Which option is a remediation module that comes with the Sourcefire System?
A. Cisco IOS Null Route
B. Response Group
C. Syslog Route
D. Nmap Route Scan
One Comment on “Which option is a remediation module that comes with the Sourcefire System?”
the big bangersays:
Module Name
Function
Cisco IOS Null Route
if you are running Cisco routers that use Cisco IOS® Version 12.0 or higher, allows you to dynamically block traffic sent to an IP address or network that violates a correlation policy
Cisco PIX Shun
if you are running Cisco PIX® Firewall Version 6.0 or higher, allows you to dynamically block traffic sent from an IP address that violates a correlation policy
Nmap Scanning
allows you to actively scan specific targets to determine operating systems and servers running on those hosts
Set Attribute Value
allows you to set a host attribute on a host where a correlation event occurs
Module Name
Function
Cisco IOS Null Route
if you are running Cisco routers that use Cisco IOS® Version 12.0 or higher, allows you to dynamically block traffic sent to an IP address or network that violates a correlation policy
Cisco PIX Shun
if you are running Cisco PIX® Firewall Version 6.0 or higher, allows you to dynamically block traffic sent from an IP address that violates a correlation policy
Nmap Scanning
allows you to actively scan specific targets to determine operating systems and servers running on those hosts
Set Attribute Value
allows you to set a host attribute on a host where a correlation event occurs
0
0