PrepAway - Latest Free Exam Questions & Answers

0/24 network using any port?

You are configuring your new IDS machine, where you have recently installed Snort. While you are working with this machine, you wish to create some basic rules to test the ability to log traffic as you desire. Which of the following Snort rules will log any tcp traffic from any host other than 172.16.40.50 using any port, to any host in the 10.0.10.0/24 network using any port?

PrepAway - Latest Free Exam Questions & Answers

A.
log udp ! 172.16.40.50/32 any -> 10.0.10.0/24 any

B.
log tcp ! 172.16.40.50/32 any -> 10.0.10.0/24 any

C.
log udp ! 172.16.40.50/32 any <> 10.0.10.0/24 any

D.
log tcp ! 172.16.40.50/32 any <> 10.0.10.0/24 any

E.
log tcp ! 172.16.40.50/32 any <- 10.0.10.0/24 any


Leave a Reply