Which file can be imported or compiled, and defines the format of SNMP traps for security events responses in the IBM Security Network Intrusion Prevention System appliance?
A. snmp.mib
B. linux.mib
C. iss.mib
D. ibm.mib
正解:C
質問 2:
What event would trigger sending a policy update to an IBM Security Network Intrusion Prevention System V4.3?
A. The Agent Manager receives an encrypted heartbeat from the appliance.
B. A Refresh Agent is performed on the sensor in the IBM Security SiteProtector System Console.
C. The Application Server accesses a PHP script on the appliance.
D. The sensor contacts the Agent Manager on port 3994.
正解:A
質問 3:
What does an offline status for an IBM Security Network Intrusion Prevention System V4.3 (Network IPS) in IBM Security SiteProtector System (SiteProtector) mean?
A. The Network IPS has not sent a security event to the Event Collector in an amount of time specified by the unresponsive agent threshold settings in SiteProtector.
B. The Network IPS has not sent a security event to the Agent Manager in an amount of time specified by the unresponsive agent threshold settings in SiteProtector.
C. The Network IPS has not sent a heartbeat to the Agent Manager in an amount of time specified by the unresponsive agent threshold settings in SiteProtector.
D. The Network IPS has not sent a heartbeat to the Event Collector in an amount of time specified by the unresponsive agent threshold settings in SiteProtector.
正解:C
質問 4:
To properly utilize the dual network processors, what is the best installation option for a mix of 1G and 10G cabling for a GX7800?
A. The first ports must be 10G followed by 1G.
B. A mix of 10G and 1G cables is not supported.
C. All even ports must be 10G.
D. All odd ports must be 10G.
正解:A
質問 5:
Where is the messages file downloaded using the Local Management Interface?
A. Manage System Settings
B. Monitor Health and Statistics
C. Home Appliance Dashboard
D. Review Analysis and Diagnostics
正解:D
質問 6:
What are two characteristics of inline protection mode? (Choose two.)
A. Traffic is inspected and forwarded through the appliance.
B. It allows active block responses.
C. It does not allow block responses.
D. It does not actively block traffic but logs what would have been blocked.
E. Traffic is inspected but does not forward through the appliance.
正解:A,B
質問 7:
Where is the IBM Security Network Intrusion Prevention System V4.3 (Network IPS) Management Interface IPv6 address and gateway set in IBM Security SiteProtector System?
A. open the Management and TCP Reset Interfaces policy under Agent-Specific Policies for the Network IPS
B. in the properties for the Network IPS agent under the Management Interface
C. open the Security Interfaces Policy under Agent-Specific Policies for the Network IPS
D. right-click on the Network IPS agent in the Agent view and select Management Settings
正解:A
質問 8:
A Protection Domain will be deleted but all references to it must be removed first. Which policy must be edited?
A. Quarantine Rules
B. User Defined Events
C. Open Signatures
D. Connection Events
正解:B
質問 9:
Which two connection methods are used to manage IBM Security Network Intrusion Prevention System V4.3 appliances? (Choose two.)
A. serial console
B. HTTPS
C. RDP
D. telnet
E. rlogin
正解:A,B