GIAC GCIA – GIAC Certified Intrusion Analyst Practice Test GCIA Question # 9 Topic 1 Discussion

GIAC GCIA – GIAC Certified Intrusion Analyst Practice Test GCIA Question # 9 Topic 1 Discussion

GCIA Exam Topic 1 Question 9 Discussion:
Question #: 9
Topic #: 1

Which of the following statements best describes the string matching method of signature analysis?


A.

String matching searches specific strings that may indicate an attack.


B.

String matching examines multiple fields from different protocols, such as source address, destination port, or TCP flags.


C.

In string matching, each packet is wrapped in predefined layers of different protocols.


D.

In string matching, an incoming packet is compared, byte by byte, with a single signature, a string of code.


Get Premium GCIA Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.