ExamGecko
Question list
Search
Search

Question 63 - 350-701 discussion

Report
Export

Which two application layer preprocessors are used by Firepower Next Generation Intrusion Prevention System? (Choose two)

A.

packet decoder

Answers
A.

packet decoder

B.

SIP

Answers
B.

SIP

C.

modbus

Answers
C.

modbus

D.

inline normalization

Answers
D.

inline normalization

E.

SSL

Answers
E.

SSL

Suggested answer: B, E

Explanation:

Application layer protocols can represent the same data in a variety of ways. The Firepower System provides application layer protocol decoders that normalize specific types of packet data into formats that the intrusion rules engine can analyze. Normalizing application-layer protocol encodings allows the rules engine to effectively apply the same content-related rules to packets whose data is represented differently and obtain meaningful results.

Reference:

https://www.cisco.com/c/en/us/td/docs/security/firepower/60/configuration/guide/fpmc-configguidev60/Application_Layer_Preprocessors.html#ID-2244-0000080cFirePower uses many preprocessors, including DNS, FTP/Telnet, SIP, SSL,

SMTP, SSH preprocessors.

asked 10/10/2024
AN KANGWOOK
46 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first