PrepAway - Latest Free Exam Questions & Answers

Which of the following would be BEST suited for this task?

Mike, a network administrator, has been asked to passively monitor network traffic to the
company’s sales websites. Which of the following would be BEST suited for this task?

PrepAway - Latest Free Exam Questions & Answers

A.
HIDS

B.
Firewall

C.
NIPS

D.
Spam filter

Explanation:
Network-based intrusion prevention system (NIPS) monitors the entire network for suspicious
traffic by analyzing protocol activity.

7 Comments on “Which of the following would be BEST suited for this task?

    1. Peter G. says:

      I agree IPS is actively working to protect, while IDS is is passively monitoring. I assumed as Ronnie stated that you can set NIPS to passive as an option but was not 100% on that. Either way NIPS is network based while HIDS is host based.




      0



      0
        1. karioth says:

          You could, one of the things I hate about the wording on the test questions is that it is inconsistent with when it expects you to assume certain things. I was expecting NIPR to not be the answer here since they explicitly said passive monitoring, which is what an IDS would be for. You could as you said, use a HIDS just on the web servers to accomplish this task with minimal disruption to other network functions.




          0



          0
  1. Kevin says:

    This is incorrect. HIDS is passive, NIPS will prevent the traffic automatically which makes it not passive. HIDS will monitor it and you will have the ability to approve or disapprove.




    0



    0

Leave a Reply