Which of the following impact levels is used by FireSIG…

Which of the following impact levels is used by FireSIGHT to indicate that either the source or target host is on
a monitored network but has no corresponding entry in the network map? (Select the best answer.)

Which of the following impact levels is used by FireSIGHT to indicate that either the source or target host is on
a monitored network but has no corresponding entry in the network map? (Select the best answer.)

A.
0

B.
1

C.
2

D.
3

E.
4

Explanation:
The impact level 4 is used by Cisco FireSIGHT Defense Center to indicate that either the source or target host
is on a monitored network but has no corresponding entry in the network map. FireSIGHT uses impact levels todescribe the potential severity of attacks. In the FireSIGHT system, managed devices, like Cisco FirePOWER
Intrusion Prevention Systems (IPSs), respond to an intrusion event by flagging the event with an impact level
and sending the event to the FireSIGHT Defense Center. The impact level is based on accumulated intrusion
data, network discovery data, and vulnerability information. The aggregated intrusion event data typically
contains contextual information about the event and includes a copy of the packet that triggered the event.
The following table provides a summary of the FireSIGHT impact levels and their meaning:

Cisco: Working with Intrusion Events: Using Impact Levels to Evaluate Events



Leave a Reply 0

Your email address will not be published. Required fields are marked *