nerdexam
IISFA

II0-001 · Question #88

IP-based denial- of-service (DOS) and fragmented packet (TearDrop) attacks can be identified by looking at the packet headers as they travel across a network. This type of attack can be quickly…

The correct answer is C. Host-based IDS does not see traffic on the network. You've hit your session limit · resets 5:20pm (America/New_York)

Question

IP-based denial- of-service (DOS) and fragmented packet (TearDrop) attacks can be identified by looking at the packet headers as they travel across a network. This type of attack can be quickly identified by a network-based IDS looking at the packet stream in real-time. Why is it that the Host-Based IDS miss these attacks?

Options

  • AHost-based IDS identify these packets as false positive alarms
  • BHost-based IDS can be placed in promiscuous mode and therefore is unable to see payload traffic
  • CHost-based IDS does not see traffic on the network
  • DHost-based IDS only identify alarms that are operating system specific

How the community answered

(59 responses)
  • A
    14% (8)
  • B
    2% (1)
  • C
    80% (47)
  • D
    5% (3)

Explanation

You've hit your session limit · resets 5:20pm (America/New_York)

Community Discussion

No community discussion yet for this question.

Full II0-001 Practice