Which of the following modes can be used to implement DoS detection? (Choose two)
A. Transition Mode
B. Threshold Mode
C. Adaptive Mode
D. Learning Mode
E. Configuration Mode
正解:B,D
質問 2:
Which command is used to manually download signature tiles from the tftpserver when connectivity to the Manager is not available?
A. Loadsigset WORD
B. Loadconfiguration WORD
C. Loadimage WORD
D. Loadconfig WORD
正解:B
質問 3:
Which port needs to be opened for Alert Viewer communication between Client and Manager through a firewall?
A. 8501
B. 8555
C. 8502
D. 8503
正解:B
質問 4:
Which type of NAC configuration allows a host to be subjected to both DHCP and IBAC based NAC when configured on different ports?
A. DHCP
B. Integrated
C. Health-based
D. Hybrid
正解:D
質問 5:
Which sensor action allows the detection and dropping of attacks in real-time?
A. TCP reset
B. ICMP Host unreachable
C. Drop further packets
D. Host Quarantine action
正解:C
質問 6:
When the buffer on the alert cache has been filled, what happens to current incoming alerts?
A. Incoming alerts are held in queue until cache space is cleared
B. Incoming alerts are added to the database directly
C. Incoming alerts are not added to the cache and are dropped
D. Incoming alerts are added to the cache and the oldest alerts are dropped
正解:D
質問 7:
Which of the following should be applied to policies in both Inbound and Outbound directions?
A. Policy rules
B. Rule sets
C. Attack parameters
D. Reconnaissance rules
正解:B
質問 8:
If the Health Level of the host cannot be determined, which of the following System Health Levels would be assigned?
A. Unknown
B. Serious
C. Fair
D. Poor
正解:A
質問 9:
Which logs are used to determine who was logged into the Manager the last time a signature set update was pushed from the Manager to the Sensor?
A. Trace log
B. Fault log
C. User Activity Audit log
D. Manager ems log
正解:C
诸冈** -
ほんとうにMA0-101の問題集を買って大正解だ。オススメです。MA0-101苦手な私でも分かりやすかったです。