Which of the following statements about Client Data Sources is TRUE?
A. They will have VIPS, Policy and Agent rights.
B. They will bed splayed on the Receiver Properties> Data Sources table.
C. They can have independent time zones.
D. They will appear on the System Navigation tree.
正解:D
質問 2:
Which of the following are the three default users defined within the Users and Groups option in the ESM properties?
A. NGCP, SYSTEM, REPORT
B. NGCP, BACKUP, REPORT
C. ADMIN, POLICY, REPORT
D. NGCP, POLICY, REPORT
正解:A
質問 3:
Which of the following is the Primary function of the Event Receiver (ERC) in relation to the Enterprise
Security Manager (ESM)?
A. Collect and store the events before they are forwarded to the ESM for parsing
B. Collect and parse events before the ESM pulls them form the ERC
C. Collect and parse the events before the receiver forwards them to the ESM
D. Collect and parse the events before forwarding them to the ELM
正解:B
質問 4:
Alarms using field match as the condition type allow for selected Actions to be taken when the Alarm
condition is met. Which of the following McAfee ePolicy Orchestrator (ePO) Actions can be selected when
creating such Alarm?
A. Collect and Send Properties
B. Send Events
C. Assign Tag with ePO
D. Agent Uninstall
正解:C
質問 5:
Which of the following statements about Client Data Sources is TRUE?
A. They will have VIPS, Policy and Agent rights.
B. They will bed splayed on the Receiver Properties> Data Sources table.
C. They can have independent time zones.
D. They will appear on the System Navigation tree.
正解:D
質問 6:
If the SIEM Administrator deploys the Enterprise Security Manager (ESM) using the Federal Information
Processing Standards (FIPS) encryption mode, which of the following types of user authentication will
NOT be compliant with FIPS?
A. Radius
B. Lightweight Directory Access Protocol (LDAP)
C. Local Authentication
D. Windows Active Directory
正解:A
質問 7:
The Global Blacklist feature can be used to block specific traffic from which of the following devices?
A. Application Data Monitor (ADM)
B. Event Receiver (ERC)
C. Corporate Firewall
D. Nitro IPS
正解:D
村石** -
MA0-104問題集はとても使い安いです。先日MA0-104試験を受けて、試験に合格しました。本トンに助かりました。