PrepAway - Latest Free Exam Questions & Answers

Which tool is used to detect rogue services?

Which tool is used to detect rogue services?

PrepAway - Latest Free Exam Questions & Answers

A.
NSX Logical Firewall

B.
NSX Logical Router

C.
Activity Monitoring

D.
Flow Monitoring

4 Comments on “Which tool is used to detect rogue services?

  1. nebula says:

    D is correct.

    Flow Monitoring is a traffic analysis tool that provides a detailed view of the traffic to and from protected
    virtual machines. When flow monitoring is enabled, its output defines which machines are exchanging data
    and over which application. This data includes the number of sessions and packets transmitted per session.
    Session details include sources, destinations, applications, and ports being used. Session details can be used
    to create firewall allow or block rules.
    You can view TCP and UDP connections to and from a selected vNIC. You can also exclude flows by
    specifying filters.
    Flow Monitoring can thus be used as a forensic tool to detect rogue services and examine outbound
    sessions.




    0



    0

Leave a Reply