What is a key difference between the data captured by NetFlow and data captured by Wireshark?

IT Exam Items RepositoryCategory: CCNA CyberOpsWhat is a key difference between the data captured by NetFlow and data captured by Wireshark?

What is a key difference between the data captured by NetFlow and data captured by Wireshark?

  • NetFlow provides transaction data whereas Wireshark provides session data.
  • NetFlow data is analyzed by tcpdump whereas Wireshark data is analyzed by nfdump.
  • NetFlow collects metadata from a network flow whereas Wireshark captures full data packets.
  • NetFlow data shows network flow contents whereas Wireshark data shows network flow statistics.

Explanation: Wireshark captures the entire contents of a packet. NetFlow does not. Instead, NetFlow collects metadata, or data about the flow.

Related exam: CCNA SECFND 210-250 Dumps – Certification Practice Exam Answers
Related exam: CyberOps Associate Course Final Exam Answers
Related exam: CyberOps Associate (Version 1.0) - CyberOps Associate (200-201) Certification Practice Exam
Related exam: Network Defense - Checkpoint Exam: Evaluating Security Alerts Answers
Related exam: Cybersecurity Essentials - Checkpoint Exam: Evaluating Security Alerts (Module 19 – 21 Exam)
Related exam: Network Defense - My Knowledge Check Answers
Related exam: Cybersecurity Essentials My Knowledge Check Answers