During a security assessment, you are asked which deployment mode to choose for a new intrusion prevention system (IPS). The organization needs the IPS to examine every packet as it traverses the network and immediately drop or rewrite any traffic identified as malicious. Which deployment mode meets this requirement?
An inline deployment positions the security appliance directly in the path of production traffic, allowing it to actively inspect, block, or modify packets in real time based on security policies. Tap, out-of-band monitoring, and passive sensor placements receive only a copy of the traffic; they can detect threats but cannot alter the original packet flow, so they do not satisfy the requirement.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is the role of an inline security device in a network?
Open an interactive chat with Bash
How does a tap device differ from an inline security device?
Open an interactive chat with Bash
What is a passive sensor used for in network security?