Chapter 15

1: Why does the use of IDSM on the Catalyst switch not affect the Catalyst switch's performance?
A1: Answer: Because the IDS module works on copies of the packets, not the actual packet flow.
2: What is the purpose of the post office daemon?
A2: Answer: The post office daemon is used for communications between the director and the sensor and any services running on them.
3: In which direction should the audit rules be applied on a router's outside interface?
A3: Answer: In the direction of the traffic entering the router from the outside network (inbound).
4: Can two hosts with the same org ID have the same host ID as well?
A4: Answer: No, because host IDs are unique identifiers of systems in a single org.
5: How many audit rules can be applied ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.