nerdexam
Cisco

350-029 · Question #153

BCP (Best Common Practices) 38/RFC 2827 Ingress and Egress Packet Filtering would help mitigate what classification of attack?

The correct answer is E. Spoofing attack. Ingress traffic filtering at the periphery of Internet connected networks will reduce the effectiveness of source address spoofing denial of service attacks. Network service providers and administrators have already begun implementing this type of filtering on periphery…

Network Security

Question

BCP (Best Common Practices) 38/RFC 2827 Ingress and Egress Packet Filtering would help mitigate what classification of attack?

Options

  • ASniffing attack
  • BDenial of service attack
  • CPort Scan attack
  • DReconnaisance attack
  • ESpoofing attack

How the community answered

(20 responses)
  • B
    5% (1)
  • C
    5% (1)
  • D
    10% (2)
  • E
    80% (16)

Explanation

Ingress traffic filtering at the periphery of Internet connected networks will reduce the effectiveness of source address spoofing denial of service attacks. Network service providers and administrators have already begun implementing this type of filtering on periphery routers, and it is recommended that all service providers do so as soon as possible. In addition to aiding the Internet community as a whole to defeat this attack method, it can also assist service providers in locating the source of the attack if service providers can categorically demonstrate that their network already has ingress filtering in place on customer links. Corporate network administrators should implement filtering to ensure their corporate networks are not the source of such problems. Indeed, filtering could be used within an organization to ensure users do not cause problems by improperly attaching systems to the wrong networks. The filtering could also, in practice, block a disgruntled employee from anonymous attacks. It is the responsibility of all network administrators to ensure they do not become the unwitting source of an attack of this

Topics

#BCP38#RFC 2827#ingress filtering#IP spoofing

Community Discussion

No community discussion yet for this question.

Full 350-029 Practice