250-438 Actual Exam Questions

Last updated on Dec. 5, 2024.
Vendor:Symantec
Exam Code:250-438
Exam Name:Administration of Symantec Data Loss Prevention 15
Exam Questions:70
 

Topic 1 - Single Topic

Question #1 Topic 1

How should a DLP administrator change a policy so that it retains the original file when an endpoint incident has detected a `copy to USB device` operation?

  • A. Add a ג€Limit Incident Data Retentionג€ response rule with ג€Retain Original Messageג€ option selected.
  • B. Modify the agent config.db to include the file
  • C. Modify the ג€Endpoint_Retain_Files.intג€ setting in the Endpoint server configuration
  • D. Modify the agent configuration and select the option ג€Retain Original Filesג€
Reveal Solution Hide Solution   Discussion  

Correct Answer: A 🗳️

Question #2 Topic 1

What is the correct configuration for `BoxMonitor.Channels` that will allow the server to start as a Network Monitor server?

  • A. Packet Capture, Span Port
  • B. Packet Capture, Network Tap
  • C. Packet Capture, Copy Rule
  • D. Packet capture, Network Monitor
Reveal Solution Hide Solution   Discussion  

Correct Answer: C 🗳️
Reference:
https://support.symantec.com/en_US/article.TECH218980.html

Question #3 Topic 1

Under the `System Overview` in the Enforce management console, the status of a Network Monitor detection server is shown as `Running Selected.` The Network
Monitor server's event logs indicate that the packet capture and filereader processes are crashing.
What is a possible cause for the Network Monitor server being in this state?

  • A. There is insufficient disk space on the Network Monitor server.
  • B. The Network Monitor server's certificate is corrupt or missing.
  • C. The Network Monitor server's license file has expired.
  • D. The Enforce and Network Monitor servers are running different versions of DLP.
Reveal Solution Hide Solution   Discussion  

Correct Answer: D 🗳️

Question #4 Topic 1

Which two Infrastructure-as-a-Service providers are supported for hosting Cloud Prevent for Office 365? (Choose two.)

  • A. Any customer-hosted private cloud
  • B. Amazon Web Services
  • C. AT&T
  • D. Verizon
  • E. Rackspace
Reveal Solution Hide Solution   Discussion  

Correct Answer: BE 🗳️
Reference:
https://symwisedownload.symantec.com//resources/sites/SYMWISE/content/live/DOCUMENTATION/8000/DOC8244/en_US/
Symantec_DLP_15.0_Cloud_Prevent_O365.pdf?__gda__=1554430310_584ffada3918e15ced8b6483a2bfb6fb
(14)

file Viewing page 1 out of 18 pages.
Viewing questions 1-4 out of 70 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago