Brain-dumps.com

 
 
 

 
Cisco 
350-001 
350-018 
350-030 
640-025 
640-603 
640-604 
640-605 
640-606 
640-607 
640-801 
640-811 
640-861 
640-901 
640-910 
642-511 
642-521 
642-531 
642-541 
642-641 
642-661 
642-801 
642-811 
642-821 
642-831 
642-871 
642-891 
643-531 
644-101 
646-301 
646-401 
646-521 
9E0-100 
9E0-131 
9E0-422 
9E0-431 
9E0-441 
9E0-541 
9E0-576 
9E0-581 
9E0-601 
9E0-691 
9E0-805 
 
 
Citrix 
1Y0-220 
1Y0-221 
1Y0-610 
1Y0-720 
1Y0-721 
1Y0-910 
1Y0-911 
1Y0-921 
1Y0-931 
1Y0-941 
1Y0-950 
1Y0-951 
1Y0-961 
1Y0-962 
1Y0-991 
 
 
CIW 
1D0-410 
1D0-425 
1D0-450 
1D0-460 
1D0-470 
 
 
Comptia 
220-221 
220-222 
220-231 
220-232 
220-301 
220-302 
225-020 
EKO-001 
IK0-002 
N10-002 
SK0-001 
TK0-001 
XK0-001 
 
 
Microsoft 
70-015 
70-016 
70-019 
70-028 
70-029 
70-080 
70-081 
70-086 
70-088 
70-091 
70-098 
70-100 
70-152 
70-175 
70-176 
70-210 
70-214 
70-215 
70-216 
70-217 
70-218 
70-219 
70-220 
70-221 
70-222 
70-223 
70-224 
70-225 
70-226 
70-227 
70-228 
70-229 
70-230 
70-244 
70-270 
70-284 
70-290 
70-291 
70-292 
70-293 
70-294 
70-296 
70-305 
70-306 
70-310 
70-315 
70-316 
74-100 
ppt2000 
 
 
Novell 
50-632 
50-634 
50-639 
50-640 
50-644 
50-653 
50-654 
50-659 
50-662 
50-676 
50-677 
50-682 
50-683 
 
 
Oracle 
1Z0-001 
1Z0-007 
1Z0-020 
1Z0-023 
1Z0-024 
1Z0-025 
1Z0-026 
1Z0-030 
1Z0-031 
1Z0-032 
1Z0-033 
1Z0-131 
1Z0-132 
1Z0-147 
 
 
Sun 
310-011 
310-012 
310-014 
310-015 
310-025 
310-035 
310-051 
 
 
CWNA 
PWO-100 
 
 
Lotus 
 
 
Compaq 
010-066 
010-067 
 
 
Linux 
117-102 
 
 
IBM 
000-199 
000-285 
000-355 
 
 
DB/2 
000-513 
000-516 
 
 
 
 

Thanx to www.examscheets.com  for providing helpful material.Here is my contribution.

 

642-531

Cisco Secure Intrusion Detection System (CSIDS)

 

QUESTION 1

Which type of attack is characterized by an intruder targeting networks or systems to retrieve data or escalate their privileges?

A. Access attack

B. Reconnaissance attack

C. Denial of Service attack

D. Authorization attack

Answer: A

 

Access Attacks

Access is a broad term used to describe any attack that requires the intruder to gain unauthorized access to a secure system with the intent to manipulate data, elevate privileges, or simply access the system. The term "access attack" is used to describe any attempt to gain system access, perform data manipulation, or elevate privileges. System Access Attacks System access is the act of gaining unauthorized access to a system for which the attacker doesn't have a user account. Hackers usually gain access to a device by running a script or a hacking tool, or exploiting a known vulnerability of an application or service running on the host. Data Manipulation Access Attacks Data manipulation occurs when an intruder simply reads, copies, writes, deletes, or changes data that isn't intended to be accessible by the intruder. This could be as simple as finding a share on a Windows 9x or NT computer, or as difficult as attempting to gain access to a credit bureau's information, or breaking into the department of motor vehicles to change a driving record. Elevating Privileges Access Attacks Elevating privileges is a common type of attack. By elevating privileges an intruder can gain access to files, folders or application data that the user account was not initially granted access to. Once the hacker has gained a high-enough level of access, they can install applications, such as backdoors and Trojan horses, to allow further access and reconnaissance. A common goal of hackers is to CCSP: Cisco Certified Security Professional Certification All-in-One Exam Guide

 

QUESTION 2

Which user account role on a Cisco IDS Sensor allows a user to perform all Sensor operations?

A. Operator

B. Viewer

C. Service

D. Administrator

Answer: D

 

QUESTION 3

Which signature description best describes a service signature engine?

A. Protocol analysis for layers 5, 6, and 7 applications.

B. Inspects multiple transport protocols.

C. Detects network reconnaissance.

D. Identifies traffic irregularities.

Answer: A

 

QUESTION 4

Which protocol does the IDS MC Sensors use to securely manage an IDS Sensor?

A. SSL

B. SSH

C. RDEP

D. HTTP

E. Postofficed

Answer: B

 

QUESTION 5

Which ports will be examined if the ATOMIC.TCP signature parameter PortRangeSource is set to 0 (zero)?

A. This setting will disable port inspection.

B. This is a protected setting and cannot be set to 0 (zero).

C. All ports destined to the source will be inspected.

D. All ports from the source will be inspected.

Answer: D

 

QUESTION 6

An intruder has created a worm that targets an application running on a fixed port and attempts to gain administrator access using a well-known default password. Given these signature engines, which would be the best choice when creating a custom signature?

A. ATOMIC.IPOPTIONS

B. SERVICE.MSSQL

C. SERVICE.IDENT

D. STRING.TCP

Answer: A

 

QUESTION 7

Which protocol does an administrator use to communicate with the Monitoring Center for Security from the desktop?

A. Telnet

B. RDEP

C. IDAPI

D. HTTP

E. HTTPS

Answer: E

 

QUESTION 8

The Cisco IDS Sensor service pack file IDSk9-sp-3.1-2-S23.bin exists on the Sensor. Which command installs the service pack on the Sensor?

A. IDSk9-sp-3.1-2-S23 -install

B. IDSk9-sp-3.1-2-S23.bin -install

C. IDSk9-sp-3.1-2-S23.bin -i

D. IDSk9-sp-3.1-2-S23.bin -l

E. IDSk9-sp-3.1-2-S23-bin -apply

F. IDSk9-sp-3.1-2-S23 -apply

Answer: E

Reference: Cisco Intrusion Detection System - Upgrading the Intrusion

Detection System Module

I am not sure about answer D. I really cant find anything that supports it. In the new course the command is update. I think that the answer may be E using the apply command as shown in the explanation.

 

QUESTION 9

Which network management product is used to deploy configurations to groups of IDS devices?

A. IDM

B. IDS Management Center

C. Security Monitoring

D. IEV

Answer: B
Braindumps Exam questions Dumps Brain dumps
MCSE Braindumps CCNA Braindumps CCNA Exam Testking