In which scenario would an investigator collect NetFlow logs rather than PCAP logs?
To save on storage space
For detailed network monitoring
For deep packet inspection
To collect application layer data
Submit