Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Splunk SPLK-5001 Exam - Topic 3 Question 38 Discussion

What device typically sits at a network perimeter to detect command and control and other potentially suspicious traffic?
D) Intrusion Detection System
A) Host-based firewall
B) Web proxy
C) Endpoint Detection and Response

Splunk SPLK-5001 Exam - Topic 3 Question 38 Discussion

Actual exam question for Splunk's SPLK-5001 exam
Question #: 38
Topic #: 3
[All SPLK-5001 Questions]

What device typically sits at a network perimeter to detect command and control and other potentially suspicious traffic?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Kayleigh
2 hours ago
I’m a bit confused because I thought host-based firewalls could also detect suspicious traffic, but I guess they’re not really at the perimeter, right?
upvoted 0 times
...
Virgie
5 days ago
I feel like I’ve seen something similar before, and I’m leaning towards D) Intrusion Detection System since it’s specifically designed for that purpose.
upvoted 0 times
...
Ivan
10 days ago
I remember practicing a question about network security devices, and I think a web proxy could also be involved, but it might not be the primary one for detecting command and control.
upvoted 0 times
...
Della
16 days ago
I think the answer might be D) Intrusion Detection System, but I'm not entirely sure if it covers all types of suspicious traffic.
upvoted 0 times
...

Save Cancel