What three actions are limitations when running IPS in promiscuous mode? (Choose three.)
A.
deny attacker
B.
deny packet
C.
modify packet
D.
request block connection
E.
request block host
F.
reset TCP connection
Explanation:
BD
In promiscuous mode, packets do not flow through the sensor. The disadvantage of operating in
promiscuous mode, however, is the sensor cannot stop malicious traffic from reaching its intended target
for certain types of attacks, such as atomic attacks (single-packet attacks). The response actions implemented
by promiscuous sensor devices are post-event responses and often require assistance from other
networking devices, for example, routers and firewalls, to respond to an attack.
Source: http://www.cisco.com/c/en/us/td/docs/security/ips/7-0/configuration/guide/cli/cliguide7/
cli_interfaces.html
Again- Awfully worded question. These are the limited actions it CANNOT perform. Not a limited set of actions that it CAN perform.