Multiple Choice
Which of the following snort rules looks for FTP login attempts?
A) Alert tcp any any -> any any 21 (content:"user root"; msg:"FTP Login attempt";)
B) Alert ftp -> any port 21 (content:"user login";)
C) -A INPUT -j LOG -dport 21 -p TCP
D) Tcp.port == 21 && host eq any
Correct Answer:

Verified
Correct Answer:
Verified
Related Questions
Q29: Curtis works for a small company. His
Q30: Jeremy knows that the network has been
Q31: Assuming your own address is 192.168.1.1, what
Q32: You have been asked to setup a
Q33: What is the most accurate statement below
Q35: Which of the following attacks are not
Q36: Which of the following forms of attack
Q37: ARP spoofing works in part because Ethernet
Q38: You wish to capture a set of
Q39: Leo wants to secure his wireless network.