could work too, but not the best choice.
upvoted 0 times
...
Donte
10 months ago
Gotta go with signatures for detecting those malicious comms.
upvoted 0 times
...
Jesusita
10 months ago
I thought digital certificates were more about authentication than traffic analysis. I’m leaning towards signatures, but I’m not completely confident.
upvoted 0 times
...
Aileen
11 months ago
This seems similar to a practice question I did on network security devices. I feel like signatures might be the right answer, but I could be wrong.
upvoted 0 times
...
Ulysses
11 months ago
I remember studying about cipher suites in relation to encryption, but I can't recall if they specifically help with command-and-control detection.
upvoted 0 times
...
Dyan
11 months ago
I think this question is about detecting malicious traffic, but I'm not sure if it's about signatures or something else.
upvoted 0 times
...
Sharee
11 months ago
Okay, I've got a strategy for this. The key is to focus on the requirement to decrypt the traffic. That points to using some kind of encryption-related technology, so I'm leaning towards digital certificates or cipher suite.
upvoted 0 times
...
Irving
11 months ago
Hmm, I'm not sure about this one. Static IP addresses don't seem relevant, and I'm not confident about the other options. I'll have to review my notes on network security technologies to figure this out.
upvoted 0 times
...
Kathrine
11 months ago
This question seems straightforward. I think the answer is signatures, since that's the technology used to detect malicious communications.
upvoted 0 times
...
Margery
11 months ago
I'm a bit confused by this question. Decrypting traffic and detecting malicious communications - is that related to digital certificates or cipher suites? I'll have to think this through carefully.
upvoted 0 times
...
Curt
11 months ago
This question seems to be testing my understanding of identity and access management concepts. I'll need to carefully read through the scenario and think about which security feature it illustrates.
upvoted 0 times
...
Giuseppe
11 months ago
I think the answer is A. Business process swimlanes are a common section in the Blueprint.
upvoted 0 times
...
Herschel
2 years ago
Cipher suite, for sure. That's the way to go to peek under the hood of that encrypted traffic. Wink wink, nudge nudge.
upvoted 0 times
...
Walton
2 years ago
Hmm, I'm not sure static IP addresses would help with decrypting traffic. Gotta be one of the other options.
upvoted 0 times
Salome
2 years ago
That makes sense, it would help in detecting malicious outbound communications.
upvoted 0 times
...
Ailene
2 years ago
Yeah, they provide a way to verify the identity of the communicating parties.
upvoted 0 times
...
Yuette
2 years ago
Agreed, digital certificates are commonly used for secure communication.
upvoted 0 times
...
Selma
2 years ago
I think digital certificates would be the best option for decrypting traffic.
upvoted 0 times
...
Billye
2 years ago
D) cipher suite
upvoted 0 times
...
Salena
2 years ago
C) digital certificates
upvoted 0 times
...
Lettie
2 years ago
B) signatures
upvoted 0 times
...
Luisa
2 years ago
A) static IP addresses
upvoted 0 times
...
...
Billi
2 years ago
I think signatures could also help in detecting malicious communications.
upvoted 0 times
...
Apolonia
2 years ago
I'm not sure, but I think C) digital certificates could also be used for this task.
upvoted 0 times
...
Chantell
2 years ago
Digital certificates? Nah, that's more for authentication. I'd say cipher suite is the way to go to decrypt that traffic.
upvoted 0 times
...
Jamika
2 years ago
This seems like a classic case of network security monitoring. I'd go with option B - signatures.
upvoted 0 times
Rolland
2 years ago
I think digital certificates could also be useful in this scenario.
upvoted 0 times
...
Jesus
2 years ago
I agree, signatures are essential for detecting malicious communications.
upvoted 0 times
...
...
Mary
2 years ago
I agree with Burma, cipher suite makes sense for decrypting traffic.
upvoted 0 times
...
Burma
2 years ago
I think the answer is D) cipher suite.
upvoted 0 times
...

Save Cancel