IISFA
II0-001 · Question #88
IP-based denial- of-service (DOS) and fragmented packet (TearDrop) attacks can be identified by looking at the packet headers as they travel across a network. This type of attack can be quickly…
The correct answer is C. Host-based IDS does not see traffic on the network. You've hit your session limit · resets 5:20pm (America/New_York)
Question
IP-based denial- of-service (DOS) and fragmented packet (TearDrop) attacks can be identified by looking at the packet headers as they travel across a network. This type of attack can be quickly identified by a network-based IDS looking at the packet stream in real-time. Why is it that the Host-Based IDS miss these attacks?
Options
- AHost-based IDS identify these packets as false positive alarms
- BHost-based IDS can be placed in promiscuous mode and therefore is unable to see payload traffic
- CHost-based IDS does not see traffic on the network
- DHost-based IDS only identify alarms that are operating system specific
How the community answered
(59 responses)- A14% (8)
- B2% (1)
- C80% (47)
- D5% (3)
Explanation
You've hit your session limit · resets 5:20pm (America/New_York)
Community Discussion
No community discussion yet for this question.