In a scenario that macOS Traps logs failed to be uploaded to the forensic folder, where will the user on the macOS host be able to find to collected logs?
A. /Library/Application Support/Cyvera/BITS Uploads/
B. /ProgramData/Cyvera/Logs
C. /Library/Application Support/PaloAltoNetworks/Traps/Upload/
D. /ProgramData/Cyvera/Everyone/Temp
正解:C
質問 2:
An administrator has installed Traps 4.0. The administrator wants to test the malware protections provided. What sample should they use to test the protections provided by Traps?
A. A sample with a low number of hits in Virus Total
B. A toolbar package known to be flagged as grayware by Traps
C. An MS Office document which contains a ransomware macro
D. A sample known to generate false positives in the production environment
正解:C
質問 3:
A company discovers through the agent health display in ESM Console that a certain Traps agent is not communicating with ESM Server. Administrators suspect that the problem relates to TLS/SSL.
Which troubleshooting step determines if this is an SSL issue?
A. Check that the Traps service is running
B. From the agent run the command: ping (hostname)
C. From the agent run the command: telnet (hostname) (port)
D. Browse to the ESM hostname from the affected agent
正解:D
質問 4:
Which is the proper order of tasks that an administrator needs to perform to successfully create and install Traps 4.x for macOS agents?
A. Download Traps_macOS_4.x.x.zip from the support portal. Copy
Traps_macOS_4.x.x.zip to target endpoint. Unzip and run traps pkg.
B. Download ClientUpgradePackage_4.x.x.zip from the support portal. Copy ClientUpgradePackage_4.x.x.zip to target endpoint. Unzip and run traps pkg.
C. Download Traps_macOS_4.x.x.zip from the support portal. Create installation package on ESM using .zip file, download installpackage.zip file. Copy installpackage.zip to target endpoint. Unzip and run traps pkg.
D. Download ClientUpgradePackage.zip from the support portal. Create installation package on ESM using .zip file, download installpackage.zip file. Copy installpackage.zip to target endpoint. Unzip and run traps pkg.
正解:C