Vcehome > Cisco > Proctored Exams > 500-275 > 500-275 Online Practice Questions and Answers

500-275 Online Practice Questions and Answers

Questions 4

File information is sent to the Sourcefire Collective Security Intelligence Cloud using which format?

A. MD5

B. SHA-1

C. filenames

D. SHA-256

Browse 50 Q&As
Questions 5

When discussing the FireAMP product, which term does the acronym DFC represent?

A. It means Detected Forensic Cause.

B. It means Duplicate File Contents.

C. It means Device Flow Correlation.

D. It is not an acronym that is associated with the FireAMP product.

Browse 50 Q&As
Questions 6

What is the default clean disposition cache setting?

A. 3600

B. 604800

C. 10080

D. 1 hour

Browse 50 Q&As
Questions 7

Which statement represents a best practice for deploying on Windows servers?

A. You should treat Windows servers like any other host in the deployment.

B. You should obtain the Microsoft TechNet article that describes the proper exclusions for Windows servers.

C. You should never configure exclusions for Windows servers.

D. You should deploy FireAMP connectors only alongside existing antivirus software on Windows servers.

Browse 50 Q&As
Questions 8

Incident responders use which policy mode for outbreak control?

A. Audit

B. Protect

C. Triage

D. Emergency

Browse 50 Q&As
Questions 9

What is the default command-line switch configuration, if you run a connector installation with no parameters?

A. /desktopicon 0 /startmenu 1 /contextmenu 1 /skipdfc 0 /skiptetra 0

B. /desktopicon 1 /startmenu 0 /contextmenu 0 /skipdfc 0 /skiptetra 0

C. /desktopicon 0 /startmenu 0 /contextmenu 0 /skipdfc 1 /skiptetra 1

D. /desktopicon 1 /startmenu 0 /contextmenu 0 /skipdfc 0 /skiptetra 1

Browse 50 Q&As
Questions 10

Which type of activity is shown in the Device Trajectory page?

A. the IP addresses of hosts on which a file was seen

B. the activity of the FireAMP console users

C. the hosts that are in the same group as the selected host

D. file creation

Browse 50 Q&As
Questions 11

How can customers feed new intelligence such as files and hashes to FireAMP?

A. by uploading it to the FTP server

B. from the connector

C. through the management console

D. by sending it via email

Browse 50 Q&As
Questions 12

For connector-to-FireAMP Private Cloud communication, which port number is used for lower- overhead communication?

A. 22

B. 80

C. 443

D. 32137

Browse 50 Q&As
Questions 13

Where does an administrator go to get a copy of a fetched file?

A. the Business Defaults page

B. the File menu, followed by Downloads

C. the File Repository

D. the Search selection in the Analysis menu

Browse 50 Q&As
Exam Code: 500-275
Exam Name: Securing Cisco Networks with Sourcefire FireAMP Endpoints (SSFAMP)
Last Update: Apr 29, 2024
Questions: 50 Q&As

PDF

$49.99

VCE

$59.99

PDF + VCE

$67.99