Which statement is true?

Refer to the exhibit. Which statement is true?

Exhibit:

Refer to the exhibit. Which statement is true?

Exhibit:

A.
A summary alert is sent once during each interval for each unique Summary Key entry.

B.
An alert is generated each time the signature triggers.

C.
This signature does not fire until three events are seen during 60 seconds with the same attacker and victim IP addresses and ports.

D.
This signature is disabled by default.

E.
When this signature triggers, the Cisco IPS appliance sends an SNMP trap for this event.



Leave a Reply 1

Your email address will not be published. Required fields are marked *


Luis Cifer

Luis Cifer

If the signature is enabled but retired would it fire anything at all?

You can enable a signature that is retired, but it then
is not used to scan traffic, because it is not in the
signature micro-engine. If you want a sensor to scan
network traffic for a particular signature, you must
enable it and not retire it. The AIP-SSC-5 does not support enabling a signature that is retired