PrepAway - Latest Free Exam Questions & Answers

Which four statements about the blocking capabilities o…

Which four statements about the blocking capabilities of the Cisco IPS appliance are true? (Choose four.)

PrepAway - Latest Free Exam Questions & Answers

A.
The three types of blocks are: host, connection, and network.

B.
Host and connection blocks can be initiated manually or automatically when a signature is triggered.

C.
Network blocks can only be initiated manually.

D.
The Device Login Profiles pane is used to configure the profiles that the network devices use when logging into the Cisco IPS appliance

E.
Multiple Cisco IPS appliances can forward their blocking requests to the master blocking sensor.

F.
Pre-Block and Post-Block ACLs are applicable for blocking or rate limiting.

Explanation:
http://www.cisco.com/en/US/docs/security/ips/7.0/command/reference/crCmds.html#wp765330 http://www.cisco.com/en/US/docs/security/ips/7.0/configuration/
guide/idm/idm_blocking.html# wp2216370
It appears that block network is not available from the ARC module.
D is definitely incorrect
Use the Device Login Profiles pane to configure the profiles that the sensor uses when logging in to blocking devices.
F is also incorrect
Pre-Block and Post-Block ACLS do not apply to rate limiting.


Leave a Reply