Cisco IDS-4230-FE - Intrusion Detection Sys Fast Ethernet Sensor Ficha de datos Pagina 4

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 123
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 3
642-531
referred to as read-write access). SNMP agents listen on UDP port 161.
Reference: SAFE Blueprint for Small, Midsize, and Remote-User Networks
QUESTION 8
Which of the following statements represents a false positive alarm situation?
A. normal traffic or a benign action will not cause a signature to fire
B. offending traffic will not cause a signature to fire
C. normal traffic or a benign action will result in the signature firing
D. offending traffic causes a signature to fire
Answer: C
Explanation:
A false positive is a situation in which normal traffic or a bnign action causes the signature to fire. Consider the
following scenario: a signature exists that generates alarms if any network devices' enable password is entered
incorrectly. A network administrator attemts to log in to a Cisco router but mistakenly enters the wrong
password. The IDS cannot distinguish between a rogue user and the network administrator, and generates an
alarm.
Reference: Cisco Courseware p.3-11
QUESTION 9
What is a false negative alarm situation?
A. normal traffic does not cause a signature to fire
B. a signature is fired when offending traffic is not detected
C. normal traffic or a benign action causes the signature to fire
D. a signature is not fired when offending traffic is present
Answer: D
Cisco Courseware 3-11
QUESTION 10
A Cisco IDS Sensor has been configured to detect attempts to extract the password file from Windows
2000 systems. During a security posture assessment, the consultants attempted to extract the password
files from three Windows 2000 servers.
This activity was detected by the Sensor.
What situation has this activity caused?
A. True negative
B. True positive
C. False negative
D. False positive
Answer: B
Vista de pagina 3
1 2 3 4 5 6 7 8 9 ... 122 123

Comentarios a estos manuales

Sin comentarios