TCP rule that detects TCP packets with the SYN flag in an external FTP server
B.
TCP rule that detects TCP packets with a SYN flag in the internal network
C.
TCP rule that detects TCP packets with a ACK flag in the internal network
D.
TCP rule that detects TCP packets with the ACK flag in an external FTP server
The Answer Is:
B
This question includes an explanation.
Explanation:
The command in the exhibit is a Snort rule that is configured to alert on TCP packets with the SYN flag set, where the source is not the home network (!$HOME_NET) and the destination is within the home network ($HOME_NET) on port 80. This rule is designed to detect potential SYN flood attacks targeting the internal network’s web server on port 80.
200-201 PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 60% Discount on All Products,
Use Coupon: "8w52ceb345"