Question 1 of 30
In a corporate network, an Intrusion Prevention System (IPS) is configured to monitor traffic for specific patterns that indicate potential threats. The IPS is set to trigger an alert when it detects a certain number of packets matching a predefined signature within a specified time frame. If the threshold is set to 10 packets within 5 seconds, and the network traffic analysis shows that 15 packets matching the signature were detected in a 4-second window, what would be the appropriate response of the IPS, considering the configured rules and the nature of the detected traffic?
The IPS should trigger an alert and take action to block the traffic.
The IPS should ignore the traffic since it did not exceed the threshold in the specified time.
The IPS should log the event but not take any action since it is within the time limit.
The IPS should escalate the alert to a higher security level without blocking the traffic.

Preparing for CISCO 300-710 Securing Networks with Cisco Firepower (SNCF)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free