GIAC Network Forensic Analyst (GNFA) - GNFA Exam Practice Test
What is the primary purpose of a network security proxy?
Response:
Response:
Correct Answer: D
Vote an answer
Which of the following are key benefits of centralizing security event logs?
(Select two.)
Response:
(Select two.)
Response:
Correct Answer: A,C
Vote an answer
What is the primary purpose of security event logging?
Response:
Response:
Correct Answer: C
Vote an answer
What methods are used to identify the structure of an unknown network protocol?
(Select two.)
Response:
(Select two.)
Response:
Correct Answer: C,D
Vote an answer
Which of the following best describes asymmetric encryption?
Response:
Response:
Correct Answer: C
Vote an answer
Which field in a NetFlow record can help determine if lateral movement is occurring within a network?
Response:
Response:
Correct Answer: B
Vote an answer
Which tools can be used to capture and analyze wireless network traffic?
(Select two.)
Response:
(Select two.)
Response:
Correct Answer: B,C
Vote an answer
Which log format is commonly used in UNIX/Linux environments?
Response:
Response:
Correct Answer: C
Vote an answer
What is the primary purpose of ICMP (Internet Control Message Protocol)?
Response:
Response:
Correct Answer: A
Vote an answer
An administrator notices unusual traffic patterns where a single workstation is attempting to connect to multiple internal servers within minutes. What should be the first step in investigating this activity?
Response:
Response:
Correct Answer: C
Vote an answer