An administrator has enabled IBM Security SiteProtector System (SiteProtector) Management on the IBM Security Network Intrusion Prevention System V4.3 (Network IPS) appliance, but they are unable to locate the appliance in the Agent view of the SiteProtector Console. Which two actions will make the appliance appear in the Console? (Choose two.)
A. check inside the default Network IPS or G-Series groups
B. unregister the appliance and reregister it using Local Settings Override
C. check the appropriate site range under Ungrouped Assets
D. check inside the Locally Configured Agents group
E. run the Add Agent Wizard in the Console
正解:A,C
質問 2:
What are two valid IBM Security Network Intrusion Prevention System application modes? (Choose two.)
A. Inline Protection
B. Inline Capture
C. Monitoring
D. Inline Monitor
E. Active Protection
正解:A,C
質問 3:
A company is having network issues and the administrator suspects it is related to the interface settings. Where in the IBM Security Network Intrusion Prevention System V4.3 Local Management Interface would interface setting issues be updated?
A. under Manage Systems Settings, select Security Interfaces, select Port Speed/Duplex settings
B. under Home Appliance Dashboard, click on the Network Health Dashboard link, select the segment with the issue, right-click on the interface, and select the port settings
C. under Network Settings tab, select TCP/IP settings
D. under Home Appliance Dashboard, locate the interface with issues and right-click on it to select Port Settings
正解:A
質問 4:
What are two purposes for the Quarantine Rules in the Response Tuning page in the Local Management Interface? (Choose two.)
A. define how the appliance should send notifications when it detects an intrusion in the network
B. review rules generated in response to intruder events
C. add new quarantine rules
D. temporarily disable a quarantine rule
E. set network configuration options
正解:B,C
質問 5:
Which service should be checked and verified that it is running on the IBM Security Network Intrusion Prevention System V4.3 if the device has gone offline in IBM Security SiteProtector System?
A. ips-spa
B. iss-spa
C. ips-ipa
D. iss-ipa
正解:B
質問 6:
An administrator has two user defined events with identical names. One is assigned to a global protection domain and the other is assigned to a custom protection domain. Which protection domain reports the generated event?
A. The event would not fire because the appliance would not know how to parse conflicting protection domain policy user-defined events.
B. The event would be generated from the custom protection domain because it overrides the global protection domain policy.
C. The event would generate two separate events, one from the global protection domain and the other from the custom protection domain.
D. The event would be generated from the global protection domain because it overrides the custom protection domain policy.
正解:B
質問 7:
Virtual Local Area Network (VLAN) exclusions have been added to a Protection Domain, however events from those VLANs seem to be generated anyway. What is the most likely cause?
A. Multiple VLANs cannot be excluded in a custom Protection Domain.
B. The same exception has not been created on the Global Protection Domain.
C. A VLAN cannot be excluded in a custom Protection Domain.
D. Incorrect interfaces have been specified in a custom Protection Domain.
正解:D
Yuzuna -
前回の試験では及ばず落ちましが4月の試験でPass4Testのこの問題集を購入して今回合格出来ました。
説明が非常に分かりやすく試験対策にはこの問題集ひとつでオーケーだと思います。