GCGA Ch. 4 Exploring Advanced Security Devices (ST) Flashcards

(7 cards)

1
Q

IDS

A

intrusion detection system - inspects network traffic in order to detect malicious activity or policy violations; out-of-band, passive.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

IPS

A

intrusion prevention system - monitors network traffic and takes automated actions to prevent threats, such as blocking or terminating connections. Placed in-line (in-band) with traffic & can stop attacks before they reach internal network; can actively monitor data streams, detect malicious content, and prevent it from reaching a network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

HIDS vs NIDS

A

HIDS can detect attacks on local systems such as workstations and servers. The HIDS monitors local resources on the host and can detect some malware that isn’t detected by traditional antivirus software. A network-based IDS (NIDS) detects attacks on networks.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Signature-based IDS or IPS

A

uses signatures to detect known attacks or vulnerabilities.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Trend-based IDS

A

(also called anomaly-based IDSs) require a baseline and detect attacks based on anomalies or when traffic is outside expected boundaries.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

SCADA network

A

Supervisory Control And Data Acquisition - an architecture that enables industrial organizations to manage, monitor, and control processes, machines, and plants.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Honeypots & honeynets

A

appear to have valuable data and attempt to divert attackers away from live networks. Security personnel use them to deceive attackers, disrupt attacks, and observe attackers’ current attack methodologies. A honeyfile is a file designed to attract the attention of an attacker. Honeytokens are fake records inserted into databases to detect data theft

How well did you know this?
1
Not at all
2
3
4
5
Perfectly