Your security team wants to use Firewall Insights to find anomalous denied connections. Which data source does Firewall Insights primarily analyze?
Choose an answer
Tap an option to check your answer.
Correct answer: VPC Flow Logs and VPC firewall rule logs collected in Cloud Logging..
Why this is the answer
Firewall Insights primarily analyzes VPC Flow Logs and VPC firewall rule logs, which are collected and stored in Cloud Logging. These logs provide detailed information about network traffic and firewall rule hits, enabling Firewall Insights to identify anomalous denied connections and other security risks. Packet Mirroring captures raw packet data, but it's not the primary data source for Firewall Insights' analytical capabilities. Cloud Armor logs focus on WAF and DDoS protection, not general VPC firewall activity. Cloud Monitoring uptime checks and internal metrics are for resource health and performance, not firewall log analysis.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed