what is the default event actions rule?

When the Cisco IPS appliance is operating in inline mode, what is the default event actions rule?

When the Cisco IPS appliance is operating in inline mode, what is the default event actions rule?

A.
All alert events with a risk rating of 75 or higher will have a default action of deny packet inline.

B.
All alert events with a risk rating of 75 or higher will have a default action of deny attacker inline.

C.
High risk category attacks will have a default action of deny packet inline.

D.
High risk category attacks will have a default action of deny attacker inline.

E.
Attacks to any of the mission critical resources will have a default action of deny packet inline.

F.
Attacks to any of the mission critical resources will have a default action of deny attacker inline.

Explanation:
http://www.cisco.com/en/US/docs/security/security_management/cisco_security_manager/securi ty_manager/4.1/user/guide/ipsevact.html



Leave a Reply 0

Your email address will not be published. Required fields are marked *