Which statement about IPS is true?

Prepare for the eLearnSecurity Junior Penetration Tester exam with our comprehensive quiz platform. Improve your skills with multiple-choice questions, detailed explanations, and exam tips. Get exam ready with ease!

Multiple Choice

Which statement about IPS is true?

Explanation:
An IPS inspects traffic in real time and can take action when a threat is detected. It uses known attack signatures or unusual behavior to assign a risk level to each pattern. When that risk exceeds a predefined threshold, the IPS drops the malicious request or resets the connection, effectively preventing the intrusion. This inline blocking capability is what differentiates an IPS from a system that only logs events, and it works alongside a firewall rather than replacing it. The other statements don’t fit because an IPS does not block all traffic indiscriminately, it does more than just logging, and it isn’t intended to replace a firewall.

An IPS inspects traffic in real time and can take action when a threat is detected. It uses known attack signatures or unusual behavior to assign a risk level to each pattern. When that risk exceeds a predefined threshold, the IPS drops the malicious request or resets the connection, effectively preventing the intrusion. This inline blocking capability is what differentiates an IPS from a system that only logs events, and it works alongside a firewall rather than replacing it. The other statements don’t fit because an IPS does not block all traffic indiscriminately, it does more than just logging, and it isn’t intended to replace a firewall.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy