Pre-Summer Sale - Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70dumps

156-590 Questions and Answers

Question # 6

Protections with a High Protection Impact rating go through which path?

A.

PXL

B.

SXL

C.

CPASXL

D.

F2F

Full Access
Question # 7

Which of the following is NOT a valid Blade bundle?

A.

Next Generation Firewall

B.

Next Generation Full Protection

C.

Next Generation Threat Prevention

D.

SandBlast

Full Access
Question # 8

Which statement is true concerning the Custom Policy Tools?

A.

Block List files - Configure disallowed files.

B.

Allow List Files - Configure allowed files.

C.

Indicators - Configure indicators for benign activity.

D.

Profiles - Edit profiles which are only available for Autonomous Threat Prevention.

Full Access
Question # 9

What kind of information is stored in the Audit Log?

A.

An audit log is a record of actions taken by administrators.

B.

An audit log is a record of system event logs on the Security Management Server.

C.

An audit log is a portion of the traffic log which has been filtered by filter expression defined by the administrator.

D.

An audit log is a record of system event logs on the Security Gateway.

Full Access
Question # 10

What is the default Track option for IPS Protections?

A.

UserCheck

B.

None

C.

Alert

D.

Log

Full Access
Question # 11

Which is NOT true of Threat Prevention policy application?

A.

Only applied after traffic is accepted by Access Control Policy

B.

Traffic is matched against all applicable layers at the same time

C.

Only applies first matched rule

D.

Applied as ordered layer

Full Access
Question # 12

Which protection setting is generally the LEAST resource intensive?

A.

Prevent

B.

Inspect

C.

Detect

D.

Inactive

Full Access
Question # 13

What is the purpose of the Profile Cleanup option?

A.

It lets you start over by removing all administrator overrides.

B.

It merges protection settings from multiple profiles into the Optimized Profile.

C.

It serves as a cleanup policy if none of the protection matches the packets.

D.

It eliminates protections automatically which hasn't been used for a predefined amount of time.

Full Access
Question # 14

Using IPS can send a large part of traffic to F2F path.

Which command can you use to enforce traffic quotas?

A.

fw dos rate

B.

fwaccel rate

C.

fw ctl dos

D.

fwaccel dos rate

Full Access
Question # 15

What does ThreatCloud DGA Protection defend against?

A.

Known malicious IPs

B.

Infected URLs

C.

Infected files

D.

Newly created domains

Full Access
Question # 16

What is necessary to do after an IPS Signature update?

A.

Perform "Install Database".

B.

Install the Threat Prevention Policy.

C.

Those changes are immediately active.

D.

Install the Access Control Policy.

Full Access
Question # 17

At what point is the Anti-Bot blade enforced?

A.

Pre-infection

B.

Post-infection

C.

Pre-inspection

D.

Post-inspection

Full Access
Question # 18

What is the default SMS and SG update interval for IPS Protections (R80.20+)?

A.

Six hours

B.

Twelve hours

C.

Two hours

D.

Daily

Full Access
Question # 19

Which process is responsible for Archive Scanning?

A.

zipscn

B.

psl_dlp

C.

gzscn_proc

D.

dlpu

Full Access
Question # 20

What type of layer is the threat Prevention?

A.

It can be ordered or inline

B.

Inline

C.

Post Access Control follow-up layer

D.

Ordered

Full Access
Question # 21

Which protection setting is generally the MOST resource intensive?

A.

Inactive

B.

Prevent

C.

Inspect

D.

Detect

Full Access
Question # 22

Where is IPS primarily enforced?

A.

Post-infection

B.

Post-inspection

C.

Pre-infection

D.

Pre-inspection

Full Access