Cisco IDS和IPS传感器可以使用()特征触发类型
A、基于样本的检测
B、基于异样的检测
C、基于策略的检测
D、基于沙盘的检测
A、基于样本的检测
B、基于异样的检测
C、基于策略的检测
D、基于沙盘的检测
A、配置了Cisco IOS IPS软件的路由器 B、专门的Cisco网络防火墙 C、专门设计用来提供专有IDS或IPS服务的设备 D、安装在相应的安全设备、交换机或路由器上的网络模块
A、IDS部署在网络边界,IPS部署在网络内部 B、IDS适用于加密和交换环境,IPS不适用 C、用户需要IDS日志定期查看,IPS不需要 D、IDS部署在网络内部,IPS部署在网络边界
A、A. Cisco IPS AIM B、B. Cisco IOS IPS C、C. Cisco IPS NME D、D. Cisco Security Agent E、E. Cisco IDSM-2
A、A network administrator entering a wrong password would generate a true-negative alarm. B、A false positive alarm is generated when an IDS/IPS signature is correctly identified. C、An IDS is significantly more advanced over IPS because of its ability to prevent network attacks. D、Cisco IDS works inline and stops attacks before they enter the network. E、Cisco IPS taps the network traffic and responds after an attack. F、Profile-based intrusion detection is also known as "anomaly detection".
A、requires the Basic or Advanced Signature Definition File B、uses the built-in signatures that come with the Cisco IOS image as backup C、supports SDEE,SYSLOG,and SNMP for sending Cisco IPS alerts D、uses Cisco IPS 5.x signature format