What file extension should be used with fw monitor to allow the output file to be imported and read in Wireshark?
A. .cap
B. .tgz
C. .pcap
D. .exe
正解:A
質問 2:
In what formats can you export license status?
A. CSV, PDF, Template
B. CSV, Word, Notepad
C. PDF, CSV, DLL
D. Word, PDF, exe
正解:A
質問 3:
Which version of SmartConsole is recommended?
A. The latest release based on the version running on the most up-to-date gateway
B. The latest release based on the version running on the management server
C. The latest stable release available
D. The latest release available
正解:C
質問 4:
For Threat Prevention, which process is enabled when the Policy Conversion process has debug turned on using the INTERNAL_POLICY_LOADING=.1 command?
A. cpm
B. dlpd
C. fwm
D. solr
正解:C
質問 5:
The tcpdump and fw monitor commands can both be used to capture packets on the security gateway.
While troubleshooting an issue one may choose to use fw monitor but not tcpdump?
A. traffic needs to be filtered based on source port
B. it is required to verify if a packet is dropped or changed after inspection by a certain kernel module
C. the traffic needs to be captured to a pcap file for later analysis in wireshark
D. the capture process needs to be automated using shell script
正解:B
質問 6:
Jerry is firewall administrator in BRAVO Company. He gets a call from the R&D department Manager who says that some employees from R&D could not access new development server (192.168.60.100), which is in server network behind the Data Center Firewall. Jerry looks at FW logs and found no log records for that server. What should he do next?
A. He must check if the packets are being dropped at the firewall by using command cppcap -f "arp and host 192.168.80.10" -DNT -o /var/log/capture.pcap
B. He must check if the packets are being dropped at the firewall by using command fw ctl zdebug + drop grep 192.168.60.100
C. He must check if the packets are being dropped at the firewall by using command tcpdump -i interface host 192.168.60.100
D. He must check if the packets are being dropped at the firewall by using command fw ctl zdebug + drop dst=192.168 60.100
正解:B
Matsuura -
156-581初学者のわしでも比較的習得しやすいですね。だれよりもラクに156-581合格を勝ちとったぜ。