A System Administrator has been seeing a lot of SSLv2-Weak_Cipher attacks reported on the network and wants to increase the severity of the events.
How can this be accomplished?
A. increase the X-Force Protection Level for the Intrusion Prevention Object.
B. Modify the Threat Level of the signature.
C. Create an Incident in SiteProtector for SSLv2_Weak Cipher.
D. Modify the Event Log response for the Intrusion Preventions Object.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 2:
A System Administrator has an XGS 4100 appliance that has a single 8-port RJ-45 copper Network Interface Module (NIM) installed.
What is the maximum number of in-line network segments, of any media type, that could be protected?
A. 4
B. 10
C. 6
D. 2
正解:D
質問 3:
A System Administrator wants to perform Hardware diagnostics because a network adapter is suspected of being faulty.
What command should be used from the console?
A. xgsdiag
B. phdiag
C. provdiag
D. sysdiag
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
質問 4:
A System Administrator sees a lot of Ping_Sweep events reported as blocked on the network. However, because the Ping_Sweep signature only blocks the ping packet that triggers the event, most of the ping packets are allowed through the XGS.
How can these suspicious packets be effectively blocked from the network?
A. Add a quarantine response to the Ping_Sweep event.
B. Add a catch-all rule to the bottom of the NAP that rejects all traffic.
C. Enable the Ping_Sweep event in the default IPS policy with the Block option.
D. Add a Network Access policy rule to reject ICMP traffic.
正解:A
解説: (Pass4Test メンバーにのみ表示されます)
質問 5:
The System Administrator has configured the XGS devices shown in the following topology diagram. Outbound SSL inspection is configured on XGS1. All XGS devices are licensed for SSL inspection, Identity and Application Control, and IP Reputation.

Which of the XGS devices will block PC1 from accessing a known malware web site via SSL?
A. XGS3 in protection mode
B. XGS2 connected to s read-only tap port
C. XGS4 connected to a read-only tap port
D. XGS1 in protection mode
正解:D
質問 6:
A System Administrator wants to send a message to an SNMP Manager on a network where FIPS mode is used for additional security. The requirement is to monitor the link status of the interface.
Which type of SNMP response object is needed?
A. SNMP V1, Notification Type: Trap, Enable Authentication Checkbox selected, Authentication Type: MD:5, Privacy Type: DES
B. SNMP V3, Notification Type: Trap, Enable Authentication Checkbox selected, Authentication Type: SHA, Privacy Type: AES
C. SNMP V2, Notification Type: Trap, Enable Authentication Checkbox selected, Authentication Type: SHA, Privacy Type: AES
D. SNMP V3, Notification Type: Trap, Enable Authentication Checkbox selected, Authentication Type: MD:5, Privacy Type: DES
正解:B
解説: (Pass4Test メンバーにのみ表示されます)
1050 お客様のコメント





とも** -
とにかくやる気が起こるテキストです。
教科書がメインになるので、必要に応じて不安な分野は
C2150-620問題集に当たっても良いと思います。