1.
What is the correct regular expression to match a URI request equal to /test.exe?
2.
Which option is best to use to capture only a subset of traffic (capturing traffic per-IP-address, per-protocol, or per-application) off the switch backplane and copy it to the Cisco IPS appliance?
3.
A Cisco Catalyst switch is experiencing packet drops on a SPAN destination port that is connected to an Cisco IPS appliance. Which three configurations should be considered to resolve the packet drops issue? (Choose three.)
4.
From the Cisco IPS appliance CLI setup command, one of the options is "Modify default threat prevention settings? [no]". What is this option related to?
5.
Threat rating calculation is performed based on which factors?
6.
Which protocol is used by Encapsulated Remote SPAN?
7.
What must be configured to enable Cisco IPS appliance reputation filtering and global correlation?
8.
What is a best practice to follow before tuning a Cisco IPS signature?
9.
OS mappings associate IP addresses with an OS type, which in turn helps the Cisco IPS appliance to calculate what other value?
10.
Which Cisco IPS appliance feature is best used to detect these two conditions? 1) The network starts becoming congested by worm traffic. 2) A single worm-infected source enters the network and starts scanning for other vulnerable hosts.