Which action should the administrator take to correct the problem with minimal impact to the existing environment?

After several failed logon attempts, the Symantec Endpoint Protection Manager (SEPM) has locked the default admin account. An administrator needs to make system changes as soon as possible to address an outbreak, but the admin account is the only account. Which action should the administrator take to correct the problem...

September 1, 2019 No Comments READ MORE +

Which component log should the administrator check to determine whether the communication between the two sites is working correctly?

An administrator is troubleshooting a Symantec Endpoint Protection (SEP) replication. Which component log should the administrator check to determine whether the communication between the two sites is working correctly?A . TomcatB . Apache Web ServerC . Group Update Provider (GUP)D . SQL ServerView AnswerAnswer: A

August 31, 2019 No Comments READ MORE +

Which file should the administrator use during an install of SEPM to recover the lost environment according to Symantec Disaster Recovery Best Practice documentation?

An administrator is recovering from a Symantec Endpoint Manager (SEPM) site failure. Which file should the administrator use during an install of SEPM to recover the lost environment according to Symantec Disaster Recovery Best Practice documentation?A . Original installation logB . Sylink.xml file from the SEPMC . Settings.properties fileD ....

August 31, 2019 No Comments READ MORE +

Which two criteria should an administrator use when defining Location Awareness for the Symantec Endpoint Protection (SEP) client? (Select two.)

Which two criteria should an administrator use when defining Location Awareness for the Symantec Endpoint Protection (SEP) client? (Select two.)A . SEP domainB . WINS serverC . Network SpeedD . NIC descriptionE . geographic locationView AnswerAnswer: B,D Explanation: References: https://support.symantec.com/en_US/article.TECH97369.html

August 31, 2019 No Comments READ MORE +

Which action does SONAR take before convicting a process?

Which action does SONAR take before convicting a process?A . Checks the reputation of the processB . Restarts the systemC . Quarantines the processD . Blocks suspicious behaviorView AnswerAnswer: A

August 29, 2019 No Comments READ MORE +

Which configuration is recommended to ensure that each SEPM is able to effectively handle the communications load with the SEP clients?

A company has 10,000 Symantec Endpoint Protection (SEP) clients deployed using two Symantec Endpoint Protection Managers (SEPMs). Which configuration is recommended to ensure that each SEPM is able to effectively handle the communications load with the SEP clients?A . Pull modeB . Push modeC . Server control modeD . Client...

August 28, 2019 No Comments READ MORE +

Where should the administrator adjust the time to block the attacking computer?

A Symantec Endpoint Protection administrator must block traffic from an attacking computer for a specific time period. Where should the administrator adjust the time to block the attacking computer?A . In the group policy, under External Communication settingsB . In the group policy, under Communication settingsC . In the firewall...

August 23, 2019 No Comments READ MORE +

What is a function of Symantec Insight?

What is a function of Symantec Insight?A . Provides reputation ratings for binary executablesB . Enhances the capability of Group Update Providers (GUP)C . Provides reputation ratings for structured dataD . Increases the efficiency and effectiveness of LiveUpdateView AnswerAnswer: A

August 21, 2019 No Comments READ MORE +

What does SONAR use to reduce false positives?

What does SONAR use to reduce false positives?A . Virus and Spyware definitionsB . Extended File Attributes (EFA) tableC . File Fingerprint listD . Symantec InsightView AnswerAnswer: D Explanation: References: https://support.symantec.com/en_US/article.HOWTO80929.html

August 20, 2019 No Comments READ MORE +

Which package type should an administrator use to reduce a SEP environment’s footprint when considering that new SEP 14 clients will be installed on point of sale terminals?

Which package type should an administrator use to reduce a SEP environment’s footprint when considering that new SEP 14 clients will be installed on point of sale terminals?A . Default Standard ClientB . Default Embedded or VDI clientC . Default dark network clientD . Custom Standard clientView AnswerAnswer: B Explanation:...

August 19, 2019 No Comments READ MORE +