Weekend Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: geek65

250-428 Administration of Symantec Endpoint Protection 14 Questions and Answers

Questions 4

A Symantec Endpoint Protection Manager (SEPM) administrator notices performance issues with the SEPM server. The Client tab becomes unresponsive in the SEPM console and .DAT files accumulate in the “agentinfo” folder.

Which tool should the administrator use to gather log files to submit to Symantec Technical Support?

Options:

A.

collectLog.cmd

B.

LogExport.exe

C.

smc.exe

D.

ExportLog.vbs

Buy Now
Questions 5

What is a function of Symantec Insight?

Options:

A.

Provides reputation ratings for binary executables

B.

Enhances the capability of Group Update Providers (GUP)

C.

Provides reputation ratings for structured data

D.

Increases the efficiency and effectiveness of LiveUpdate

Buy Now
Questions 6

Which two are policy types within the Symantec Endpoint Protection Manager? (Select two.)

Options:

A.

Intrusion Prevention

B.

Exceptions

C.

Process Control

D.

Shared Insight

E.

Host Protection

Buy Now
Questions 7

A Symantec Endpoint Protection (SEP) administrator performed a disaster recovery without a database backup.

In which file should the SEP administrator add “scm.agent.groupcreation=true” to enable the automatic creation of client groups?

Options:

A.

conf.properties

B.

httpd.conf

C.

settings.conf

D.

catalina.out

Buy Now
Questions 8

Which Symantec Endpoint Protection Management (SEPM) database option is the default for deployments of fewer than 1,000 clients?

Options:

A.

EmbeddeD. Using the Sybase SQL Anywhere database that comes with the product

B.

On SEPM: Installing Microsoft SQL on the same server as the SEPM

C.

External to SEPM: Using a preexisting Microsoft SQL server in the environment

D.

EmbeddeD. Using the Microsoft SQL database that comes with the product

Buy Now
Questions 9

A company needs to forward log data from Data Center A to Data Center B during off peak hours only.

How should the company architect its Symantec Endpoint Protection environment?

Options:

A.

Set up two sites and schedule replication between them during off peak hours

B.

Set up a single site and configure the clients to send their logs to the Manager during off peak hours

C.

Set up a Group Update Provider (GUP) at Data Center A and configure it to send logs during off peak hours

D.

Set up a LiveUpdate Server at Data Center A and configure it to send logs during off peak hours

Buy Now
Questions 10

Which two instances could cause Symantec Endpoint Protection to be unable to remediate a file? (Select two.)

Options:

A.

Another scan is in progress.

B.

The detected file is in use.

C.

The file has good reputation.

D.

There are insufficient file permissions.

E.

The file is marked for deletion by Windows on restart.

Buy Now
Questions 11

A company deploys Symantec Endpoint Protection client to its sales staff who travel across the country.

Which deployment method should the company use to notify its sales staff to install the client?

Options:

A.

Unmanaged Detector

B.

Client Deployment Wizard

C.

Pull mode

D.

Push mode

Buy Now
Questions 12

Which command attempts to find the name of the drive in the private region and to match it to a disk media record that is missing a disk access record?

Options:

A.

vxdisk

B.

vxdctl

C.

vxreattach

D.

vxrecover

Buy Now
Questions 13

What does SONAR use to reduce false positives?

Options:

A.

Virus and Spyware definitions

B.

Extended File Attributes (EFA) table

C.

File Fingerprint list

D.

Symantec Insight

Buy Now
Questions 14

An organization has several remote location with minimum bandwidth and would like to use a content distribution method that does NOT involve configuring as internal LiveUpdate server.

What content distribution method should be utilized?

Options:

A.

External LiveUpdate

B.

Management Server

C.

Intelligent Updater

D.

Group Update Provider

Buy Now
Questions 15

Employees of an accounting company often take their notebooks to customer sites. The administrator needs to apply a different firewall policy when the notebooks are disconnected from the accounting company's network.

What must the administrator configure to use the two different policies?

Options:

A.

Groups

B.

Domains

C.

Sites

D.

Locations

Buy Now
Questions 16

An organization recently experienced a definition storm where clients downloaded full definition packages from the management server.

Where can the SEPM increase the amount of content revisions so that clients with older content can get delta updates?

Options:

A.

Click on Policies and select LiveUpdate. Edit the LiveUpdate Content policy.

B.

Edit the Site Properties and under the LiveUpdate tab, edit the amount of content revisions to keep.

C.

Click on Policies and select LiveUpdate. Edit the LiveUpdate Settings policy.

D.

Edit the Server Properties and under the LiveUpdate tab, edit the amount of content revisions to keep.

Buy Now
Questions 17

An administrator is troubleshooting a Symantec Endpoint Protection (SEP) replication.

Which component log should the administrator check to determine whether the communication between the two sites is working correctly?

Options:

A.

Tomcat

B.

Apache Web Server

C.

Group Update Provider (GUP)

D.

SQL Server

Buy Now
Questions 18

Why is Notepad unable to save the changes to the file in the image below?

Options:

A.

SONAR High Risk detection is set to Block

B.

SONAR is set to block host file modifications.

C.

Tamper Protection is preventing Notepad from modifying the host file.

D.

System Lockdown is enabled.

Buy Now
Questions 19

When can an administrator add a new replication partner?

Options:

A.

immediately following the first LiveUpdate session of the new site

B.

during a Symantec Endpoint Protection Manager upgrade

C.

during the initial install of the new site

D.

immediately following a successful Active Directory sync

Buy Now
Questions 20

A Symantec Endpoint Protection administrator needs to comply with a service level agreement stipulating that all definitions must be internally quality assurance tested before being deployed to customers.

Which step should the administrator take?

Options:

A.

install a LiveUpdate Administrator Server

B.

install a Shared Insight Cache Server

C.

install a Group Update Provider (GUP) to the existing site

D.

install a Symantec Protection Center

Buy Now
Exam Code: 250-428
Exam Name: Administration of Symantec Endpoint Protection 14
Last Update: May 18, 2024
Questions: 135
250-428 pdf

250-428 PDF

$28  $80
250-428 Engine

250-428 Testing Engine

$33.25  $95
250-428 PDF + Engine

250-428 PDF + Testing Engine

$45.5  $130