Which signature action should be selected to cause the attacker’s traffic flow to terminate when the Cisco IPS appliance is operating in promiscuous mode?
A.
deny connection
B.
deny attacker
C.
reset TCP connection
D.
deny packet, reset TCP connection
E.
deny connection, reset TCP connection
The answer should be C: reset TCP connection.
I agree with the answer.