CompTIA
N10-005 · Question #102
Which of the following would be the BEST solution for an IDS to monitor known attacks?
The correct answer is B. Signature-based. Signature detection involves searching network traffic for a series of bytes or packet sequences known to be malicious. A key advantage of this detection method is that signatures are easy to develop and understand if you know what network behavior you're trying to identify.
Network security
Question
Which of the following would be the BEST solution for an IDS to monitor known attacks?
Options
- AHost-based
- BSignature-based
- CNetwork-based
- DBehavior-based
How the community answered
(34 responses)- B94% (32)
- C3% (1)
- D3% (1)
Explanation
Signature detection involves searching network traffic for a series of bytes or packet sequences known to be malicious. A key advantage of this detection method is that signatures are easy to develop and understand if you know what network behavior you're trying to identify.
Topics
#IDS#signature-based detection#intrusion detection#known attacks
Community Discussion
No community discussion yet for this question.