CompTIA Security+ Exam Prep

Category - Operations

What is a term for programs or devices able to examine traffic on a LAN segment?
  1. Statistical anomaly-based IDS
  2. Network Sniffers
  3. Network-based Detection
  4. Host-based Detection
Explanation
Answer: B - Network sniffers are programs or devices able to examine traffic on a LAN segment. Traffic that is being transferred over a network medium is transmitted as electrical signals, encoded in binary representation. The sniffer has to have a protocol-analysis capability to recognize the different protocol values to properly interpret their meaning. The sniffer has to have access to a network adapter that works in promiscuous mode and a driver that captures the data.
Was this helpful? Upvote!
Login to contribute your own answer or details

Top questions

Related questions

Most popular on PracticeQuiz