What does packet latency thresholding measure?
A. the total elapsed time it takes to process a packetA one-to-many type of scan, in which an attacker uses a single host to scan a single port on multiple target hosts, indicates which port scan type?
A. port scanControlling simultaneous connections is a feature of which type of preprocessor?
A. rate-based attack preventionSuppose an administrator is configuring an IPS policy and attempts to enable intrusion rules that require the operation of the TCP stream preprocessor, but the TCP stream preprocessor is turned off. Which statement is true in this situation?
A. The administrator can save the IPS policy with the TCP stream preprocessor turned off, but the rules requiring its operation will not function properly.Which feature of the preprocessor configuration pages lets you quickly jump to a list of the rules associated with the preprocessor that you are configuring?
A. the rule group accordionWhich statement represents detection capabilities of the HTTP preprocessor?
A. You can configure it to blacklist known bad web servers.Which option is a remediation module that comes with the Sourcefire System?
A. Cisco IOS Null RouteWhich list identifies the possible types of alerts that the Sourcefire System can generate as notification of events or policy violations?
A. logging to database, SMS, SMTP, and SNMPWhich statement is true when network traffic meets the criteria specified in a correlation rule?
A. Nothing happens, because you cannot assign a group of rules to a correlation policy.What does the whitelist attribute value "not evaluated" indicate?
A. The host is not a target of the whitelist.Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Cisco exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 500-285 exam preparations and Cisco certification application, do not hesitate to visit our Vcedump.com to find your solutions here.