Pass the Symantec Endpoint Protection 14 250-428 Questions and answers with CertsForce

Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which two options are available when configuring DNS change detections for SONAR? (Select two.)

Options:

A.

Log


B.

Quarantine


C.

Block


D.

Active Response


E.

Trace


Questions # 2:

Which action does SONAR take before convicting a process?

Options:

A.

Checks the reputation of the process


B.

Restarts the system


C.

Quarantines the process


D.

Blocks suspicious behavior


Questions # 3:

Users report abnormal behavior on systems where Symantec Endpoint Protection is installed.

Which tool can an administrator run on the problematic systems to identify the likely cause of the abnormal behavior?

Options:

A.

smc.exe -stop


B.

SymHelp.exe


C.

PowerShell.exe


D.

CleanWipe.exe


Questions # 4:

A Symantec Endpoint Protection administrator needs to prevent users from modifying files in a specific program folder that is on all client machines.

What does the administrator need to configure?

Options:

A.

a file and folder exception in the Exception policy


B.

an application rule set in the Application and Device Control policy


C.

a file fingerprint list and System Lockdown


D.

the Tamper Protection settings for the client folder


Questions # 5:

When can an administrator add a new replication partner?

Options:

A.

immediately following the first LiveUpdate session of the new site


B.

during a Symantec Endpoint Protection Manager upgrade


C.

during the initial install of the new site


D.

immediately following a successful Active Directory sync


Questions # 6:

What SEPM report should an administrator utilize to view the files that Download Insight detected on your computers, after configuring Download Insight?

Options:

A.

Risk Distribution


B.

SONAR Detection Results


C.

Risk Detections Count


D.

Download Risk Distribution


Questions # 7:

Which tool should the administrator run before starting the Symantec Endpoint Protection Manager upgrade according to best practices?

Options:

A.

CollectLog.cmd


B.

DBValidator.bat


C.

LogExport.cmd


D.

Upgrade.exe


Questions # 8:

How are Insight results stored?

Options:

A.

Encrypted on the Symantec Endpoint Protection Client


B.

Unencrypted on the Symantec Endpoint Protection Manager


C.

Encrypted on the Symantec Endpoint Protection Manager


D.

Unencrypted on the Symantec Endpoint Protection Client


Questions # 9:

The LiveUpdate Download Schedule is set to the default on the Symantec Endpoint Protection Manager (SEPM).

How many content revisions must the SEPM keep to ensure clients that check in to the SEPM every 10 days receive delta content packages instead of full content packages?

Options:

A.

10


B.

30


C.

20


D.

60


Questions # 10:

An administrator is troubleshooting a Symantec Endpoint Protection (SEP) replication.

Which component log should the administrator check to determine whether the communication between the two sites is working correctly?

Options:

A.

Tomcat


B.

Apache Web Server


C.

Group Update Provider (GUP)


D.

SQL Server


Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions