Labour Day Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

500-285 Exam Dumps - Securing Cisco Networks with Sourcefire IPS

Question # 4

Which statement is true in regard to the Sourcefire Security Intelligence lists?

A.

The global blacklist universally allows all traffic through the managed device.

B.

The global whitelist cannot be edited.

C.

IP addresses can be added to the global blacklist by clicking on interactive graphs in Context Explorer.

D.

The Security Intelligence lists cannot be updated.

Full Access
Question # 5

Suppose an administrator is configuring an IPS policy and attempts to enable intrusion rules that require the operation of the TCP stream preprocessor, but the TCP stream preprocessor is turned off. Which statement is true in this situation?

A.

The administrator can save the IPS policy with the TCP stream preprocessor turned off, but the rules requiring its operation will not function properly.

B.

When the administrator enables the rules and then attempts to save the IPS policy, the administrator will be prompted to accept that the TCP stream preprocessor will be turned on for the IPS policy.

C.

The administrator will be prevented from changing the rule state of the rules that require the TCP stream preprocessor until the TCP stream preprocessor is enabled.

D.

When the administrator enables the rules and then attempts to save the IPS policy, the administrator will be prompted to accept that the rules that require the TCP stream preprocessor will be turned off for the IPS policy.

Full Access
Question # 6

Controlling simultaneous connections is a feature of which type of preprocessor?

A.

rate-based attack prevention

B.

detection enhancement

C.

TCP and network layer preprocessors

D.

performance settings

Full Access
Question # 7

Which interface type allows for VLAN tagging?

A.

inline

B.

switched

C.

high-availability link

D.

passive

Full Access
Question # 8

Which statement is true concerning static NAT?

A.

Static NAT supports only TCP traffic.

B.

Static NAT is normally deployed for outbound traffic only.

C.

Static NAT provides a one-to-one mapping between IP addresses.

D.

Static NAT provides a many-to-one mapping between IP addresses.

Full Access
Question # 9

What are the two categories of variables that you can configure in Object Management?

A.

System Default Variables and FireSIGHT-Specific Variables

B.

System Default Variables and Procedural Variables

C.

Default Variables and Custom Variables

D.

Policy-Specific Variables and Procedural Variables

Full Access