IBM Security Network Protection (XGS) V5.3.2 System Administration - C2150-620무료 덤프문제 풀어보기
A System Administrator has reviewed recent changes on the XGS from the Local Management Interface (LMI) and has determined that a fix pack has been applied that may be inhibiting network functionality. The System Administrator plans to remove the fix pack during the next change control window.
Which step should be taken?
Which step should be taken?
정답: A
설명: (Fast2test 회원만 볼 수 있음)
A System Administrator has heard that many shopping web sites are infected due to a new vulnerability affecting shopping cart modules used by many open source e-Commerce platforms. The vulnerability only affects shopping sites using SSL.
At the System Administrator's organization, all web-based shopping applications are blocked as required by company policy. Rule 1 was already in place to accomplish this.
Outbound SSL inspection was also enabled. The System Administrator has added Rule2 in an attempt to optimize inspection and better enforce company requirements.

Which analysis of this Network Access Policy is correct with regard to packet inspection optimization?
At the System Administrator's organization, all web-based shopping applications are blocked as required by company policy. Rule 1 was already in place to accomplish this.
Outbound SSL inspection was also enabled. The System Administrator has added Rule2 in an attempt to optimize inspection and better enforce company requirements.

Which analysis of this Network Access Policy is correct with regard to packet inspection optimization?
정답: B
Security Policies of an organization demand that no network traffic should be allowed by XGS without inspection in case of XGS power failure or traffic beyond XGS capabilities.
What should be the settings for built-in Hardware Bypass and Unanalyzed Policy?
What should be the settings for built-in Hardware Bypass and Unanalyzed Policy?
정답: A
설명: (Fast2test 회원만 볼 수 있음)
A specialized third- party appliance protects customer networks by detecting any data transmissions that do not meet the minimum security standards. The security officer wants to be alerted when machines on the customer network send data out of the internal LAN using a low encryption level and prevent them from doing so until the minimum level of encryption is met.
How can the XGS be configured to contain the exposed risk?
How can the XGS be configured to contain the exposed risk?
정답: A
A System Administrator wants to install a snapshot during the first time configuration of an XGS appliance.
How can this be done?
How can this be done?
정답: B
설명: (Fast2test 회원만 볼 수 있음)
The System Administrator has configured the XGS devices shown in the following topology diagram.
+

Which XGS devices will block a Cross Site Scripting (XSS) attack coming from an SSL enabled public web site on the Internet to the internal network?
+

Which XGS devices will block a Cross Site Scripting (XSS) attack coming from an SSL enabled public web site on the Internet to the internal network?
정답: D