2013年8月31日星期六

ST0-116 examination of the latest Symantec certification exam questions and answers

Symantec ST0-116 exam is a Technical Specialist exam. Symantec ST0-116 exam can help and promote IT staff have a good career. With a good career, and of course you can create a steady stream of corporate and national interests, so as to promote the development of the national economy. If all of the IT staff can do like this the state will become stronger. Pass4Test Symantec ST0-116 exam training materials can help IT personnel to achieve this purpose. We guarantee you 100% to pass the exam. Make the tough decision to choose our Pass4Test Symantec ST0-116 exam training materials please.

Pass4Test has a huge IT industry elite team. They all have high authority in the IT area. They use professional knowledge and experience to provide training materials for people ready to participate in different IT certification exams. The accuracy rate of exam practice questions and answers provided by Pass4Test is very high and they can 100% guarantee you pass the exam successfully for one time. Besides, we will provide you a free one-year update service.

In order to pass Symantec certification ST0-116 exam, selecting the appropriate training tools is very necessary. And professional study materials about Symantec certification ST0-116 exam is a very important part. Our Pass4Tes can have a good and quick provide of professional study materials about Symantec certification ST0-116 exam. Our Pass4Test IT experts are very experienced and their study materials are very close to the actual exam questions, almost the same. Pass4Test is a convenient website specifically for people who want to take the certification exams, which can effectively help the candidates to pass the exam.

In order to protect the vital interests of each IT certification exams candidate, Pass4Test provides high-quality Symantec ST0-116 exam training materials. This exam material is specially developed according to the needs of the candidates. It is researched by the IT experts of Pass4Test. Their struggle is not just to help you pass the exam, but also in order to let you have a better tomorrow.

ST0-116 exam is a Symantec certification exam and IT professionals who have passed some Symantec certification exams are popular in IT industry. So more and more people participate in ST0-116 certification exam, but ST0-116 certification exam is not very simple. If you do not have participated in a professional specialized training course, you need to spend a lot of time and effort to prepare for the exam. But now Pass4Test can help you save a lot of your precious time and energy.

There are many ways to help you pass Symantec certification ST0-116 exam and selecting a good pathway is a good protection. Pass4Test can provide you a good training tool and high-quality reference information for you to participate in the Symantec certification ST0-116 exam. Pass4Test's practice questions and answers are based on the research of Symantec certification ST0-116 examination Outline. Therefore, the high quality and high authoritative information provided by Pass4Test can definitely do our best to help you pass Symantec certification ST0-116 exam. Pass4Test will continue to update the information about Symantec certification ST0-116 exam to meet your need.

Pass4Test provide training tools included Symantec certification ST0-116 exam study materials and simulation training questions and more importantly, we will provide you practice questions and answers which are very close with real certification exam. Selecting Pass4Test can guarantee that you can in a short period of time to learn and to strengthen the professional knowledge of IT and pass Symantec certification ST0-116 exam with high score.

Exam Code: ST0-116
Exam Name: Symantec (Symantec Data Loss Prevention 11 Technical Assessment)
One year free update, No help, Full refund!
Updated: 2013-08-30

ST0-116 Free Demo Download: http://www.pass4test.com/ST0-116.html

NO.1 Which two functions of the communications architecture ensure that the system will automatically
recover if a network connectivity failure occurs between the detection servers and the Enforce Server?
(Select two.)
A. Oracle database backup
B. detection server autonomous monitoring
C. Enforce Server offline alert notification
D. detection server incident queuing
E. detection server alert archiving
Answer: B, D

Symantec exam prep   ST0-116   ST0-116 study guide   ST0-116 study guide   ST0-116 demo

NO.2 After installing several new DLP Agents, the Data Loss Prevention administrator discovers that none of
the endpoint agents are appearing on the Agent Overview page. After refreshing the page several times,
and determining that the equipment is powered on and connected to the network, the Agent Overview
page still fails to display the new agents. What is a possible cause for this issue?
A. The DLP Agents need to be added manually through the Symantec Management Platform.
B. The DLP Agents were installed with the incorrect Endpoint server IP address.
C. The assigned Endpoint server needs to be recycled in order to detect the new DLP Agents.
D. The Endpoint Location is set to "Manually" instead of "Automatically" in the Enforce user interface.
Answer: B

Symantec   ST0-116 questions   ST0-116 answers real questions

NO.3 A role is configured for XML export and a user executes the export XML incident action. What must be
done before history information is included in the export?
A. A remediator must take an action on the incident.
B. History must be enabled as a tab or panel in the incident snapshot layout.
C. Incident history must be enabled in the user's role.
D. The manager.properties must be configured for XML export.
Answer: C

Symantec   ST0-116 dumps   ST0-116   ST0-116   ST0-116 exam

NO.4 To manually troubleshoot DLP Agent issues, the database and log viewer tools must be executed in
which location?
A. in the same location as the dcs.ead file location
B. in the same location as the cg.ead file location
C. in the same location as the ks.ead file location
D. in the same location as the is.ead file location
Answer: C

Symantec   ST0-116 demo   ST0-116 exam dumps   ST0-116 pdf

NO.5 Where should the Network Discover detection server be placed in a corporate network architecture?
A. inside the DMZ
B. on the same virtual LAN as the proxy server
C. inside the corporate network
D. on the same switch as the Oracle database server
Answer: C

Symantec braindump   ST0-116   ST0-116

NO.6 Which DLP Agent task is unique to the Symantec Management Platform and is unavailable through
the Enforce console?
A. Change Endpoint server
B. Restart agent
C. Pull agent logs
D. Set log level
Answer: D

Symantec certification training   ST0-116   ST0-116 certification training   ST0-116 demo   ST0-116   ST0-116 pdf

NO.7 What are two benefits of the Symantec Data Loss Prevention 11 security architecture? (Select two.)
A. Communication is initiated by the detection servers inside the firewall.
B. SSL communication is used for user access to the Enforce Platform.
C. Endpoint Agent to Endpoint Server communication uses the Triple Data Encryption Standard (Triple
DES).
D. Confidential information captured by system components is stored using Advanced Encryption
Standards (AES) symmetric keys.
E. All indexed data uploaded into the Enforce Platform is protected with a two-way hash.
Answer: B, D

Symantec   ST0-116 test   ST0-116   ST0-116   ST0-116 dumps

NO.8 An administrator is running a Discover Scanner target scan and the scanner is unable to
communicate back to the Discover Server. Where will the files be stored.?
A. Discover Server incoming folder
B. scanner's outgoing folder
C. scanner's incoming folder
D. Enforce incident persister
Answer: B

Symantec   ST0-116 braindump   ST0-116 exam prep

NO.9 What must a policy manager do when working with Exact Data Matching (EDM) indexes?
A. re-index large data sources on a daily or weekly basis
B. index the original data source on the detection server
C. deploy the index only to specific detection servers
D. create a new data profile if data source schema changes
Answer: D

Symantec exam prep   ST0-116   ST0-116 exam simulations   ST0-116 dumps   ST0-116

NO.10 The database is full and the Incident Persister is unable to process incidents. Which two file types
could be present in Vontu/protect/incidents? (Select two.)
A. .idx
B. .edc
C. .idc
D. .inc
E. .bad
Answer: C, E

Symantec   ST0-116   ST0-116   ST0-116

NO.11 A divisional executive requests a report of all incidents generated by a particular region, summarized
by department. What must be populated to generate this report?
A. remediation attributes
B. sender correlations
C. status groups
D. custom attributes
Answer: D

Symantec test answers   ST0-116   ST0-116   ST0-116

NO.12 A Data Loss Prevention administrator notices that several errors occurred during a Network Discover
scan. Which report can the administrator use to determine exactly which errors occurred and when?
A. Discover Incident report sorted by target name and scan
B. Full Activity report for that particular scan
C. Server Event report from Server Overview
D. Full Statistics report for that particular scan
Answer: B

Symantec certification   ST0-116 test answers   ST0-116 test questions   ST0-116 pdf

NO.13 What is a feature of keyword proximity matching?
A. It will match on whole keywords only.
B. It has a maximum distance between keywords of 99.
C. It only matches on message body.
D. It evaluates each keyword pair independently.
Answer: D

Symantec pdf   ST0-116   ST0-116   ST0-116 exam simulations   ST0-116 exam prep   ST0-116 original questions

NO.14 A company needs to scan all of its file shares on a weekly basis to make sure sensitive data is being
stored correctly. The total volume of data on the file servers is greater than 1 TB . Which approach will
allow the company to quickly scan all of this data on a weekly basis?
A. run an initial complete scan of all the file shares, then modify the scan target to add date filters and
exclude any files created or modified before the initial scan was run
B. run an initial complete scan of all the file shares, then modify the scan target to an incremental scan
type
C. create a separate scan target for each file share and exclude files accessed before the start of each
scan
D. run an initial complete scan of all file shares, create a summary report of all incidents created by the
scan, then run weekly scans and compare incidents from weekly scans to incidents from the complete
scan
Answer: B

Symantec   ST0-116   ST0-116   ST0-116   ST0-116 original questions

NO.15 How can an administrator validate that once a policy is updated and saved it has been enabled on a
specific detection server?
A. check the status of the policy on the policy list page
B. check to see whether the policy was loaded under System > Servers > Alerts
C. check the policy and validate the date and time it was last updated
D. check to see whether the policy was loaded under System > Servers > Events
Answer: D

Symantec   ST0-116 dumps   ST0-116

NO.16 Which product provides support for the Citrix XenApp virtualization platform?
A. Endpoint Prevent
B. Network Discover
C. Network Protect
D. Network Prevent
Answer: A

Symantec certification training   ST0-116   ST0-116

NO.17 A user is unable to log in as sysadmin. The Data Loss Prevention system is configured to use Active
Directory authentication. The user is a member of two roles, sysadmin and remediator. How should the
user log in to the user interface in the sysadmin role?
A. sysadmin\username@domain
B. sysadmin\username
C. domain\username
D. sysadmin\username\domain
Answer: B

Symantec   ST0-116   ST0-116   ST0-116 practice test

NO.18 Which two policy management actions can result in a reduced number of incidents for a given traffic
flow? (Select two.)
A. adding additional component matching to the rule
B. adding data owner exceptions
C. deploying to additional detection servers
D. increasing condition match count
E. adding additional severities
Answer: B, D

Symantec   ST0-116   ST0-116 dumps   ST0-116

NO.19 Which Network Discover option is used to determine whether confidential data exists without having to
scan the entire target?
A. Byte Throttling
B. File Throttling
C. Match Thresholds
D. Inventory Mode Scanning
Answer: D

Symantec test   ST0-116   ST0-116   ST0-116   ST0-116

NO.20 Which two remediation actions are available for Network Protect? (Select two.)
A. Copy
B. Move
C. Block
D. Rename
E. Quarantine
Answer: A, E

Symantec   ST0-116 answers real questions   ST0-116   ST0-116

Through continuous development and growth of the IT industry in the past few years, ST0-116 exam has become a milestone in the Symantec exam, it can help you to become a IT professional. There are hundreds of online resources to provide the Symantec ST0-116 questions. Why do most people to choose Pass4Test? Because Pass4Test has a huge IT elite team, In order to ensure you accessibility through the Symantec ST0-116 certification exam, they focus on the study of Symantec ST0-116 exam. Pass4Test ensure that the first time you try to obtain certification of Symantec ST0-116 exam. Pass4Test will stand with you, with you through thick and thin.

没有评论:

发表评论