1.
To what extent will the Cisco IPS sensor contribute data to the Cisco SensorBase network?
2.
Which four statements about the blocking capabilities of the Cisco IPS appliance are true? (Choose four.)
3.
OS mappings associate IP addresses with an OS type, which in turn helps the Cisco IPS appliance to calculate what other value?
4.
Which signature engine is recommended for creating a custom signature for packet header matching?
5.
Which four features are supported on the Cisco ASA AIP-SSM but are not supported on the Cisco ASA AIP-SSC? (Choose four.)
6.
Which Cisco IPS appliance TCP session tracking mode should be used if packets of the same session are coming to the sensor over different interfaces, but should be treated as a single session?
7.
Which four configuration elements can the virtual sensor of an Cisco IPS appliance have? (Choose four.)
8.
Which value is not used by the Cisco IPS appliance in the risk rating calculation?
9.
In a centralized Cisco IPS appliance deployment, it may not be possible to connect an IPS appliance to every switch or segment in the network. So, an IPS appliance can be deployed to inspect traffic on ports that are located on multiple remote network switches. In this case, which two configurations required? (Choose two.)
10.
Which Cisco IPS appliance feature is best used to detect these two conditions? 1) The network starts becoming congested by worm traffic. 2) A single worm-infected source enters the network and starts scanning for other vulnerable hosts.