George wants to monitor only SFTP traffic in Ethereal. Which filter should he apply?

Prepare for the Computer Hacking Forensic Investigator v11 exam. Study with flashcards and multiple choice questions. Each question includes hints and explanations. Get exam-ready efficiently!

Multiple Choice

George wants to monitor only SFTP traffic in Ethereal. Which filter should he apply?

Explanation:
SFTP traffic is carried by SSH, which uses TCP port 22. To monitor only SFTP, you filter for traffic on port 22 so you see SSH/SFTP packets and exclude others. The other options point to the wrong protocol (Telnet on 23) or a UDP filter (SFTP uses TCP), and one option uses an invalid syntax. Filtering by port 22 isolates SSH/SFTP traffic effectively.

SFTP traffic is carried by SSH, which uses TCP port 22. To monitor only SFTP, you filter for traffic on port 22 so you see SSH/SFTP packets and exclude others. The other options point to the wrong protocol (Telnet on 23) or a UDP filter (SFTP uses TCP), and one option uses an invalid syntax. Filtering by port 22 isolates SSH/SFTP traffic effectively.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy