exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 12 discussion

Actual exam question from CompTIA's CAS-004
Question #: 12
Topic #: 1
[All CAS-004 Questions]

A company is looking to fortify its cybersecurity defenses and is focusing on its network infrastructure. The solution cannot affect the availability of the company's services to ensure false positives do not drop legitimate traffic.
Which of the following would satisfy the requirement?

  • A. NIDS
  • B. NIPS
  • C. WAF
  • D. Reverse proxy
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CKRET
Highly Voted 3 years, 2 months ago
A. NIDS A NIPS will drop false positives. https://owasp.org/www-community/controls/Intrusion_Detection
upvoted 18 times
...
ts260
Highly Voted 2 years, 8 months ago
Selected Answer: A
NIDS will not drop traffic
upvoted 9 times
...
blacksheep6r
Most Recent 2 months, 3 weeks ago
Selected Answer: A
The correct answer is A) NIDS (Network Intrusion Detection System). ✅ Explanation: NIDS (Network Intrusion Detection System) monitors network traffic for suspicious activity without actively blocking traffic. Since it only detects and alerts, it does not introduce the risk of dropping legitimate traffic.
upvoted 1 times
...
joschmo
2 months, 3 weeks ago
Selected Answer: A
NIDS is passive
upvoted 1 times
...
23169fd
9 months, 2 weeks ago
Selected Answer: A
It provides monitoring and alerting capabilities without actively interfering with the traffic flow, thereby ensuring legitimate traffic is not droppe
upvoted 2 times
...
Bright07
10 months, 3 weeks ago
NIDS stands for Network Intrusion Detection System. This system monitors the traffic on the network for any suspicious activity and sends alerts when such activity is detected. It's a passive system, meaning it won't take any action other than alerting the specified recipients. The key point here is that NIDS does not affect the availability of the company's services. It does not block any traffic itself, even if it's malicious. This ensures that false positives (legitimate traffic that is incorrectly flagged as malicious) do not disrupt the company's services. In contrast, a Network Intrusion Prevention System (NIPS), a Web Application Firewall (WAF), and a Reverse Proxy could potentially block traffic, which could lead to service disruption if there are false positives. Therefore, NIDS would be the best choice given the company's requirements.
upvoted 4 times
...
Delab202
1 year, 3 months ago
Selected Answer: C
Given the requirement that the solution cannot affect the availability of the company's services to ensure false positives do not drop legitimate traffic, the most suitable option is: C. WAF (Web Application Firewall) Explanation: WAF (Web Application Firewall): A WAF is designed to protect web applications from various attacks, including SQL injection, cross-site scripting (XSS), and other web-based threats. It operates at the application layer and can filter, monitor, and block HTTP traffic between a web application and the Internet. WAFs are generally configured to minimize false positives and ensure legitimate traffic is not disrupted.
upvoted 2 times
Trap_D0_r
1 year, 3 months ago
A WAF protects a public facing application against common attacks. The question specifically states the company is focusing on securing it's network infrastructure (i.e. the inside of the network, not just a public facing application or edge server). In this context, a NIDS makes the most sense.
upvoted 3 times
...
...
BiteSize
1 year, 9 months ago
Selected Answer: A
NIDS = Snort/Suricata = Passive Alerting It will not affect the network; all the others run that risk. Source: Verifying each answer against Chat GPT, my experience, other test banks, a written book, and weighing in the discussion from all users to create a 100% accurate guide for myself before I take the exam. (It isn't easy because of the time needed, but it is doing my diligence)
upvoted 5 times
...
fb2fcb1
1 year, 9 months ago
Selected Answer: A
A. NIDS A Network Intrusion Detection System (NIDS) would be the best fit for this scenario. NIDS monitors network traffic for suspicious activity or known threats and generates alerts when detected. It operates in a passive mode, simply monitoring and alerting, which means it wouldn't affect network availability as it does not take action to block or drop packets like a Network Intrusion Prevention System (NIPS) would. A Web Application Firewall (WAF) primarily focuses on application-layer threats, not network-level threats. A reverse proxy wouldn't be the best option either as it primarily aids in load balancing and distribution, it doesn't focus specifically on threat detection or prevention.
upvoted 4 times
...
FOURDUE
2 years, 3 months ago
Selected Answer: A
Network Intrusion Detection System: They are strategically located across the network to monitor traffic from all devices connected to the Internet. Primarily, it performs an analysis of passing traffic on the whole subnet and compares that information to a database of known threats. When it detects an assault or detects strange activity, it alerts the administrator.
upvoted 4 times
...
acristian_111
2 years, 9 months ago
Selected Answer: A
I agree with A
upvoted 5 times
...
easternisme
2 years, 9 months ago
Selected Answer: A
NIDS won't drop false positives
upvoted 3 times
...
Carlos_McArturo
2 years, 10 months ago
So are these answers wrong on the actual test or just wrong in the study guide? I need to know which answers will lead to a successful exam, not necessarily which answer is "correct".
upvoted 5 times
...
Mara03
2 years, 10 months ago
A is correct. Prevention drops, Detection warns.
upvoted 2 times
...
RevZig67
2 years, 11 months ago
Selected Answer: A
Keyword is Network Infrastructure that does NOT affect the availability.
upvoted 3 times
...
JayJ_L
3 years ago
NIPS monitors the network and protects its privacy, integrity, and availability.
upvoted 2 times
...
pthread1
3 years, 1 month ago
Answer is A. NIDS
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago