
642 -531
Leading the way in IT testing and certification tools, www.testking.com
- 4 -
Section 2: Configure a signature's enable status, severity level, and action (2 questions)... 67
Section 3: Create signature filters to exclude or include a specific signature or list of
signatures (3 questions) ........................................................................................................ 68
Section 4: Tune a signature to perform optimally based on a network's characteristics (3
questions).............................................................................................................................. 70
Section 5: Create a custom signature given an attack scenario (1 question)........................ 71
Topic 6, Configure a Cisco IDS Sensor to perform device management of supported blocking
devices (22 questions) .............................................................................................................. 73
Section 1: Describe the device management capability of the Sensor and how it is used to
perform blocking with a Cisco device (7 questions)............................................................ 73
Section 2: Design a Cisco IDS solution using the blocking feature, including the ACL
placement considerations, when deciding where to apply Sensor-generated ACLs (7
questions).............................................................................................................................. 76
Section 3: Configure a Sensor to perform blocking with a Cisco IDS device (2 questions) 79
Section 4: Configure a Sensor to perform blocking through a Master Blocking Sensor (6
questions).............................................................................................................................. 80
Topic 7, Describe the Cisco IDS signatures and determine the immediate threat posed to the
network (23 questions) ............................................................................................................. 84
Section 1: Explain the Cisco IDS signature features (7 questions)...................................... 84
Section 2: Select the Cisco IDS signature engine to create a custom signature (9 questions)
.............................................................................................................................................. 87
Section 3: Explain the global Cisco IDS signature parameters (4 questions) ...................... 92
Section 4: Explain the engine-specific signature parameters (4 questions) ......................... 94
Topic 8, Perform maintenance operations such as signature updates, software upgrades, data
archival and license updates (15 questions) ............................................................................. 99
Section 1: Identify the correct IDS software update files for a Sensor and an IDSM (3
questions).............................................................................................................................. 99
Section 2: Install IDS signature updates and service packs (7 questions).......................... 101
Section 3: Upgrade a Sensor and an IDSM to an IDS major release version (5 questions)
............................................................................................................................................ 104
Topic 9, Describe the Cisco IDS architecture including supporting services and configuration
files (18 questions) ................................................................................................................. 107
Section 1: Explain the Cisco IDS directory structure (0 questions)................................... 107
Section 2: Explain the communication infrastructure of the Cisco IDS (8 questions)....... 107
Section 3: Locate and identify the Cisco IDS log and error files (2 questions) ................. 111
Section 4: List the Cisco IDS services and their associated configuration files (7 questions)
............................................................................................................................................ 113
Section 5: Describe the Cisco IDS configuration files and their function (1 question) ..... 116
Topic 10, Monitor a Cisco IDS protection solution for small and medium networks (11
questions)................................................................................................................................ 117
Section 1: Explain the features and benefits of IEV (1 question) ...................................... 117
Section 2: Identify the requirements for IEV (0 questions) ............................................... 117
Section 3: Install the IEV software and configure it to monitor IDS devices (4 question) 117
Section 4: Create custom IEV views and filters (1 questions) ........................................... 119
Section 5: Navigate IEV to view alarm details (2 questions)............................................. 119
Section 6: Perform IEV database administration functions (1 question) ........................... 122
Section 7: Configure IEV application settings and preferences (2 questions) ................... 122
Topic 11, Manage a large scale deployment of Cisco IDS Sensors with Cisco IDS
Management software (20 questions)..................................................................................... 124
Section 1: Define features and key concepts of the IDS MC (4 questions) ....................... 124
Komentarze do niniejszej Instrukcji