CCSP Exam QuestionsBrowse all questions from this exam

CCSP Exam - Question 269


Although host-based and network-based IDSs perform similar functions and have similar capabilities, which of the following is an advantage of a network-based

IDS over a host-based IDS, assuming all capabilities are equal?

Show Answer
Correct Answer: A

A network-based IDS has the advantage of being segregated from host systems, which means it is less likely to be compromised in the same manner as a host-based system. This segregation enhances security by allowing the IDS to monitor network traffic independently of the integrity of individual hosts, making it more resilient to attacks targeting specific systems. Network access is not a valid advantage since both types of IDS would have access to network resources. Scalability, while important, does not directly address the security-specific benefits of segregation. External to system patching is also a lesser concern compared to the primary advantage of segregation.

Discussion

6 comments
Sign in to comment
babusartop17Option: C
Jun 22, 2021

Scalibility should be the answer.

cmarcos97
Sep 6, 2021

Scalability in cloud computing refers to the ability to increase or decrease IT resources as needed to meet changing demand.

akg001Option: C
May 19, 2022

C. Scalability

Pika26Option: C
May 13, 2023

C: Scalability

[Removed]Option: B
Jan 6, 2022

NIDS would have network access as opposed to HIDS which only have host related network access.

TraceSpliceOption: A
Mar 23, 2024

The "best" answer is A.

Mo22Option: A
Apr 18, 2024

For the context of CCSP, when discussing the advantage of network-based IDS over host-based IDS, considering that all other capabilities are equal, one significant advantage of a network-based IDS is indeed its segregation from host systems (Option A). This positioning allows the network-based IDS to monitor traffic and activities without being directly affected by compromises or alterations on individual host systems.