MA0-101 Exam Questions
91 real MA0-101 exam questions with expert-verified answers and explanations. Page 2 of 2.
- Question #53
Which command allows an off-line signature file download from a tftp server when connectivity to the Manager is unavailable?
- Question #54
Which of the following CLI commands removes trust between a sensor and manager, removes signatures and restores default port settings, but retains IP configuration?
- Question #55
Which port is correctly defined for the Alert Channel on the Network Security Manager?
- Question #56
In L3 mode, a sensor detects an L2 device based on which address?
- Question #57
Which of the following is the correct extension for a Sensor image imported into the Manager?
- Question #58
By default, sensors are configured to operate in which operating mode?
- Question #59
Which sensor action detects and drop attacks in real-time?
- Question #60
Reconnaissance Policies can be applied to which of the following sensor nodes?
- Question #61
Which port needs to be opened for Alert Viewer communication between Client and Manager through a firewall?
- Question #62
Identity Based Access Control cannot co-exist with which mode of NAC deployment on the same port?
- Question #63
Alert fillers can be applied lo which of the following sensor nodes?
- Question #64
Setting a threshold limit in order for the IPS to react if traffic volume exceeds this limit is an example of which type of detection method?
- Question #65
Which of the following deployment modes receives a copy of the packet from a mirrored switch port?
- Question #66
Which of the following commands will reestablish the Alert and packet log channel connection between the sensor and manager?
- Question #67
Policies can be configured to drop packets when which of the following has been defined?
- Question #68
Which CLI command is used to copy sensor SSL certificates from external flash when replacing a failed sensor?
- Question #71
In double VLAN tagging, a second VLAN tag that is inserted into the frame is referred to as which of the following?
- Question #72
____________________are required to be configured before configuring the quarantine/pre- admission user classes or the quarantine DHCP server.
- Question #73
Which of the following activities require a reboot of a sensor? (Choose three)
- Question #74
Which attack cannot be blocked when the sensor has been set for in-line mode?
- Question #75
Which domains does a Super User have full rights to access?
- Question #76
_____________________are a set of Access Control List (ACL) rules that define network access provided to a host, subject to Network Access Control.
- Question #77
When McAfee NAC reports the host status as unmanaged with an Unknown Hearth Level, the sensor redirects the host to which of the following?
- Question #78
As a recommended best practice, what is the total number of sensors that should be managed through a single Network Security Manager installation?
- Question #79
The Network Security Manager provides the following built-in Network Access Zones. (Choose three)
- Question #80
Where in the Network Security Manager console can you see a hierarchical view of all the installed applications currently deployed and the resources associated with each?
- Question #81
Which of the following CLI commands will not cause an automatic reboot of the Sensor?
- Question #82
Select the deployment method which enables the most effective Protection/Prevent on mode of operation.
- Question #83
Setting a threshold to allow an IPS to react when traffic volume exceeds the set limit is an example of what type of detection method?
- Question #84
DoS detection is implemented in which of the following modes? (Choose two)
- Question #85
Which of the following information is unique to Host Intrusion Prevention alerts? (Choose three)
- Question #86
Which server type needs to be configured as a requirement before the Quarantined user classes and Quarantined DHCP server(s) are configured?
- Question #87
What is the CLI command that enables the output of the MAC/IP address mapping table to the sensor debug files?
- Question #88
When creating policies, which of the following rule sets are available for selection within those policies?
- Question #89
Which port needs to be opened for install Channel communication between Sensor and Manager through a firewall?
- Question #90
Which CLI command is used to determine that the Sensor has established trust with the Manager?
- Question #91
Performance debugging mode can be enabled on a sensor for a specified time duration by issuing which of the following CLI commands?
- Question #92
What type of encryption is used for packet log transfers between the Sensor and the Manager?
- Question #93
Which of the following CLI commands only removes trust between a sensor and manager?
- Question #94
Which of the following rules do sub-interfaces inherit when they are created?
- Question #95
What is the command to enable the sensor to forward all traffic at Layer 2 if a failure occurs?