nerdexam
Symantec

ST0-134 · Question #199

A Symantec Endpoint Protection administrator is using System Lockdown in blacklist mode with a file fingerprint list. When testing a client, the administrator notices that at least one of the files…

The correct answer is A. The application has been upgraded. See the full explanation below for the reasoning.

Question

A Symantec Endpoint Protection administrator is using System Lockdown in blacklist mode with a file fingerprint list. When testing a client, the administrator notices that at least one of the files on the list is allowed to execute. What is the likely cause of the problem?

Options

  • AThe application has been upgraded.
  • BThe Application and Device Control policy is in test mode.
  • CA file exception has been added to the Exceptions policy.
  • DThe Application and Device Control policy is allowing the file to execute.

How the community answered

(39 responses)
  • A
    74% (29)
  • B
    15% (6)
  • C
    3% (1)
  • D
    8% (3)

Community Discussion

No community discussion yet for this question.

Full ST0-134 Practice