Cisco Securing Cisco Networks with Sourcefire Intrusion Prevention System - 500-285 Exam Practice Test

Which statement regarding user exemptions is true?
Correct Answer: C
A one-to-many type of scan, in which an attacker uses a single host to scan a single port on multiple target hosts, indicates which port scan type?
Correct Answer: B
Which event source can have a default workflow configured?
Correct Answer: D
In addition to the discovery of new hosts, FireSIGHT can also perform which function?
Correct Answer: D
Which option is one of the three methods of updating the IP addresses in Sourcefire Security Intelligence?
Correct Answer: A
Which statement is true regarding malware blocking over HTTP?
Correct Answer: A