Which Cisco IPS appliance feature is best used to detect these two conditions?

Which Cisco IPS appliance feature is best used to detect these two conditions?
1) The network starts becoming congested by worm traffic.
2) A single worm-infected source enters the network and starts scanning for other vulnerable hosts.

Which Cisco IPS appliance feature is best used to detect these two conditions?
1) The network starts becoming congested by worm traffic.
2) A single worm-infected source enters the network and starts scanning for other vulnerable hosts.

A.
global correlation

B.
anomaly detection

C.
reputation filtering

D.
custom signature

E.
meta signature

F.
threat detection



Leave a Reply 0

Your email address will not be published. Required fields are marked *