Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 200-201 Exam - Topic 3 Question 92 Discussion

What is obtained using NetFlow?
A) session data
B) application logs
C) network downtime report
D) full packet capture

Cisco 200-201 Exam - Topic 3 Question 92 Discussion

Actual exam question for Cisco's 200-201 exam
Question #: 92
Topic #: 3
[All 200-201 Questions]

What is obtained using NetFlow?

Show Suggested Answer Hide Answer
Suggested Answer: A

TCP injection is an attack where the attacker sends crafted packets into an existing TCP session. These packets appear to be part of the session.

The presence of many SYN packets with the same sequence number, source, and destination IP but different payloads indicates that an attacker might be injecting packets into the session.

This method can be used to disrupt communication, inject malicious commands, or manipulate the data being transmitted.


Understanding TCP Injection Attacks

Analyzing Packet Captures for Injection Attacks

Network Security Monitoring Techniques

Contribute your Thoughts:

0/2000 characters
Elza
9 months ago
I thought it was for network downtime reports, guess I was wrong!
upvoted 0 times
...
Arlene
9 months ago
Nope, not application logs either.
upvoted 0 times
...
Izetta
10 months ago
Wait, it doesn't do full packet capture? That's surprising!
upvoted 0 times
...
Viki
10 months ago
Totally agree, it's all about flow data!
upvoted 0 times
...
Domitila
10 months ago
NetFlow provides session data.
upvoted 0 times
...
Lottie
10 months ago
I feel like full packet capture is more detailed than what NetFlow provides, so I’m leaning towards session data as the answer.
upvoted 0 times
...
Pura
11 months ago
Application logs seem more related to software behavior, not sure if that's what NetFlow captures.
upvoted 0 times
...
Malcolm
11 months ago
I remember practicing a question about NetFlow, and I think it was related to monitoring traffic patterns, which sounds like session data too.
upvoted 0 times
...
Alethea
11 months ago
I think NetFlow is used for session data, but I'm not entirely sure if that's the right term.
upvoted 0 times
...
Levi
11 months ago
Okay, I've got this. NetFlow is a protocol that collects data about network traffic flows, including things like source and destination IP addresses, ports, and packet counts. The answer has to be session data.
upvoted 0 times
...
Nu
11 months ago
Hmm, I'm a bit unsure about this one. NetFlow - is that related to network traffic analysis or something? I'll have to think this through carefully.
upvoted 0 times
...
Dudley
11 months ago
This seems like a straightforward networking question. I think I've learned about NetFlow before, so I'll try to recall what it's used for.
upvoted 0 times
...
Ammie
11 months ago
I'm confident that NetFlow provides session data, not application logs or a network downtime report. Full packet capture is a different technology, so the answer has to be A.
upvoted 0 times
...
Sherill
11 months ago
Hmm, this is a tricky one. I know that type NS records are used to find the authoritative name servers for a domain, and type MX records are used to find the mail servers. But I'm not sure which one would be used to resolve the domain name to an IP address. I'll have to review my DNS knowledge before answering this.
upvoted 0 times
...
Lazaro
1 year ago
I bet the network admin who wrote this question is just laughing at us, thinking 'Wait till they see the real deal!'
upvoted 0 times
...
Catina
1 year ago
A network downtime report? What is this, a management report? C is just silly. Give me that sweet, sweet session data!
upvoted 0 times
...
Florinda
1 year ago
Application logs? Really? This is a networking exam, not a system admin one. B is clearly a distraction.
upvoted 0 times
Vonda
1 year ago
D) full packet capture
upvoted 0 times
...
Sanjuana
1 year ago
C) network downtime report
upvoted 0 times
...
Carmelina
1 year ago
A) session data
upvoted 0 times
...
...
Wilford
1 year ago
Hmm, I was hoping for something more juicy like full packet capture. D seems like the way to go, even if it's a bit overkill.
upvoted 0 times
Shad
1 year ago
User 3: I agree, having full packet capture can be really useful for troubleshooting network issues.
upvoted 0 times
...
Aracelis
1 year ago
User 2: Yeah, D does seem like overkill but it's always good to have all the data.
upvoted 0 times
...
Harrison
1 year ago
User 1: D) full packet capture
upvoted 0 times
...
...
Elza
1 year ago
NetFlow definitely gives me session data. I can see all the traffic flowing through the network. Easy choice - A!
upvoted 0 times
...
Malinda
1 year ago
I'm not sure, but I think it could also be D) full packet capture.
upvoted 0 times
...
Yan
1 year ago
I agree with Bulah, NetFlow is used to obtain session data.
upvoted 0 times
...
Bulah
1 year ago
I think the answer is A) session data.
upvoted 0 times
...

Save Cancel