Cisco Performing CyberOps Using Core Security Technologies (CBRCOR) 350-201 Question # 22 Topic 3 Discussion

Cisco Performing CyberOps Using Core Security Technologies (CBRCOR) 350-201 Question # 22 Topic 3 Discussion

350-201 Exam Topic 3 Question 22 Discussion:
Question #: 22
Topic #: 3

An engineer receives an incident ticket with hundreds of intrusion alerts that require investigation. An analysis of the incident log shows that the alerts are from trusted IP addresses and internal devices. The final incident report stated that these alerts were false positives and that no intrusions were detected. What action should be taken to harden the network?


A.

Move the IPS to after the firewall facing the internal network


B.

Move the IPS to before the firewall facing the outside network


C.

Configure the proxy service on the IPS


D.

Configure reverse port forwarding on the IPS


Get Premium 350-201 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.