View all questions & answers for the NSE 7 - Enterprise Firewall 7.6 Administrator Exam Materials exam


NSE 7 - Enterprise Firewall 7.6 Administrator Exam Materials-Question 25 Discussion

You need to install a new intrusion prevention system (IPS) profile without triggering false positives that can impact applications and disrupt normal traffic flow. How can you prevent false positives on IPS analysis? (Choose one answer)

  • A. Use an IPS profile with action monitor; however, you must be aware that this can compromise network integrity.
  • B. Use an IPS profile with Scan Outgoing Connections to block botnets, which can create false positives.
  • C. Use the IPS profile extension to select an OS, protocol, and application for all the network internal services and users to prevent false positives.
  • D. Use an IPS profile with action default and analyze the applications.
Correct Answer: A

Brave-Dump Clients Votes

A 75%
C 25%

Comments



Anonymous User 2026-02-09 06:37:49

Selected Answers: C


the question is how to prevent, so i think the answer is C


Mattia Bruno 2026-03-04 10:10:09

Selected Answers: A


It's A, page 177 of the study guide "How to handle false positives" and state to use monitor as action.
I don't even know what "IPS profile extensions" is and if exists


Asad Raza 2026-03-16 09:23:50

Selected Answers: A


Page 177 of the study guide. C will in fact result in false positives as stated on page 175 of the study guide.


Anonymous User 2026-04-19 20:49:44

Selected Answers: A


Enterprise_Firewall_7.6_Administrator_Study_Guide Page 177