Cisco IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor Ficha de datos Pagina 11

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 168
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 10
642 -531
Leading the way in IT testing and certification tools, www.testking.com
- 11 -
A Cisco IDS Sensor has been configured to detect attempts to extract the password file
from Windows 2000 systems. During a security assessment, the consultants attempted to
extract the password files from three Windows 2000 servers. This activity was not
detected by the Sensor.
What situation has this activity caused?
A. False negative
B. False positive
C. True positive
D. True negative
Answer: A
False negative – is when an IDS fails to generates an alarm for known intrusive activity.
False positive - is when an IDS generates an alarm for normal user activity.
True positive – is when an IDS generates an alarm for known intrusive activity.
Reference: Cisco Secure Intrusion Detection System (Ciscopress) page 55 & 58
Note: A situation in which a signature is not fired when offending traffic is detected. An
actual attack is not detected -Cisco Secure Intrusion Detection System 4 chap 3 page 11
Vista de pagina 10
1 2 ... 6 7 8 9 10 11 12 13 14 15 16 ... 167 168

Comentarios a estos manuales

Sin comentarios