exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 65 discussion

Actual exam question from CompTIA's SY0-601
Question #: 65
Topic #: 1
[All SY0-601 Questions]

A cybersecurity administrator needs to implement a Layer 7 security control on a network and block potential attacks. Which of the following can block an attack at
Layer 7? (Choose two.)

  • A. HIDS
  • B. NIPS
  • C. HSM
  • D. WAF
  • E. NAC
  • F. NIDS
Show Suggested Answer Hide Answer
Suggested Answer: BD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
rodwave
Highly Voted 2 years, 5 months ago
Selected Answer: BD
Answer: (B) NIPS and (D) WAF A WAF or web application firewall helps protect web applications by filtering and monitoring HTTP traffic between a web application and the Internet. It typically protects web applications from attacks such as cross-site forgery, cross-site-scripting (XSS), file inclusion, and SQL injection, among others. A WAF is a protocol layer 7 defense (in the OSI model). A network intrusion protection system (NIPS) is an umbrella term for a combination of hardware and software systems that protect computer networks from unauthorized access and malicious activity. NIPS consists of NIDS and IPS. WAF is a firewall. NIPS can operate up to layer 7 by passing or allowing traffic
upvoted 44 times
sujon_london
1 year, 9 months ago
Agreed with ur very well versed explanation. Thank you
upvoted 3 times
...
...
varun0
Highly Voted 2 years, 8 months ago
Selected Answer: BD
B & D seems correct, it has to BLOCK the traffic remember.
upvoted 16 times
...
BD69
Most Recent 1 year, 1 month ago
Selected Answer: BD
WAF, for sure. Modern NIPS work at layer 7 (can inspect HTTP traffic, for example)
upvoted 1 times
...
alicia2024
1 year, 2 months ago
Selected Answer: DF
A NIDS is used to identify and log hosts and applications and to detect attack signatures, password guessing attempts, port scans, worms, backdoor applications, malformed packets or sessions, and policy violations (ports or IP addresses that are not permitted, for instance). You can use analysis of the logs to tune firewall rulesets, remove or block suspect hosts and processes from the network, or deploy additional security controls to mitigate any threats you identify.
upvoted 2 times
...
MortG7
1 year, 4 months ago
D. WAF E. NAC NIPS is a layer 3 & 4 device
upvoted 1 times
BD69
1 year, 1 month ago
NAC is layer 2 & 3
upvoted 1 times
...
...
Jackwasblk
1 year, 5 months ago
NIPS solutions can look at application layer protocols such HTTP, FTP, and SMTP.
upvoted 1 times
...
Protract8593
1 year, 9 months ago
Selected Answer: BD
- B. NIPS (Network Intrusion Prevention System): A NIPS is an intrusion detection system that can actively block and prevent detected threats. It operates at Layer 7 of the OSI model, just like NIDS (Network Intrusion Detection System). However, NIPS goes beyond detection and takes proactive measures to block potential attacks at the network level. - D. WAF (Web Application Firewall): A WAF is a security control that operates at Layer 7 of the OSI model. It is specifically designed to monitor, filter, and block HTTP/HTTPS traffic to and from web applications. By doing so, it can prevent web-based attacks, such as SQL injection, cross-site scripting (XSS), and other OWASP Top 10 vulnerabilities. Why A is wrong according to ChatGPT: A. HIDS (Host Intrusion Detection System): HIDS operates on individual hosts or endpoints and is not specifically focused on Layer 7 protection. It is not designed to block network-based attacks.
upvoted 4 times
BD69
1 year, 1 month ago
hilarious. ChatGPT4 actually selected WAF and HIDS claiming NIPS& NIDS operate at the network layer. Of course, HIDS can't be right because it's for a host, not a network. go figure
upvoted 1 times
...
...
Bro111
1 year, 10 months ago
Selected Answer: AD
HIDS is a Layer 7, not NIPS
upvoted 1 times
Bro111
1 year, 10 months ago
Sorry HIDS is a Layer 7 but it doesn't block attacks.
upvoted 2 times
...
Abdul2107
1 year, 10 months ago
True HIDS is Layer7, but it's Detection, it will not Prevent/Blcok.
upvoted 7 times
...
...
Yawannawanka
2 years ago
The two security controls that can block an attack at Layer 7 are: D. WAF (Web Application Firewall): A WAF is a Layer 7 security control that sits between a web application and the internet, inspecting all incoming and outgoing traffic. It can block attacks targeting web applications, such as SQL injection, cross-site scripting (XSS), and remote file inclusion (RFI), by examining the content of HTTP requests and responses and blocking any that match predefined rules. B. NIPS (Network Intrusion Prevention System): A NIPS is a Layer 7 security control that can inspect and block attacks targeting specific network protocols and applications. It can identify and block attacks at the network layer, transport layer, and application layer, including Layer 7. NIPS uses signature-based detection and behavioral analysis to detect and block known and unknown attacks. Therefore, options B (NIPS) and D (WAF) are the correct answers. The other options, including HIDS, HSM, NAC, and NIDS, do not specifically target Layer 7 and may not be effective at blocking attacks targeting specific applications or protocols.
upvoted 2 times
...
cutemantoes
2 years, 1 month ago
Selected Answer: DE
I initally was going to say NIPS as well. Yes a NIPS blocks traffic but it says at Layer 7. Im pretty sure NIPS operates on layer 3 i believe. So that would mean im guessing the answer is D and E.
upvoted 2 times
z3phyr
2 years, 1 month ago
NAC is network access control. It control access to a network, which has nothing to do with preventing attacks.
upvoted 5 times
z3phyr
2 years, 1 month ago
NAC also operates at level 3, not level 7.
upvoted 4 times
...
...
RevolutionaryAct
1 year, 9 months ago
Not NAC as that's layers 2 and 3 https://www.varonis.com/blog/network-access-control-nac
upvoted 2 times
...
...
GS1011
2 years, 1 month ago
B & D. * Network access control (NAC) is typically implemented at either the data link (layer two) or network layer (layer three) of the open standards interconnection model. Enforcement mechanisms vary between different products, and some have multiple options.
upvoted 3 times
...
scott2969
2 years, 2 months ago
Why not NIDS Network Intrusion Detection System?
upvoted 1 times
CTE_Instructor
2 years, 2 months ago
IDS are designed to detect/alert to events, but not to block or take action. Because the scenario asked for a security control that will block traffic, any IDS option (HIDS or NIDS) should not be selected. IPS options will be prioritized, or firewalls (WAF)
upvoted 3 times
...
...
DALLASCOWBOYS
2 years, 3 months ago
B&D. Web Apllication Firewall is at the Application Layer, and NIPS, is a prevention system.
upvoted 2 times
...
Sandon
2 years, 3 months ago
Selected Answer: DE
ChatGPT says it's WAF and NAC.
upvoted 5 times
datsrobin
2 years, 2 months ago
How come it's saying WAF and NIDS on mine Lol
upvoted 2 times
princajen
2 years, 1 month ago
Mine said WAF and NIPS lol
upvoted 1 times
...
...
...
asum
2 years, 3 months ago
Selected Answer: BD
The IPS sensor analyzes at Layer 2 to Layer 7 the payload of the packets for more sophisticated embedded attacks that might include malicious data.
upvoted 2 times
...
P0wned
2 years, 4 months ago
Selected Answer: DE
D. WAF (Web Application Firewall) and E. NAC (Network Access Control) can block attacks at Layer 7. A HIDS (Host-based Intrusion Detection System) is a security system that monitors and analyzes the logs and events on a single host for signs of potential attacks or malicious activity. It operates at the host level, rather than at the network level, and therefore cannot block attacks at Layer 7. A NIPS (Network Intrusion Prevention System) is a security system that analyzes network traffic in real-time to identify and prevent potential attacks or malicious activity. It operates at the network level, rather than at the host level, and therefore cannot block attacks at Layer 7.
upvoted 1 times
RevolutionaryAct
1 year, 9 months ago
Not NAC as that's layers 2 and 3 https://www.varonis.com/blog/network-access-control-nac
upvoted 1 times
...
...
Jossie_C
2 years, 6 months ago
NIPS consists of NIDS and IPS. WAF is a firewall.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago