nerdexam
(ISC)2

SSCP · Question #353

Which of the following monitors network traffic in real time?

The correct answer is A. network-based IDS. A Network-based IDS (NIDS) is deployed at strategic points on the network (e.g., near routers or firewalls) and captures/analyzes packet traffic in real time to detect suspicious activity. A host-based IDS (HIDS) monitors logs and activity on a single host rather than the…

Submitted by jian89· Apr 18, 2026Network and Communications Security

Question

Which of the following monitors network traffic in real time?

Options

  • Anetwork-based IDS
  • Bhost-based IDS
  • Capplication-based IDS
  • Dfirewall-based IDS

How the community answered

(52 responses)
  • A
    92% (48)
  • B
    2% (1)
  • C
    4% (2)
  • D
    2% (1)

Explanation

A Network-based IDS (NIDS) is deployed at strategic points on the network (e.g., near routers or firewalls) and captures/analyzes packet traffic in real time to detect suspicious activity. A host-based IDS (HIDS) monitors logs and activity on a single host rather than the network. Application-based IDS focuses on a specific application's behavior. 'Firewall-based IDS' is not a standard classification - firewalls filter traffic by rules but are not IDSs.

Topics

#IDS#Network-based IDS#Network Monitoring#Intrusion Detection

Community Discussion

No community discussion yet for this question.

Full SSCP Practice