156-215.80 · Question #494
Fill in the blank: When a policy package is installed, ________ are also distributed to the target installation Security Gateways.
The correct answer is A. User and objects databases. A policy package is a collection of different types of policies. After installation, the Security Gateway enforces all the policies in the package. A policy package can have one or more of these policy types: Access Control - consists of these types of rules: - Application…
Question
Fill in the blank: When a policy package is installed, ________ are also distributed to the target installation Security Gateways.
Options
- AUser and objects databases
- BNetwork databases
- CSmartConsole databases
- DUser databases
How the community answered
(17 responses)- A94% (16)
- D6% (1)
Explanation
A policy package is a collection of different types of policies. After installation, the Security Gateway enforces all the policies in the package. A policy package can have one or more of these policy types: Access Control - consists of these types of rules: - Application Control and URL Filtering - Data Awareness Desktop Security - the Firewall policy for endpoint computers that have the Endpoint Security VPN remote access client installed as a standalone client. Threat Prevention - consists of: - IPS - IPS protections continually updated by IPS Services - Anti-Bot - Detects bot-infected machines, prevents bot damage by blocking bot commands and Control (C&C) communications - Anti-Virus - Includes heuristic analysis, stops viruses, worms, and other malware at the gateway - Threat Emulation - detects zero-day and advanced polymorphic attacks by opening suspicious files in a sandbox The installation process: Runs a heuristic verification on rules to make sure they are consistent and that there are no redundant rules. If there are verification errors, the policy is not installed. If there are verification warnings (for example, if anti-spoofing is not enabled for a Security Gateway with multiple interfaces), the policy package is installed with a warning. Makes sure that each of the Security Gateways enforces at least one of the rules. If none of the rules are enforced, the default drop rule is enforced. Distributes the user database and object database to the selected installation targets.
Topics
Community Discussion
No community discussion yet for this question.