exam questions

Exam N10-008 All Questions

View all questions & answers for the N10-008 exam

Exam N10-008 topic 1 question 316 discussion

Actual exam question from CompTIA's N10-008
Question #: 316
Topic #: 1
[All N10-008 Questions]

A security engineer is installing a new IDS on the network. The engineer has asked a network administrator to ensure all traffic entering and leaving the router interface is available for the IDS. Which of the following should the network administrator do?

  • A. Install a network tap for the IDS.
  • B. Configure ACLs to route traffic to the IDS.
  • C. Install an additional NIC into the IDS.
  • D. Install a loopback adapter for the IDS.
  • E. Add an additional route on the router for the IDS.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
LeonardSnart
Highly Voted 1 year, 5 months ago
I do think A is the best out of the options...feel free to correct me if I'm wrong. Mike Meyers "EXAM TIP   Port mirroring isn’t the only way to duplicate network traffic for monitoring and troubleshooting. You can also use a standalone network tap. (Some sources use TAP as an acronym for Traffic Access Port or Test Access Port.) These multi-port hardware devices literally copy 100% of the bits that they see—even errors—and send them out separate ports for monitoring. You’ll see them in scenarios that require non-obtrusive data collection." Some advantages of a tap over a mirrored port are that the tap will perform better under high load and won’t require you to give up scarce switch ports. Plus, they’re invisible to detection, because they have no MAC address or IP address." "An IDS is out-of-band and simply gets copies of network traffic. It can be as simple as a system getting copies of traffic to inspect, through a switch configured to send all traffic to the IDS. Since the IDS is out-of-band, it doesn’t add latency."
upvoted 11 times
famco
1 year ago
If port mirroring was also one of the options, still network tap is the better answer
upvoted 1 times
...
...
salah112
Most Recent 5 months, 1 week ago
Selected Answer: A
To ensure all traffic entering and leaving the router interface is available for the IDS, the network administrator should: A. Install a network tap for the IDS. A network tap is a physical device that can be installed on a network link to passively copy traffic to another device, such as an IDS. It allows the IDS to monitor all traffic on the network segment without introducing any additional points of failure or latency.
upvoted 2 times
...
Mehsotopes
5 months, 2 weeks ago
Selected Answer: A
Net Tap = Used to create a physical connection to the network that will send packets to a monitoring device for capture & analysis. nmap = A net tapping/foot printing tool, or reconnaissance tool.
upvoted 2 times
...
MitchF
7 months, 4 weeks ago
GPT picks (B). Here is why: (A) Installing a network tap for the IDS: Network taps are physical devices used to capture network traffic. While they are effective for monitoring traffic, they are not typically configured directly by network administrators on routers. They are usually installed on network segments. (B) Configuring ACLs to route traffic to the IDS: This is the correct approach. Access Control Lists can be configured on the router to redirect a copy of network traffic to the IDS for analysis without interrupting the regular network traffic flow. (C) Installing an additional NIC into the IDS: Adding another NIC (Network Interface Card) to the IDS could be part of the solution, but it's not sufficient on its own. ACLs or routing rules are typically needed to direct the traffic to the additional NIC. (D) Installing a loopback adapter for the IDS: A loopback adapter is a virtual network interface used for internal network testing but is not suitable for capturing external network traffic."
upvoted 1 times
...
StellarSteve
1 year, 1 month ago
Selected Answer: A
The BEST option for the network administrator to ensure all traffic entering and leaving the router interface is available for the IDS is option A, install a network tap for the IDS. A network tap is a hardware device that provides a way to monitor network traffic by capturing packets as they pass through a specific point on the network. It copies all traffic passing through the router interface, which makes it an ideal solution for capturing all traffic and sending it to the IDS.
upvoted 2 times
...
JakeCharles
1 year, 4 months ago
Selected Answer: A
A. The network administrator should install a network tap for the IDS
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago