exam questions

Exam Essentials All Questions

View all questions & answers for the Essentials exam

Exam Essentials topic 1 question 62 discussion

Actual exam question from WatchGuard's Essentials
Question #: 62
Topic #: 1
[All Essentials Questions]

Which tool can add an IP address for the Firebox to permanently block? (Select one)

  • A. FireBox System Manager – Blocked Sites list
  • B. Log Server
  • C. FireWatch
  • D. Firebox System Manager – Subscription services
  • E. Firebox System Manager – Authentication list
  • F. Traffic Monitor
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️
Block a site permanently -
The Successful Company network administrator has been driven to distraction recently by a script kiddy using addresses in the 192.136.15.0/24 network to run probes of the Successful network. In this exercise, we permanently block all connections from that network.
1. From Policy Manager, select Setup > Default Threat Protection > Blocked Sites.
The Blocked Sites Configuration dialog box opens.
2. On the Blocked Sites tab, click Add.
3. The Add Site dialog box opens. 3. Use the Choose Type drop-down list to select Network IP. In the Value text box, type 192.136.15.0/ 24.
4. Click OK.
The entry appears in the Blocked Sites list. With this configuration, the Firebox blocks all packets to and from the 192.136.15.0/24 network range.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Wuti
1 year, 2 months ago
The correct answer is B. Add Blocked Sites list in FSM also has to specify the expiration. B is true only if that Firebox has Dimension command feature and is configured to be managed by Dimension. So when logon to Dimension, go to Security Dashboard menu, when click on an item on "Top blocked client" or "Top blocked destination". Instead of drilling into that IP, there will be a dialog comes up with an option "Add to block site list" without expiration option. So B is the correct answer (by Dimension command feature).
upvoted 1 times
defrag1971
4 months ago
no, answer is A, you can add site to block list but with expiration.
upvoted 3 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago