Search Header Logo

Writing Snort Rules

Authored by Steven Hahn

Computers

10th - 12th Grade

Used 17+ times

Writing Snort Rules
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

20 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

If you need to write a long rule in Snort, what symbol do you use?

*

l

/

\

2.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

What are the two sections of a Snort rule?

header and options

host and client

internal and external

action and process

3.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

The rule options section is:

required

defined by switches

used to tighten rules and prevent false positives

mandatory for alerts

4.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Rule actions are implemented if:

any of the conditions are true

all of the conditions are true

at least half of the conditions are true

if two or more conditions are true

5.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

Rule options are identified by:

()

||

\\

//

6.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

In the example rule at the bottom of page 182, "content" and "msg" are

commands

rules

keywords

headers

7.

MULTIPLE CHOICE QUESTION

30 sec • 1 pt

In the example rule on page 182, "alert" is:

action

keyword

header

category

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?