John as a SOC analyst is worried about the amount of Tor traffic hitting the network. He wants to prepare a dashboard in the SIEM to get a graph to identify the locations from where the TOR traffic is coming. Which of the following data source will he use to prepare the dashboard? A. DHCP/Logs capable of maintaining IP addresses or hostnames with IPtoName resolution. B. IIS/Web Server logs with IP addresses and user agent IPtouseragent resolution. C. DNS/ Web Server logs with IP addresses. D. Apache/ Web Server logs with IP addresses and Host Name. Â Suggested Answer: D Community Answer: A This question is in 312-39 Certified Ethical Hacker Exam. For getting Certified Ethical Hacker (CEH). Disclaimers: The website is not related to, affiliated with, endorsed or authorized by EC-Council. Trademarks, certification & product names are used for reference only and belong to EC-Council. The website does not contain actual questions and answers from EC-Council's Certification Exams.
Please login or Register to submit your answer