Terms
Term
Q1 Which IPS signature trigger category uses the simplest triggering mechanism and searches for a specific and pre-defined atomic or composite pattern? Options: A) Pattern-Based Detection B) Anomaly-Based Detection C) Honey Pot-Based Detection D) Policy-Based Detection
Definition
Answer: A) Pattern-Based Detection
Term
Q2 What term describes a set of rules used by an IDS or IPS to detect typical intrusion activity? Options: A) Trigger B) Definition C) Signature D) Event file
Definition
Answer: C) Signature
Term
Q3 Which type of alert is generated when an IPS incorrectly identifies normal network user traffic as attack traffic? Options: A) True negative B) False positive C) True positive D) False negative
Definition
Answer: B) False positive
Practice Tests