Exam 200-201 | Question id=5964 | Security policies and procedures |
An analyst is investigating an incident in a SOC environment.
Which method is used to identify a session from a group of logs?
A. |
sequence numbers | |
B. |
IP identifier | |
C. |
5-tuple | |
D. |
timestamps |