Which private network uses storage protocol rather than networking protocol?
A. Storage area network
B. Local area network
C. Wide area network
D. None of the mentioned
Which one of the following is not a secondary storage?
A. Magnetic disks
B. Magnetic tapes
C. Ram
D. None of the mentioned
What are strengths of Network based IDS?
A. Cost of ownership reduced
B. Malicious intent detection
C. Real time detection and response
D. All of the mentioned
What are characteristics of Network based IDS?
A. They look for attack signatures in network traffic
B. Filter decides which traffic will not be discarded or passed
C. It is programmed to interpret a certain series of packet
D. It models the normal usage of network as a nosie characterization
What are characteristics of stack based IDS?
A. They are integrated closely with the TCP/IP stack and watch packets
B. The host operating system logs in the audit information
C. It is programmed to interpret a certain series of packets
D. It models the normal usage of network as a nosie characterization
What are the strengths of the host based IDS?
A. Attack verification
B. System specific activity
C. No additional hardware required
D. All of the mentioned
What are the drawbacks of the host based IDS?
A. Unselective logging of messages may increase the audit burdens
B. Selective logging runs the risk of missed attacks
C. They are very fast to detect
D. They have to be programmed for new patterns
What are the drawbacks of signature based IDS?
A. They are unable to detect novel attacks
B. They suffer from false alarms
C. They have to be programmed again for every new pattern to be detected
D. All of the mentioned
What are the characteristics of signature based IDS?
A. Most are based on simple pattern matching algorithms
B. It is programmed to interpret a certain series of packets
C. It models the normal usage of network as a nosie characterization
D. Anything distinct from the nosie is assumed to be intrusion activity
What is the major drawback of anomaly detection IDS?
A. These are very slow at detection
B. It generates many false alarms
C. It doesn’t detect novel attacks
D. None of the mentioned