View all questions & answers for the NSE 7 - Enterprise Firewall 7.6 Administrator Exam Materials exam


Question 25 Discussion

You need to install a new intrusion prevention system (IPS) profile without triggering false positives that can impact applications and disrupt normal traffic flow. How can you prevent false positives on IPS analysis? (Choose one answer)

  • A. Use an IPS profile with action monitor; however, you must be aware that this can compromise network integrity.
  • B. Use an IPS profile with Scan Outgoing Connections to block botnets, which can create false positives.
  • C. Use the IPS profile extension to select an OS, protocol, and application for all the network internal services and users to prevent false positives.
  • D. Use an IPS profile with action default and analyze the applications.
Correct Answer: A

Brave-Dump Clients Votes

C 50%
A 50%

Comments



Anonymous User 2026-02-09 06:37:49

Selected Answers: C


the question is how to prevent, so i think the answer is C


Mattia Bruno 2026-03-04 10:10:09

Selected Answers: A


It's A, page 177 of the study guide "How to handle false positives" and state to use monitor as action.
I don't even know what "IPS profile extensions" is and if exists