CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 86: AWS Certified Security - Specialty(Old)

A company has Windows Amazon EC2 instances in a VPC that are joined to on-premises Active Directory servers for domain services. The security team has enabled Amazon GuardDuty on the AWS account to alert on issues with the instances. During a weekly audit of network traffic, the Security Engineer notices that one of t…

Nội dung câu hỏi

A company has Windows Amazon EC2 instances in a VPC that are joined to on-premises Active Directory servers for domain services. The security team has enabled Amazon GuardDuty on the AWS account to alert on issues with the instances. During a weekly audit of network traffic, the Security Engineer notices that one of the EC2 instances is attempting to communicate with a known command-and- control server but failing. This alert does not show up in GuardDuty. Why did GuardDuty fail to alert to this behavior?

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. GuardDuty did not have the appropriate alerts activated.
  2. B. GuardDuty does not see these DNS requests. — đáp án hiện tại
  3. C. GuardDuty only monitors active network traffic flow for command-and-control activity.
  4. D. GuardDuty does not report on command-and-control activity.

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề