100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

CSCI 5200 FINAL PT- 1 CH13-CH17 ACTUAL EXAM QUESTIONS AND CORRECT DETAILED ANSWERS (VERIFIED ANSWERS).docx

Rating
-
Sold
-
Pages
27
Grade
A+
Uploaded on
19-12-2025
Written in
2025/2026

CSCI 5200 FINAL PT- 1 CH13-CH17 ACTUAL EXAM QUESTIONS AND CORRECT DETAILED ANSWERS (VERIFIED ANSWERS).docx

Institution
CS,.
Course
CS,.










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
CS,.
Course
CS,.

Document information

Uploaded on
December 19, 2025
Number of pages
27
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

CSCI 5200 FINAL PT- 1 CH13-CH17
ACTUAL EXAM QUESTIONS AND
CORRECT DETAILED ANSWERS
(VERIFIED ANSWERS)
1. (p. 426) Network-based IDS (NIDS) examines activity on a system,
such as a mail server or web server. (T/F) -
correct answer ✅F


2. (p. 429) Context-based signatures match a pattern of activity
based on the other activity around it, such as a port (T/F) -
correct answer ✅T


3. (p. 430) Hostile activity that does not match an IDS signature and
goes undetected is called a false positive. (T/F) -
correct answer ✅F


4. (p. 442) Traffic that is encrypted will typically pass by an intrusion
prevention system untouched. (T/F) -
correct answer ✅T


5. (p. 448) Performing cloud-based data loss prevention (DLP) is as
simple as moving the enterprise edge methodology to the cloud.
(T/F) -
correct answer ✅F

, CSCI 5200 FINAL PT- 1 CH13-CH17
ACTUAL EXAM QUESTIONS AND
CORRECT DETAILED ANSWERS
(VERIFIED ANSWERS)

6. (p. 426) What does a host-based IDS monitor?
•A. Activity on an individual system
•B. Activity on the network itself
•C. A honeynet
•D. A digital sandbox -
correct answer ✅•A. Activity on an individual system


•7. (p. 426) Which component of an IDS examines the collected
network traffic and compares it to known patterns of suspicious or
malicious activity stored in the signature database?
•A. Traffic collector
•B. Analysis engine
•C. Signature database
•D. Examination collector -
correct answer ✅•B. Analysis engine


•8. (p. 434) What is an advantage of a network-based IDS?he
difference between misuse and anomaly IDS models is

, CSCI 5200 FINAL PT- 1 CH13-CH17
ACTUAL EXAM QUESTIONS AND
CORRECT DETAILED ANSWERS
(VERIFIED ANSWERS)
•A. An IDS can examine data after it has been decrypted.
•B. An IDS coverage requires fewer systems.
•C. An IDS can be very application specific.
•D. An IDS can determine whether or not an alarm may impact that
specific system. -
correct answer ✅•B. An IDS coverage requires fewer systems.


•9. (p. 435) Which tool has been the de facto standard IDS engine
since its creation in 1998?
•A. Squid
•B. Snort
•C. Bro
D. Suricata -
correct answer ✅•B. Snort


10. (p. 439) What is an advantage of a host-based IDS?
•A. It can reduce false-positive rates.
•B. Its signatures are broader.
•C. It can examine data before it is decrypted.

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Cindellera stuvia
View profile
Follow You need to be logged in order to follow users or courses
Sold
111
Member since
1 year
Number of followers
2
Documents
10567
Last sold
1 day ago

4.0

24 reviews

5
10
4
6
3
6
2
1
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their exams and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can immediately select a different document that better matches what you need.

Pay how you prefer, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card or EFT and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions