Search Header Logo

Snort Usage Quiz

Authored by Nicole Donnelly

Computers

University

Used 4+ times

Snort Usage Quiz
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

11 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What is Snort primarily used for?

File compression

Network intrusion detection and prevention

Data backup

Web hosting

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

In Snort, which keyword is used to define the action a rule should take?

alert

log

pass

All of the above

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What does the following Snort rule do? alert tcp any any -> 192.168.1.0/24 80 (msg:"Web traffic detected"; sid:100001;)

Blocks HTTP traffic to the specified subnet

Logs any UDP traffic to port 80

Generates an alert for TCP traffic to port 80 in the specified subnet

Drops packets to port 80

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which of the following is a valid protocol for Snort rules?

TCP

UDP

ICMP

All of the above

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

In Snort rules, what does content:"user-agent" signify?

Specifies the sender of the packet

Searches the packet content for the string "user-agent"

Drops packets containing "user-agent"

Generates an alert for any packet

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What does the sid field in a Snort rule represent?

A unique identifier for the rule

The source IP address

The destination port

The action to be performed

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Which operator is used in Snort rules to indicate traffic direction?

:

->

=>

|

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?