CISSP · Question #558
Which of the following is the PRIMARY reason a sniffer operating on a network is collecting packets only from its own host?
The correct answer is A. An Intrusion Detection System (IDS) has dropped the packets.. The primary reason a sniffer operating on a network is collecting packets only from its own host is that the network is connected using switches. A sniffer is a tool that captures and analyzes the network traffic by intercepting the packets that flow through the network. A sniffe
Question
Options
- AAn Intrusion Detection System (IDS) has dropped the packets.
- BThe network is connected using switches.
- CThe network is connected using hubs.
- DThe network's firewall does not allow sniffing.
How the community answered
(17 responses)- A94% (16)
- C6% (1)
Explanation
The primary reason a sniffer operating on a network is collecting packets only from its own host is that the network is connected using switches. A sniffer is a tool that captures and analyzes the network traffic by intercepting the packets that flow through the network. A sniffer can be used for various purposes, such as network troubleshooting, performance monitoring, security auditing, or malicious activities. The network topology and the devices used to connect the network affect the ability and the scope of the sniffer to capture the packets. A switch is a device that connects multiple devices on a network and forwards the packets to the destination device based on the MAC address. A switch creates separate collision domains for each port, which means that the packets are only sent to the intended device and not to the others. Therefore, a sniffer connected to a switch can only capture the packets that are destined for or originated from its own host, unless the switch is configured to allow port mirroring or broadcast the packets to all ports.
Topics
Community Discussion
No community discussion yet for this question.