web analytics
  • RSS

  • Polls

    What Cisco Cert Are You Currently Studying?

    View Results

    Loading ... Loading ...
  • Search on CiscoBibles

  • Popular Posts

  • Recent Comments

  • Archives

  • « | Main | »

    (New Updated) Real 500-275 Exam Questions Offered By PassLeader Help You 100 Percent Passing Exam

    By admin | January 29, 2015

    How To 100% Pass 500-275 Exam: Exam 500-275 have been published for few days, if you want to pass 500-275 exam easily, you should take the new 500-275 60q exam questions into your heart, and we PassLeader now are sharing the latest and updated 500-275 60q braindumps with VCE and PDF file, we have corrected all the new questions of our 500-275 VCE and PDF practice test and will help you 100% passing 500-275 exam.

    PassLeader 500-275 Exam Dumps[16]

    Vendor: Cisco
    Exam Code: 500-275
    Exam Name: Securing Cisco Networks with Sourcefire FireAMP Endpoints

    Custom whitelists are used for which purpose?

    A.    to specify which files to alert on
    B.    to specify which files to delete
    C.    to specify which files to ignore
    D.    to specify which files to sandbox

    Answer: C

    How does application blocking enhance security?

    A.    It identifies and logs usage.
    B.    It tracks application abuse.
    C.    It deletes identified applications.
    D.    It blocks vulnerable applications from running, until they are patched.

    Answer: D

    Which set of actions would you take to create a simple custom detection?

    A.    Add a SHA-256 value; upload a file to calculate a SHA-256 value; upload a text file that contains SHA-256 values.
    B.    Upload a packet capture; use a Snort rule; use a ClamAV rule.
    C.    Manually input the PE header data, the MD-5 hash, and a list of MD-5 hashes.
    D.    Input the file and file name.

    Answer: A

    Advanced custom signatures are written using which type of syntax?

    A.    Snort signatures
    B.    Firewall signatures
    C.    ClamAV signatures
    D.    bash shell

    Answer: C

    What is a valid data source for DFC Windows connector policy configuration?

    A.    SANS
    B.    NIST
    C.    Emerging Threats
    D.    Custom and Sourcefire

    Answer: D

    The Update Window allows you to perform which action?

    A.    identify which hosts need to be updated
    B.    email the user to download a new client
    C.    specify a timeframe when an upgrade can be started and stopped
    D.    update your cloud instance

    Answer: C

    The FireAMP connector supports which proxy type?

    A.    SOCKS6
    B.    HTTP_proxy
    C.    SOCKS5_filename
    D.    SOCKS7

    Answer: B

    What do policies enable you to do?

    A.    specify a custom whitelist
    B.    specify group membership
    C.    specify hosts to include in reports
    D.    specify which events to view

    Answer: A

    What is the default clean disposition cache setting?

    A.    3600
    B.    604800
    C.    10080
    D.    1 hour

    Answer: B

    PassLeader 500-275 Exam Dumps[8]



    Topics: 500-275 Exam Dumps, All Cisco Exam Dumps | No Comments »


    You must be logged in to post a comment.