Câu 14: C2150-620: IBM Security Network Protection (XGS) V5.3.2 System Administration
A System Administrator sees a lot of Ping_Sweep events reported as blocked on the network. However, because the Ping_Sweep signature only blocks the ping packet that triggers the event, most of the ping packets are allowed through the XG S. How can these suspicious packets be effectively blocked from the network?
Nội dung câu hỏi
A System Administrator sees a lot of Ping_Sweep events reported as blocked on the network. However, because the Ping_Sweep signature only blocks the ping packet that triggers the event, most of the ping packets are allowed through the XG S. How can these suspicious packets be effectively blocked from the network?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Add a quarantine response to the Ping_Sweep event. — đáp án hiện tại
- B. Add a Network Access policy rule to reject ICMP traffic.
- C. Add a catch-all rule to the bottom of the NAP that rejects all traffic.
- D. Enable the Ping_Sweep event in the default IPS policy with the Block option.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.