Labour Day Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: cramtreat

250-428 Administration of Symantec Endpoint Protection 14 Questions and Answers

Questions 4

A Symantec Endpoint Protection administrator is using System Lockdown in blacklist mode with a file fingerprint list. When testing a client, the administrator notices that at least one of the files on the list is allowed to execute.

What is the likely cause of the problem?

Options:

A.

The application has been upgraded.

B.

The Application and Device Control policy is in test mode.

C.

A file exception has been added to the Exceptions policy.

D.

The Application and Device Control policy is allowing the file to execute.

Buy Now
Questions 5

When can an administrator add a new replication partner?

Options:

A.

immediately following the first LiveUpdate session of the new site

B.

during a Symantec Endpoint Protection Manager upgrade

C.

during the initial install of the new site

D.

immediately following a successful Active Directory sync

Buy Now
Questions 6

An administrator is unable to delete a location.

What is the likely cause?

Options:

A.

The location currently contains clients.

B.

Criteria is defined within the location.

C.

The administrator has client control enabled.

D.

The location is currently assigned as the default location.

Buy Now
Questions 7

Which action can an administrator take to improve the Symantec Endpoint Protection Manager (SEPM) dashboard performance and report accuracy?

Options:

A.

Rebuilding database indexes

B.

Lowering the client installation log entries

C.

Limiting the number of backups to keep

D.

Decreasing the number of content revisions to keep

Buy Now
Questions 8

In addition to performance improvements, which two benefits does Insight provide? (Select two.)

Options:

A.

Reputation scoring for documents

B.

Zero-day threat detection

C.

Protection against malicious java scripts

D.

False positive mitigation

E.

Blocking of malicious websites

Buy Now
Questions 9

A company needs to configure an Application and Device Control policy to block read/write access to all USB removable media on its Symantec Endpoint Protection (SEP) systems.

Which tool should an administrator use to format the GUID and device IDs as required by SEP?

Options:

A.

CheckSum.exe

B.

DevViewer.exe

C.

TaskMgr.exe

D.

DeviceTree.exe

Buy Now
Questions 10

Which command attempts to find the name of the drive in the private region and to match it to a disk media record that is missing a disk access record?

Options:

A.

vxdisk

B.

vxdctl

C.

vxreattach

D.

vxrecover

Buy Now
Questions 11

Which action should an administrator take to prevent users from using Windows Security Center?

Options:

A.

Set Disable antivirus alert within Windows Security Center to Disable

B.

Set Disable Windows Security Center to Always

C.

Set Disable Windows Security Center to Disable

D.

Set Disable antivirus alert within Windows Security Center to Never

Buy Now
Questions 12

An administrator is troubleshooting a Symantec Endpoint Protection (SEP) replication.

Which component log should the administrator check to determine whether the communication between the two sites is working correctly?

Options:

A.

Tomcat

B.

Apache Web Server

C.

Group Update Provider (GUP)

D.

SQL Server

Buy Now
Questions 13

Which two items should an administrator enter in the License Activation Wizard to activate a license? (Select two.)

Options:

A.

password for the Symantec Licensing Site

B.

purchase order number

C.

serial number

D.

Symantec License file

E.

credit card number

Buy Now
Questions 14

A Symantec Endpoint Protection (SEP) administrator is remotely deploying SEP clients, but the clients are failing to install on Windows XP.

What are two possible reasons for preventing installation? (Select two.)

Options:

A.

Windows firewall is enabled.

B.

Internet Connection firewall is disabled.

C.

Administrative file shares are enabled.

D.

Simple file sharing is enabled.

E.

Clients are configured for DHCP.

Buy Now
Questions 15

A company uses a remote administration tool that is detected and quarantined by Symantec Endpoint Protection (SEP).

Which step can an administrator perform to continue using the remote administration tool without detection by SEP?

Options:

A.

Create a Tamper Protect exception for the tool

B.

Create a SONAR exception for the tool

C.

Create an Application to Monitor exception for the tool

D.

Create a Known Risk exception for the tool

Buy Now
Questions 16

Employees of an accounting company often take their notebooks to customer sites. The administrator needs to apply a different firewall policy when the notebooks are disconnected from the accounting company's network.

What must the administrator configure to use the two different policies?

Options:

A.

Groups

B.

Domains

C.

Sites

D.

Locations

Buy Now
Questions 17

Which protection technology can detect botnet command and control traffic generated on the Symantec Endpoint Protection client machine?

Options:

A.

Intrusion Prevention

B.

Insight

C.

Risk Tracer

D.

SONAR

Buy Now
Questions 18

An administrator uses ClientSideClonePrepTool to clone systems and virtual machine deployment. What will the tool do when it is run on each system?

Options:

A.

run Microsoft SysPrep and removes all AntiVirus/AntiSpyware definitions

B.

disable Tamper Protect and deploys a Sylink.xml

C.

add a new Extended File Attribute value to all existing files

D.

remove unique Hardware IDs and GUIDs from the system

Buy Now
Questions 19

You have just started a relayout operation in a live test environment, and you want to limit the impact of your work on concurrent testing activities. You also want to accommodate the need to constrain a relayout job’s performance impact on concurrent activities.

What would you do to perform this task?

Options:

A.

Use the "set iodelay" option of vxtask to throttle the VxVM task.

B.

Use the "set iowait" option of vxtask to throttle the VxVM task.

C.

Use the "set slow" option of vxtask to throttle the VxVM task.

D.

Use the "set nice" option of vxtask to throttle the VxVM task.

Buy Now
Questions 20

Which two options are supported Symantec Endpoint Manager authentication types? (Select two.)

Options:

A.

Network Access Control

B.

Biometrics

C.

RSA SecurID

D.

MS-CHAP

E.

Microsoft Active Directory

Buy Now
Exam Code: 250-428
Exam Name: Administration of Symantec Endpoint Protection 14
Last Update: May 4, 2024
Questions: 135
250-428 pdf

250-428 PDF

$28  $80
250-428 Engine

250-428 Testing Engine

$33.25  $95
250-428 PDF + Engine

250-428 PDF + Testing Engine

$45.5  $130