nerdexam
EC-Council

EC0-350 · Question #180

SSL has been seen as the solution to a lot of common security problems. Administrator will often time make use of SSL to encrypt communications from points A to point B. Why do you think this could…

The correct answer is D. SSL will blind the content of the packet and Intrusion Detection Systems will not be able to detect them. See the full explanation below for the reasoning.

Question

SSL has been seen as the solution to a lot of common security problems. Administrator will often time make use of SSL to encrypt communications from points A to point B. Why do you think this could be a bad idea if there is an Intrusion Detection System deployed to monitor the traffic between point A and B?

Options

  • ASSL is redundant if you already have IDS's in place
  • BSSL will trigger rules at regular interval and force the administrator to turn them off
  • CSSL will slow down the IDS while it is breaking the encryption to see the packet content
  • DSSL will blind the content of the packet and Intrusion Detection Systems will not be able to detect them

How the community answered

(47 responses)
  • A
    9% (4)
  • B
    13% (6)
  • C
    2% (1)
  • D
    77% (36)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice