Cisco IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor Ficha de datos Pagina 86

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 168
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 85
642 -531
Leading the way in IT testing and certification tools, www.testking.com
- 86 -
QUESTION NO: 5
Which Cisco IDS signatures are affected by the Sensor’s level of traffic logging value?
A. String signatures
B. HTTP signatures
C. TCP connection signatures
D. FTP connection signatures
E. ICMP signatures
Answer: C
Explanation:
Connection signatures are user-configurable attack signatures based on the transport-layer
protocol (TCP or UDP) and port number of the packets being monitored
Reference: Sensor Signatures
QUESTION NO: 6
A company has a custom client-server application that communicates on UDP ports
6000-7000.
Which Cisco IDS signature micro-engine can be used to detect attempts to locate the
servers?
A. Atomic.IPOptions
B. Sweep.RPC
C. Sweep.Net.UDP
D. Sweep.Port.UDP
E. String.Net.UDP
F. String.Port.UDP
Answer: D
Explanation:
SWEEP.PORT.UDP - UDP connections to multiple destination ports between two nodes
Reference: Cisco Secure Intrusion Detection System Signature Engines Version 3.0
QUESTION NO: 7
Match the Signature micro-engine usage description with the micro-engine name.
Vista de pagina 85
1 2 ... 81 82 83 84 85 86 87 88 89 90 91 ... 167 168

Comentarios a estos manuales

Sin comentarios