What is the proper answer here? - ProProfs Discuss
Advertisement

What is the proper answer here?

 Darius is analysing logs from IDS. He want to understand what have triggered one alert and verify if it's true positive or false positive. Looking at the logs he copy and paste basic details like below: source IP: 192.168.21.100 source port: 80 destination IP: 192.168.10.23 destination port: 63221

Asked by Terryvx, Last updated: Apr 12, 2024

+ Answer
Request
Question menu
Vote up Vote down

1 Answer

terry519vx

terryvx

terry519vx
Terryvx

Answered Feb 08, 2019

This is most probably false-positive, because an alert triggered on reversed traffic.
upvote downvote
Reply 

Advertisement
Advertisement
Search for Google images Google Image Icon
Select a recommended image
Upload from your computer Loader
Image Preview
Search for Google images Google Image Icon
Select a recommended image
Upload from your computer Loader
Image Preview
Search for Google images Google Image Icon
Select a recommended image
Upload from your computer Loader

Email Sent
We have sent an email to your address "" with instructions to reset your password.