Exam 200-201 | Question id=6072 | Network intrusion analysis |
Refer to the exhibit.
Aug 24 2020 09:02:31: %ASA-4-106023: Deny tcp src outside:209.165.200.228/51585 dst inside:192.168.150.77/22 by access-group "OUTSIDE" [0x5063b82f, 0x0]
An analyst received this alert from the Cisco ASA device, and numerous activity logs were produced. How should this type of evidence be categorized?
A. |
indirect | |
B. |
circumstantial | |
C. |
corroborative | |
D. |
best |