Weekend Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: suredis

Cisco 500-285 Securing Cisco Networks with Sourcefire IPS Exam Practice Test

Page: 1 / 6
Total 59 questions

Securing Cisco Networks with Sourcefire IPS Questions and Answers

Testing Engine

  • Product Type: Testing Engine
$47.25  $134.99

PDF Study Guide

  • Product Type: PDF Study Guide
$40.25  $114.99
Question 1

Which event source can have a default workflow configured?

Options:

A.

user events

B.

discovery events

C.

server events

D.

connection events

Question 2

Which statement regarding user exemptions is true?

Options:

A.

Non-administrators can be made exempt on an individual basis.

B.

Exempt users have a browser session timeout restriction of 24 hours.

C.

Administrators can be exempt from any browser session timeout value.

D.

By default, all users cannot be exempt from any browser session timeout value.

Question 3

Controlling simultaneous connections is a feature of which type of preprocessor?

Options:

A.

rate-based attack prevention

B.

detection enhancement

C.

TCP and network layer preprocessors

D.

performance settings

Question 4

Which feature of the preprocessor configuration pages lets you quickly jump to a list of the rules associated with the preprocessor that you are configuring?

Options:

A.

the rule group accordion

B.

a filter bar

C.

a link below the preprocessor heading

D.

a button next to each preprocessor option that has a corresponding rule

Question 5

Which interface type allows for bypass mode?

Options:

A.

inline

B.

switched

C.

routed

D.

grouped

Question 6

The gateway VPN feature supports which deployment types?

Options:

A.

SSL and HTTPS

B.

PPTP and MPLS

C.

client and route-based

D.

point-to-point, star, and mesh

Question 7

Which option is a remediation module that comes with the Sourcefire System?

Options:

A.

Cisco IOS Null Route

B.

Syslog Route

C.

Nmap Route Scan

D.

Response Group

Question 8

Which list identifies the possible types of alerts that the Sourcefire System can generate as notification of events or policy violations?

Options:

A.

logging to database, SMS, SMTP, and SNMP

B.

logging to database, SMTP, SNMP, and PCAP

C.

logging to database, SNMP, syslog, and email

D.

logging to database, PCAP, SMS, and SNMP

Question 9

Access control policy rules can be configured to block based on the conditions that you specify in each rule. Which behavior block response do you use if you want to deny and reset the connection of HTTP traffic that meets the conditions of the access control rule?

Options:

A.

interactive block with reset

B.

interactive block

C.

block

D.

block with reset

Page: 1 / 6
Total 59 questions