GIAC Network Forensic Analyst (GNFA) - GNFA Exam Practice Test

What is the primary purpose of a network security proxy?
Response:
Correct Answer: D Vote an answer
Which of the following are key benefits of centralizing security event logs?
(Select two.)
Response:
Correct Answer: A,C Vote an answer
What is the primary purpose of security event logging?
Response:
Correct Answer: C Vote an answer
What methods are used to identify the structure of an unknown network protocol?
(Select two.)
Response:
Correct Answer: C,D Vote an answer
Which of the following best describes asymmetric encryption?
Response:
Correct Answer: C Vote an answer
Which field in a NetFlow record can help determine if lateral movement is occurring within a network?
Response:
Correct Answer: B Vote an answer
Which tools can be used to capture and analyze wireless network traffic?
(Select two.)
Response:
Correct Answer: B,C Vote an answer
Which log format is commonly used in UNIX/Linux environments?
Response:
Correct Answer: C Vote an answer
What is the primary purpose of ICMP (Internet Control Message Protocol)?
Response:
Correct Answer: A Vote an answer
An administrator notices unusual traffic patterns where a single workstation is attempting to connect to multiple internal servers within minutes. What should be the first step in investigating this activity?
Response:
Correct Answer: C Vote an answer