ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
A security engineer must add an open-source network IDS to monitor all traffic entering the company's DMZ. Management insists that the new device must not introduce latency or become a single point of failure. Which deployment strategy best meets these requirements while keeping the IDS in passive mode?
Cascade the IDS transparently between the perimeter firewall and the DMZ switch using two bridged interfaces.
Attach the IDS to a switched port analyzer (SPAN) port on the DMZ switch that mirrors all inbound and outbound packets.
Replace the existing edge router with the IDS configured to perform routing and inspection.
Configure every DMZ host to route its traffic through the IDS acting as an explicit proxy.
Connecting the IDS to a switch mirror (SPAN) port copies DMZ traffic to the sensor without placing the IDS in the forwarding path. Because the IDS only receives a duplicate stream, it cannot delay or block production packets, and any failure of the IDS does not affect normal traffic flow. Bridging the IDS between devices, replacing the router, or forcing hosts to use the IDS as a proxy would all insert the sensor inline, adding latency and creating potential points of failure-violating the stated constraints.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a SPAN port and how does it work?
Open an interactive chat with Bash
Why does placing the IDS inline introduce latency and risk?
Open an interactive chat with Bash
What is the difference between active and passive IDS modes?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Network and Communication Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .