header bg

Scan QR code or get instant email to install app

Question:

Abigail is responsible for setting up a network-based intrusion prevention system (NIPS) on her network. The NIPS is located in one particular network segment. She is looking for a passive method to get a copy of all traffic to the NIPS network segment so that it can analyze the traffic. Which of the following would be her best choice?

A Using a network tap.
explanation

Network taps copy all traffic to another destination, allowing traffic visibility without a device inline. They are completely passive methods of getting network traffic to a central location. Port mirroring would get all the traffic to the network-based intrusion prevention system (NIPS) but is not completely passive. It requires the use of resources on switches to route a copy of the traffic. Incorrect switch configurations can cause looping. Configuring loop detection can prevent looped ports. Putting a network IPS on every segment can be very expensive and require extensive configuration work. Option Setting up a NIPS on each segment is incorrect. This is not the assignment. Setting up a NIPS on each segment would also dramatically increase administrative efforts.

Related Information

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

*