CEH: IDS, Firewalls and Honeypots Test 1

Description

CEH Test 1
amandarackham
Quiz by amandarackham, updated more than 1 year ago
amandarackham
Created by amandarackham about 9 years ago
51
1

Resource summary

Question 1

Question
Which Snort command will filter for outgoing email requests:
Answer
  • alert tcp any any -> any 21 msg "Email sent"
  • alert tcp any any -> any 25 msg "Email sent"
  • alert tcp any 21 -> any any msg "Email sent"
  • alert tcp any 25 -> any any msg "Email sent"
  • alert tcp any 25 -> any 21 msg "Email sent"

Question 2

Question
Which Snort command will filter for incoming email from the server:
Answer
  • alert tcp any any -> any 21 msg "Email received"
  • alert tcp any any -> any 25 msg "Email received"
  • alert tcp any 21 -> any any msg "Email received"
  • alert tcp any 25 -> any any msg "Email received" "
  • alert tcp any 25 -> any 21 msg "Email received" "

Question 3

Question
Which Snort command will filter for outgoing FTP requests:
Answer
  • alert tcp any any -> any 21 msg "FTP out"
  • alert tcp any any -> any 25 msg "FTP out"
  • alert tcp any 21 -> any any msg "FTP out"
  • alert tcp any 25 -> any any msg "FTP out"
  • alert tcp any 25 -> any 21 msg "FTP out"

Question 4

Question
Which Snort command will filter for incoming FTP response from an FTP server:
Answer
  • alert tcp any any -> any 21 msg "FTP response"
  • alert tcp any any -> any 25 msg "FTP response"
  • alert tcp any 21 -> any any msg "FTP response"
  • alert tcp any 25 -> any any msg "FTP response"
  • alert tcp any 25 -> any 21 msg "FTP response"

Question 5

Question
Which is the following is unlikely to be a port that a client uses to connect to an FTP server:
Answer
  • 21
  • 3100
  • 3110
  • 3111
  • 4444

Question 6

Question
Which Snort command line option is used to define that packets are not logged
Answer
  • -v
  • -c
  • -n
  • -l
  • -k

Question 7

Question
Which Snort command line option is used to read a rules file
Answer
  • -v
  • -c
  • -n
  • -l
  • -k

Question 8

Question
Which Snort command line option is used to run in verbose mode
Answer
  • -v
  • -c
  • -n
  • -l
  • -k

Question 9

Question
Which Snort command line option is used to define the interface number
Answer
  • -v
  • -c
  • -i
  • -l
  • -k

Question 10

Question
Which Snort command line option is used to define the log directory
Answer
  • -v
  • -c
  • -n
  • -l
  • -k
Show full summary Hide full summary

Similar

CEH: IDS, Firewalls and Honeypots Test 2
amandarackham
FIREWALLs
nurdiyanazr
NEGOTIATION
swiftfeather
NEGOTIATION_1
swiftfeather
Weimar Germany 1919: The Spartacists and the constitution
Chris Clayton
Biology Unit 1
anna.mat1997
Pe - Principles of Training
Beccadf 1
Regular and Irregular Verbs - Preterite Tense
Tomja07
2PR101 1.test - 1. část
Nikola Truong
1PR101 2.test - Část 15.
Nikola Truong
LOVE AND RELATIONSHIPS~ AQA POETRY ANTHOLOGY
Fozia Xx