Which statement concerning IPS is false?

Which statement concerning IPS is false?
A. IPS packages contain an engine and signatures used by both IPS and other flow-based scans.
B. One-arm topology with sniffer mode improves performance of IPS blocking.
C. IPS can detect zero-day attacks.
D. The status of the last service update attempt from FortiGuard IPS is shown on System>Config>FortiGuard and in output from ‘diag autoupdate version’

Download Printable PDF. VALID exam to help you PASS.

6 thoughts on “Which statement concerning IPS is false?

  1. one-arm has better performance if comparing to nat mode. C looks wrong to me. IPS is signature based and therefore cannot detect zero-day theoretically. even checkpoint and palo alto state the same thing on their sandbox

Leave a Reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.