nerdexam
Symantec

250-530 · Question #60

An organization plans to install Symantec Network Access Control into an existing Symantec Endpoint Protection deployment. The primary goal of this is to prevent access to the internal network for…

The correct answer is C. Self-enforcement uses the Firewall to restrict network access, while the On-Demand client uses the Gateway. See the full explanation below for the reasoning.

Question

An organization plans to install Symantec Network Access Control into an existing Symantec Endpoint Protection deployment. The primary goal of this is to prevent access to the internal network for both managed and unmanaged systems until a system has been validated to meet the organization's basic security and configuration requirements. The proposed design specifications call for:

A single LAN Enforcer Unmanaged systems that will use the Network Access Control On-Demand client Managed systems that will use the Symantec Endpoint Protection client Use of the Self-enforcement method to achieve the primary goal Why does this plan fail to meet the primary goal?

Options

  • ASelf-enforcement uses Network Lockdown to restrict network access, while the On-Demand client uses
  • BSelf-enforcement uses the DHCP policy to restrict network access, while the On-Demand client uses the
  • CSelf-enforcement uses the Firewall to restrict network access, while the On-Demand client uses the Gateway
  • DSelf-enforcement uses Device Control to restrict network access, while the On-Demand client uses DHCP

How the community answered

(52 responses)
  • A
    4% (2)
  • B
    6% (3)
  • C
    77% (40)
  • D
    13% (7)

Community Discussion

No community discussion yet for this question.

Full 250-530 Practice