Which protection engine should be enabled to drop malicious vulnerability scans against a client system?
A. SONAR
B. Application and Device Control
C. Tamper Protection
D. Intrusion Prevention
正解:D
質問 2:
Which Symantec Endpoint Protection defense mechanism provides protection against threats that propagate from system to system through the use of autorun.inf files?
A. TruScan
B. SONAR
C. Application and Device Control
D. Host Integrity
正解:C
質問 3:
Which two sources can a Macintosh client use to download content? (Select two.)
A. Default Management server
B. Symantec Endpoint Protection Manager
C. Symantec LiveUpdate server
D. Internal LiveUpdate server
E. Group Update Provider (GUP)
正解:C,D
質問 4:
A company needs to configure an Application and Device Control policy to block read/write access to all USB removable media on its Symantec Endpoint Protection (SEP) systems.
Which tool should an administrator use to format the GUID and device IDs as required by SEP?
A. CheckSum.exe
B. TaskMgr.exe
C. DevViewer.exe
D. DeviceTree.exe
正解:C
質問 5:
Which two instances could cause Symantec Endpoint Protection to be unable to remediate a file? (Select two.)
A. The file has good reputation.
B. The file is marked for deletion by Windows on reboot.
C. The detected file is in use.
D. There are insufficient file permissions.
E. Another scan is in progress.
正解:C,D
質問 6:
A Symantec Endpoint Protection administrator is using System Lockdown in blacklist mode with a file fingerprint list. When testing a client, the administrator notices that at least one of the files on the list is allowed to execute.
What is the likely cause of the problem?
A. A file exception has been added to the Exceptions policy.
B. The application has been upgraded.
C. The Application and Device Control policy is in test mode.
D. The Application and Device Control policy is allowing the file to execute.
正解:B
質問 7:
Which two Symantec Endpoint Protection components are used to distribute content updates? (Select two.)
A. Symantec Endpoint Protection Manager
B. Symantec Insight Database
C. Shared Insight Cache Server
D. Symantec Protection Center
E. Group Update Provider (GUP)
正解:A,E
質問 8:
An administrator configures the scan duration for a scheduled scan. The scan fails to complete in the specified time period.
When will the next scheduled scan occur on the computer?
A. within the next hour
B. when the computer reboots
C. when the user restarts the scan
D. at the next scheduled scan period
正解:D
Nishio -
250-315試験のために、250-315練習資料を買うことは最も最善の選択です。素晴らしい商品です!