Question No. 5 What are the advantages of RMON? [1 mark] Question No. 6 What is
ID: 3679548 • Letter: Q
Question
Question No. 5
What are the advantages of RMON? [1 mark]
Question No. 6
What is the main difference between network traffic monitoring tools and network status tools? [1 mark]
Question No. 7
Lists four basic network mentoring tools, can help a network’s manager to find out the detail of a heavy traffic in his network? [1 mark]
Question No. 8
If one of the server at your network got an attack denial of service (DoS), explain how can the network statistic help you to find the attacker?
Explanation / Answer
Q5.
Advantages of RMON
It improves your efficiency -Using RMON probes allows you to remain at one workstation and collect information from widely dispersed LAN segments or VLANs. This means that the time taken to reach a problem site, set up equipment, and begin collecting information is largely eliminated.
It allows you to manage your network in a more proactive manner- If they are configured correctly, RMON probes deliver information before problems occur. This means that you can take action before they affect users.
It reduces the load on the network and the management workstation Traditional network management involves a management workstation polling network devices at regular intervals to gather statistics and identify problems or trends. As network sizes and traffic levels grow, this approach places a strain on the management workstation and also generates large amounts of traffic. An RMON probe, however, autonomously looks at the network on behalf of the management workstation without affecting the characteristics and performance of the network. The probe reports by exception, which means that it only informs the management workstation when the network has entered an abnormal state.
Increases Productivity for administrators.
Permits monitoring on a more frequent basis and hence faster fault diagnosis.
Needs no direct visibility by NMS; more reliable information.
Q6.
Network monitoring tool captures the packets pass through your network adapter, and displays general statistics about your network traffic. The packets statistics is grouped by the Ethernet Type, IP Protocol, Source/Destination Addresses, and Source/Destination ports. For every statistics line, the following information is displayed: Ethernet Type (IPv4, IPv6, ARP), IP Protocol (TCP, UDP, ICMP), Source Address, Destination Address, Source Port, Destination Port, Service Name (http, ftp, and so on), Packets Count, Total Packets Size, Total Data Size, Data Speed, Maximum Data Speed, Average Packet Size, First/Last Packet Time, Duration, and process ID/Name (For TCP connections).
while network status tools used for : link quality of a list of IP addresses in a configuration file and produce an HTML file as output which indicates the link status. Uses ICMP ping. Log file and log file analyser for producing graphs included.
Q7.
Nagios
OpenNMS
Advanced IP Scanner
NetworkMiner
Q8.
With dotDefender web application firewall you can avoid DoS attacks because dotDefender inspects your HTTP traffic and checks their packets against rules such as to allow or deny protocols, ports, or IP addresses to stop web applications from being exploited.
Architected as plug & play software, dotDefender provides optimal out-of-the-box protection against DoS threats, cross-site scripting, SQL Injection attacks, path traversal and many other web attack techniques.
The reasons dotDefender offers such a comprehensive solution to your web application security needs are:
Easy installation on Apache and IIS servers
Strong security against known and emerging hacking attacks
Best-of-breed predefined security rules for instant protection
Interface and API for managing multiple servers with ease
Requires no additional hardware, and easily scales with your business
Related Questions
drjack9650@gmail.com
Navigate
Integrity-first tutoring: explanations and feedback only — we do not complete graded work. Learn more.