Independence Day Deal! Unlock 25% OFF Today – Limited-Time Offer - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 200-201 Topic 3 Question 92 Discussion

Actual exam question for Cisco's 200-201 exam
Question #: 92
Topic #: 3
[All 200-201 Questions]

What is obtained using NetFlow?

Show Suggested Answer Hide Answer
Suggested Answer: A

TCP injection is an attack where the attacker sends crafted packets into an existing TCP session. These packets appear to be part of the session.

The presence of many SYN packets with the same sequence number, source, and destination IP but different payloads indicates that an attacker might be injecting packets into the session.

This method can be used to disrupt communication, inject malicious commands, or manipulate the data being transmitted.


Understanding TCP Injection Attacks

Analyzing Packet Captures for Injection Attacks

Network Security Monitoring Techniques

Contribute your Thoughts:

Lazaro
1 months ago
I bet the network admin who wrote this question is just laughing at us, thinking 'Wait till they see the real deal!'
upvoted 0 times
...
Catina
1 months ago
A network downtime report? What is this, a management report? C is just silly. Give me that sweet, sweet session data!
upvoted 0 times
...
Florinda
1 months ago
Application logs? Really? This is a networking exam, not a system admin one. B is clearly a distraction.
upvoted 0 times
Vonda
7 days ago
D) full packet capture
upvoted 0 times
...
Sanjuana
12 days ago
C) network downtime report
upvoted 0 times
...
Carmelina
16 days ago
A) session data
upvoted 0 times
...
...
Wilford
2 months ago
Hmm, I was hoping for something more juicy like full packet capture. D seems like the way to go, even if it's a bit overkill.
upvoted 0 times
Shad
14 days ago
User 3: I agree, having full packet capture can be really useful for troubleshooting network issues.
upvoted 0 times
...
Aracelis
25 days ago
User 2: Yeah, D does seem like overkill but it's always good to have all the data.
upvoted 0 times
...
Harrison
27 days ago
User 1: D) full packet capture
upvoted 0 times
...
...
Elza
2 months ago
NetFlow definitely gives me session data. I can see all the traffic flowing through the network. Easy choice - A!
upvoted 0 times
...
Malinda
2 months ago
I'm not sure, but I think it could also be D) full packet capture.
upvoted 0 times
...
Yan
3 months ago
I agree with Bulah, NetFlow is used to obtain session data.
upvoted 0 times
...
Bulah
3 months ago
I think the answer is A) session data.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77