• Post author:
  • Post category:Blog
  • Reading time:1 mins read
  • Post last modified:June 12, 2024

Which rule action will cause Snort IPS to block and log a packet?

  • log
  • drop
  • alert
  • Sdrop
    Answers Explanation & Hints:

    Snort IPS mode can perform all the IDS actions plus the following:
    – Drop – Block and log the packet.
    – Reject – Block the packet, log it, and then send a TCP reset if the protocol is TCP or an ICMP port unreachable message if the protocol is UDP.
    – Sdrop – Block the packet but do not log it.

Subscribe
Notify of
guest
0 Comments
Newest
Oldest Most Voted
Inline Feedbacks
View all comments