Last Updated on April 30, 2021 by Admin
What is provided by the fail open and close functionality of Snort IPS?
- blocks the traffic flow or bypasses IPS checking in the event of an IPS engine failure
- keeps track of the health of the Snort engine that is running in the service container
- provides the ability to automatically disable problematic signatures that routinely cause false positives and pass traffic
- keeps Snort current with the latest threat protection and term-based subscriptions
Answers Explanation & Hints: The Snort IPS fail open and close functionality can be configured to block the traffic flow or to bypass IPS checking in the event of IPS engine failure.