SSCP · Question #353
Which of the following monitors network traffic in real time?
The correct answer is A. network-based IDS. A Network-based IDS (NIDS) is deployed at strategic points on the network (e.g., near routers or firewalls) and captures/analyzes packet traffic in real time to detect suspicious activity. A host-based IDS (HIDS) monitors logs and activity on a single host rather than the…
Question
Options
- Anetwork-based IDS
- Bhost-based IDS
- Capplication-based IDS
- Dfirewall-based IDS
How the community answered
(52 responses)- A92% (48)
- B2% (1)
- C4% (2)
- D2% (1)
Explanation
A Network-based IDS (NIDS) is deployed at strategic points on the network (e.g., near routers or firewalls) and captures/analyzes packet traffic in real time to detect suspicious activity. A host-based IDS (HIDS) monitors logs and activity on a single host rather than the network. Application-based IDS focuses on a specific application's behavior. 'Firewall-based IDS' is not a standard classification - firewalls filter traffic by rules but are not IDSs.
Topics
Community Discussion
No community discussion yet for this question.