nerdexam
EC-Council

512-50 · Question #353

Simon had all his systems administrators implement hardware and software firewalls to ensure network security. They implemented IDS/IPS systems throughout the network to check for and stop any…

The correct answer is C. Snort is the best tool for their situation. See the full explanation below for the reasoning.

Question

Simon had all his systems administrators implement hardware and software firewalls to ensure network security. They implemented IDS/IPS systems throughout the network to check for and stop any unauthorized traffic that may attempt to enter. Although Simon and his administrators believed they were secure, a hacker group was able to get into the network and modify files hosted on the company's website. After searching through the firewall and server logs, no one could find how the attackers were able to get in. He decides that the entire network needs to be monitored for critical and essential file changes. This monitoring tool alerts administrators when a critical file is altered. What tool could Simon and his administrators implement to accomplish this?

Options

  • AThey need to use Nessus.
  • BThey can implement Wireshark.
  • CSnort is the best tool for their situation.
  • DThey could use Tripwire.

How the community answered

(59 responses)
  • A
    7% (4)
  • B
    3% (2)
  • C
    80% (47)
  • D
    10% (6)

Community Discussion

No community discussion yet for this question.

Full 512-50 Practice