A network administrator needs to deploy a network security device at the perimeter that sits directly in the traffic flow to inspect incoming packets and actively drop detected malicious traffic in real time. Which device should be placed inline to meet this objective?
- Network Intrusion Prevention System (NIPS)Cevap
- BNetwork Intrusion Detection System (NIDS) connected to a SPAN port
- CProtocol Analyzer analyzing port 80 traffic out-of-band
- DAccess Control List configured on a router interface
Cevap
Network Intrusion Prevention System (NIPS)
A Network Intrusion Prevention System (NIPS) is deployed in-band (inline) along the network communication path. This positioning allows it to inspect all traversing packets in real time and automatically take preventive action, such as dropping malicious packets or resetting TCP connections, before malicious traffic reaches its destination.
Adım Adım Çözüm
Anahtar Kavram
Inline NIPS vs. Passive NIDS Deployment