PrepAway - Latest Free Exam Questions & Answers

what is the default event actions rule?

When the Cisco IPS appliance is operating in inline mode, what is the default event actions rule?

PrepAway - Latest Free Exam Questions & Answers

A.
All alert events with a risk rating of 75 or higher will have a default action of deny packet inline.

B.
All alert events with a risk rating of 75 or higher will have a default action of deny attacker inline.

C.
High risk category attacks will have a default action of deny packet inline.

D.
High risk category attacks will have a default action of deny attacker inline.

E.
Attacks to any of the mission critical resources will have a default action of deny packet inline.

F.
Attacks to any of the mission critical resources will have a default action of deny attacker inline.

Explanation:
http://www.cisco.com/en/US/docs/security/security_management/cisco_security_manager/securi ty_manager/4.1/user/guide/ipsevact.html


Leave a Reply