Trend Deep-Security-Professional Exam - Topic 1 Question 29 Discussion
A Recommendation Scan is run to determine which Intrusion Prevention rules are appropriate for a Server. The scan is configured to apply the suggested rules automatically and ongoing scans are enabled. Some time later, an operating system patch is applied. How can you de-termine which Intrusion Prevention rules are no longer needed on this Server?
B) Since the rules are being applied automatically, when the next Intrusion Prevention Recommendation Scan is run automatically, any rules that are no longer needed will be automatically unassigned. These are rules that are no longer needed as the vulnerability was corrected with the patch.
A) The READ ME file provided with the software patch will indicate which issues were addressed with this release. Compare this list to the rules that are applied to determine which rules are no longer needed and can be disabled.
C) Since there is no performance effect when multiple Intrusion Prevention rules are ap-plied, there is no need to determine which rules are no longer needed. The original rec-ommended rules can remain in place without affecting the system.
C) Since the rules are being applied automatically, when the next Intrusion Prevention Recommendation Scan is run automatically, any rules that are no longer needed will be displayed on the Recommended for Unassignment tab in the IPS Rules. These are rules that are no longer needed and can be disabled as the vulnerability was corrected with the patch.
Brock
7 months agoDelsie
8 months agoChu
8 months agoFrederica
8 months agoEva
8 months agoCassie
9 months agoQuentin
9 months agoEvelynn
9 months agoDevora
9 months agoMitsue
9 months agoWenona
9 months agoBrandee
9 months agoSoledad
9 months agoAlberto
9 months agoTiffiny
9 months agoGraham
9 months agoMitsue
10 months agoLeoma
10 months agoTony
2 years agoPedro
2 years agoSharika
2 years agoHayley
2 years agoOcie
2 years agoKing
2 years agoJanessa
2 years agoHeike
2 years agoJanella
2 years ago