Web Activity Logs
In this hands-on lab, you will learn the basics of web activity logs. You will then practice identifying meaningful events in web proxy (HTTP/HTTPS) and name server (DNS) logs in the context of a new threat intelligence report.

Course Content
Upon completing this lab, you should be able to:
- Describe the type of web traffic that may be observable for a fleet of client systems in the absence of actual web server logs.
- List the available telemetry source for client-based web activity, in addition to their pros/cons.
- Describe SSL/TLS-driven complications for web traffic monitoring, and common methods for dealing with these complications.
- Determine whether a client system made a connection to a specific URL, domain, or IP address using web proxy (HTTP/HTTPS) and name server (DNS) logs.















