nerdexam
CompTIA

N10-005 · Question #502

A firewall that detects and prevents attacks from outside the network based on learned data patterns can BEST be described as which of the following?

The correct answer is B. Behavior based IPS. A behavior-based IPS (Intrusion Prevention System) fits both key criteria in the question: it uses learned behavioral baselines (not static signatures) to identify anomalies, and it actively prevents attacks rather than just alerting. A signature-based IDS matches traffic…

Network security

Question

A firewall that detects and prevents attacks from outside the network based on learned data patterns can BEST be described as which of the following?

Options

  • ASignature based IDS
  • BBehavior based IPS
  • CHost based IPS
  • DNetwork based IDS

How the community answered

(29 responses)
  • A
    3% (1)
  • B
    83% (24)
  • C
    3% (1)
  • D
    10% (3)

Explanation

A behavior-based IPS (Intrusion Prevention System) fits both key criteria in the question: it uses learned behavioral baselines (not static signatures) to identify anomalies, and it actively prevents attacks rather than just alerting. A signature-based IDS matches traffic against known attack signatures and only detects - it does not prevent. A host-based IPS is deployed on an individual host, not at the network perimeter. A network-based IDS monitors network traffic and detects threats but does not block them. The combination of 'learned data patterns' (behavior-based) and 'prevents' (IPS) uniquely identifies option B.

Topics

#IPS#behavior-based detection#intrusion prevention#anomaly detection

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice