Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 445 discussion

Actual exam question from ISC's CISSP
Question #: 445
Topic #: 1
[All CISSP Questions]

What is the MOST effective way to mitigate distributed denial of service (DDoS) attacks?

  • A. Deploy a web application firewall (WAF).
  • B. Block access to Transmission Control Protocol (TCP) ports under attack.
  • C. Detect and block bad Internet Protocol (IP) subnets on the corporate firewall.
  • D. Engage an upstream Internet service provider (ISP).
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
JohnyDal
Highly Voted 1 year, 9 months ago
Selected Answer: D
I will go with D. Engage ISP...Reduce Attack Surface Area One of the first techniques to mitigate DDoS attacks is to minimize the surface area that can be attacked We are not told which layer ddos are we dealing with. WAF wont help against layer-3-4 DDoS,
upvoted 7 times
...
YesPlease
Most Recent 11 months, 1 week ago
Answer D) Engaging an upstream Internet Service Provider (ISP) This entire NIST document is referencing upstream ISP as a mitigation option. https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-189.pdf
upvoted 2 times
...
Soleandheel
11 months, 1 week ago
D. Engaging an upstream Internet Service Provider (ISP) can be helpful in mitigating Distributed Denial of Service (DDoS) attacks because the upstream ISP can take proactive measures to prevent or filter out malicious traffic before it reaches the organization's network.
upvoted 1 times
...
SpaceMonkey1
1 year ago
By working with the upstream ISP, traffic can be filtered and blocked before it reaches the target organization's network. ISPs often have more significant resources and specialized tools to handle large-scale DDoS attacks, and they can implement traffic filtering mechanisms to mitigate the impact. This approach helps prevent the malicious traffic from overwhelming the organization's network infrastructure in the first place. While deploying a web application firewall (WAF), blocking specific TCP ports, and detecting and blocking bad IP subnets on the corporate firewall are also valid strategies, engaging an upstream ISP is often more effective against large-scale DDoS attacks that may otherwise saturate the organization's internet bandwidth and overwhelm its defenses.
upvoted 2 times
...
HughJassole
1 year, 5 months ago
An ISP doesn't block traffic, they provide access. If you have a service like Akamai, which is a content delivery network, they can block, but not your ISP. C. Block the bad addresses at the firewall
upvoted 1 times
Jacobmy98
1 year, 3 months ago
your ISP can definitely block malicious traffic.....
upvoted 1 times
...
...
babaseun
1 year, 7 months ago
Selected Answer: C
To stop a distributed attack, a website should be able to differentiate between an attack and a high volume of legitimate traffic. IP reputation, previous data, and common attack patterns are able to help with the detection of an actual attack.
upvoted 1 times
jackdryan
1 year, 6 months ago
A is correct
upvoted 1 times
...
...
yottabyte
1 year, 9 months ago
Selected Answer: A
Got to go with A here. I know AWS uses WAF to prevent DDoS attacks. A web application firewall (WAF) is a type of firewall that monitors, filters or blocks incoming traffic to a web application. It is designed to protect web applications from attacks such as DDoS attacks. A WAF can prevent a DDoS attack by blocking or rate-limiting incoming traffic that is deemed to be malicious.
upvoted 1 times
sausageman
1 year, 8 months ago
A DDoS doesn't need to be in a web application, so a WAF wouldn't solve the problem
upvoted 2 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...