Docsity
Docsity

Prepare for your exams
Prepare for your exams

Study with the several resources on Docsity


Earn points to download
Earn points to download

Earn points by helping other students or get them with a premium plan


Guidelines and tips
Guidelines and tips

SonicWALL Basic Administration Exam Questions and Answers, Exams of Nursing

SonicWALL Basic Administration Exam Questions and Answers

Typology: Exams

2023/2024

Uploaded on 07/01/2024

silvester-3
silvester-3 🇰🇪

1 / 8

Toggle sidebar

This page cannot be seen from the preview

Don't miss anything!

bg1
SonicWALL Basic Administration Exam
Questions and Answers
A customer has an established base of GVC VPN users with a WAN GroupVPN policy configured. The
customer wants to begin an implementation for SSL VPN users. The existing group of GVC VPN
users must be converted to SSL VPN users because the SonicWALL security appliance does not
support both types of VPN users. -Correct Answers= FALSE
SSL VPN eliminates the need for remote access authentication. -Correct Answers= FALSE
Which of the following correctly describes how a bandwidth management rule works?
-Can be configured for all VPN traffic
-Only applies to outbound traffic from the firewall to the WAN or any other destination
-Can be configured only for individual VPN Security Associations
-Only applies to inbound traffic from the WAN to the firewall -Correct Answers= Can be configured
for all VPN traffic
What are the benefits provided by a VPN (select all that apply)?
-Securely connects distributed networks together
-Prevents denial-of-service attacks on remote connections
-Enables a remote connection to the LAN via the Internet
-Assures remote clients have up-to-date anti-virus software
-Provides data confidentiality and sender authentication -Correct Answers= -Securely connects
distributed networks together
-Enables a remote connection to the LAN via the Internet
-Provides data confidentiality and sender authentication
What benefits are provided by a VPN (select all that apply)?
-Reporting
-Increased capacity
-Scalability
-Encryption
-Security -Correct Answers= -Scalability
-Encryption
-Security
Which of the following is the most basic firewall technology?
pf3
pf4
pf5
pf8

Partial preview of the text

Download SonicWALL Basic Administration Exam Questions and Answers and more Exams Nursing in PDF only on Docsity!

SonicWALL Basic Administration Exam

Questions and Answers

A customer has an established base of GVC VPN users with a WAN GroupVPN policy configured. The customer wants to begin an implementation for SSL VPN users. The existing group of GVC VPN users must be converted to SSL VPN users because the SonicWALL security appliance does not support both types of VPN users. - Correct Answers= FALSE SSL VPN eliminates the need for remote access authentication. - Correct Answers= FALSE Which of the following correctly describes how a bandwidth management rule works?

  • Can be configured for all VPN traffic
  • Only applies to outbound traffic from the firewall to the WAN or any other destination
  • Can be configured only for individual VPN Security Associations
  • Only applies to inbound traffic from the WAN to the firewall - Correct Answers= Can be configured for all VPN traffic What are the benefits provided by a VPN (select all that apply)?
  • Securely connects distributed networks together
  • Prevents denial-of-service attacks on remote connections
  • Enables a remote connection to the LAN via the Internet
  • Assures remote clients have up-to-date anti-virus software
  • Provides data confidentiality and sender authentication - Correct Answers= - Securely connects distributed networks together
  • Enables a remote connection to the LAN via the Internet
  • Provides data confidentiality and sender authentication What benefits are provided by a VPN (select all that apply)?
  • Reporting
  • Increased capacity
  • Scalability
  • Encryption
  • Security - Correct Answers= - Scalability
  • Encryption
  • Security Which of the following is the most basic firewall technology?
  • Packet filtering
  • Single firewall
  • Deep packet inspection
  • Application proxies - Correct Answers= - Packet filtering The default firewall access rule allows all communication from the LAN to the Internet.
  • True
  • False - Correct Answers= - True What are two advantages of a multiple firewall?
  • Protects restricted special resources
  • Offers protection from external attacks while each network segment has free access to other segments
  • Helps protect entire departments - Correct Answers= What are two advantages of a multiple firewall?
  • Protects restricted special resources What is the purpose of a security policy?
  • To authenticate the process by which users and devices are identified and granted access to the network
  • To monitor the network security and make sure the firewall is configured properly to prevent inappropriate usage
  • To make it more difficult for hackers to locate a security hole in a network's gateway
  • To describe how a company wants to approach security, including rules of conduct and the determination of acceptable risk - Correct Answers= - To describe how a company wants to approach security, including rules of conduct and the determination of acceptable risk What question would you ask to get specific information on user restrictions?
  • What kinds of network traffic will you allow?
  • Will the computers be locked away from the public, or will they have access to the hardware?
  • Will users be allowed to login at any time, from any location, to any machine?
  • Who should be allowed to access your services? - Correct Answers= - Will users be allowed to login at any time, from any location, to any machine?
  • Plain text Which SonicWALL security services use the Deep Packet Inspection engine? (Select all that apply)
  • IPS
  • Anti-Spyware
  • GVC
  • GAV
  • CFS - Correct Answers= - IPS
  • Anti-Spyware
  • GAV
  • CFS A SonicWALL security appliance configured with Gateway Anti-Virus verifies and enforces the Desktop Anti-Virus client to the downstream workstation.
  • True
  • False - Correct Answers= - False The SonicWALL GAV engine can perform base64 decoding without ever reassembling the entire base64 encoded email stream.
  • True
  • False - Correct Answers= - True When you select "Prevent All" in the IPS Global Settings of the SonicWALL security appliance for High Priority Attacks, this allows all blocked attacks to be entered into the Log file of the security appliance.
  • True
  • False - Correct Answers= - False SonicWALL GAV includes advanced decompression technology that can automatically decompress and scan files on a per packet basis to search for viruses and malware.
  • True
  • False - Correct Answers= - True The SonicWALL security appliance maintains an Event log for tracking potential security threats.
  • True
  • False - Correct Answers= - True

Which Security Services of the SonicWALL security appliance use the SonicWALL Deep Packet Inspection engine?

  • IPS, GAV, Anti-Spyware, and Viewpoint
  • IPS, Anti-Spyware, Content Filtering
  • IPS, GAV, and Anti-Spyware
  • Global VPN Client - Correct Answers= - IPS, GAV, and Anti-Spyware In order for SonicWALL's Deep Packet Inspection engine to provide protection, where must GAV, IPS, and/or Gateway Anti-Spyware be configured?
  • Firewall rules
  • Enforced in the Zones and enabled in security services
  • Address objects
  • Zones
  • NAT policies and firewall rules - Correct Answers= - Zones Which of the following LB/Failover methods would be selected if an administrator wanted to specify how much outbound traffic is sent through the primary and secondary WAN interfaces?
  • Active/Passive
  • Ratio based
  • Round Robin
  • Spill-Over based - Correct Answers= - Ratio based How does the SonicWALL maintain persistence with outbound load balancing?
  • SSL Session ID
  • Source IP and Destination IP
  • Source and Destination Port
  • Session Cookies - Correct Answers= - Source IP and Destination IP One requirement of WAN ISP Failover and Load balancing is?
  • Twin-ax cables
  • Standard OS
  • A second ISP connection
  • Cross-Over cable - Correct Answers= - A second ISP connection When WAN failover occurs, the firewall re-establishes all sessions using the new WAN interface with no traffic interruption thanks to the stored and tracked session states.
  • True

Check Network Settings is a diagnostic tool which automatically checks the network connectivity and service availability of several pre-defined functional areas of SonicOS, returns the results, and attempts to describe the causes if any exceptions are detected.

  • True
  • False - Correct Answers= - True The default factory behavior of a SonicOS appliance is to allow all traffic from the LAN and block all traffic from the WAN.
  • True
  • False - Correct Answers= - True Before you upgrade firmware, you should save some backups and documentation, so that you are prepared to recover easily if something goes wrong.
  • True
  • False - Correct Answers= - True Which of the following is NOT a valid System boot option:
  • Uploaded Firmware
  • New Firmware
  • Current Firmware
  • Current Firmware with Factory Defaults - Correct Answers= - New Firmware For any model, when having problems with synchronization with the licensing information, you can try a method which involves a button on the _____ page which resets the firewall's licensing.
  • diag.html
  • climgr.html
  • adminlocal.html
  • debug.html - Correct Answers= - diag.html The default IP Address for a SonicOS appliance booted in SafeMode is:
  • For Gen 5 192.168.168.1, for Gen 6 192.168.1.
  • For Gen 5 192.168.168.168, for Gen 6 192.168.1.
  • For Gen 5 192.168.168.1, for Gen 6 192.168.1.
  • For Gen 5 192.168.1.254, for Gen 6 192.168.168.
  • For Gen 5 192.168.168.168, for Gen 6 192.168.1.254 - Correct Answers= - For Gen 5 192.168.168.168, for Gen 6 192.168.1.

To interpret traffic captured by the Packet Capture tool, it is necessary to understand the three-way handshake that occurs for every IKE connection or TCP connection. True False - Correct Answers= True Clicking Create Backup overwrites the existing System Backup firmware image as necessary. True False - Correct Answers= True When a connection completely traverses the firewall, and while the Monitor Intermediate Packets setting is enabled, the packet capture filter should show 2 entries for each packet; ingress and egress. In an inbound NAT scenario, the destination IP should change prior to egress. In an outbound NAT scenario, the source IP should change. True False - Correct Answers= True The Tech Support Report generates a detailed report of the SonicWALL security appliance configuration and status, and can be exported using the Download Report button. True False - Correct Answers= True Setting the Log Monitor to display Emergency level logs will result in the highest priority; most verbose logs. True False - Correct Answers= False Booting the system with Firmware Diagnostic Enabled is a good practice. True False - Correct Answers= False