Exam 9: Internet and Network Forensics and Intrusion Detection

arrow
  • Select Tags
search iconSearch Question
flashcardsStudy Flashcards
  • Select Tags

Using an NFAT system,an event or security breach can be

Free
(Multiple Choice)
4.9/5
(35)
Correct Answer:
Verified

D

Which type of firewall acts as a mediator between internal hosts and external connections such as the Internet?

Free
(Multiple Choice)
4.8/5
(33)
Correct Answer:
Verified

C

What is considered to be the first line of defense for networks?

Free
(Multiple Choice)
4.8/5
(37)
Correct Answer:
Verified

B

Which of the following is NOT a component of an NFAT system?

(Multiple Choice)
4.8/5
(41)

________ Software allows you to forensically search for data on your entire network using nothing more than keywords or phrases.

(Short Answer)
4.9/5
(45)

The NFAT software usually contains a query language such as

(Multiple Choice)
4.7/5
(42)

________ have the capability to map internal IP addresses in such a way that they appear to be part of another network.

(Short Answer)
4.7/5
(33)

Match the NFAT components with their description. -Examiner computer

(Multiple Choice)
4.7/5
(33)

A problem that can occur with IDS alerts is ________,when an IDS mistakenly flags an innocent file as being suspicious.

(Short Answer)
4.9/5
(35)

Which of the following is considered the BEST answer in defining DHCP?

(Multiple Choice)
4.9/5
(34)

_______ Software has taken steps to preserve the integrity of the data collected from the agents via encryption both from agent to server and from the examiner's station to server.

(Short Answer)
4.9/5
(40)

The newest NFAT systems are a combination of

(Multiple Choice)
4.9/5
(33)

Determining the date and time of an event can be a problem with multiple devices on a network because

(Multiple Choice)
4.8/5
(40)

Match the device to its description -WAP

(Multiple Choice)
4.7/5
(42)

Match the device to its description -SPAN

(Multiple Choice)
4.9/5
(42)
Match the NFAT components with their description.
Premises:
Agents
Responses:
Modules installed on hosts
Contains a large database
Where the analysis is performed
Correct Answer:
Verified
Premises:
Responses:
Agents
Modules installed on hosts
(Matching)
4.8/5
(31)

What device holds two network interface cards and records all data passing through it?

(Multiple Choice)
4.9/5
(31)

What is designed to collect data straight from the network media?

(Multiple Choice)
4.8/5
(32)

NFAT tools discussed in this chapter include all of the following features EXCEPT

(Multiple Choice)
4.9/5
(39)

Match the device to its description -Hub

(Multiple Choice)
4.7/5
(33)
Showing 1 - 20 of 41
close modal

Filters

  • Essay(0)
  • Multiple Choice(0)
  • Short Answer(0)
  • True False(0)
  • Matching(0)