Get New 2022 Valid Practice Fireware Essentials Essentials Q&A - Testing Engine [Q13-Q33]

Share

Get New 2022 Valid Practice Fireware Essentials Essentials Q&A - Testing Engine

Essentials Dumps PDF - 100% Passing Guarantee

NEW QUESTION 13
HOTSPOT
Match each type of NAT with the correct description:

Answer:

Explanation:

Explanation:
NAT Loopback 1-to 1 NAT
Dynamic NAT

 

NEW QUESTION 14
An email newsletter about sales from an external company is sometimes blocked by spamBlocker. What option could you choose to make sure the newsletter is delivered to your users? (Select one.)

  • A. Set the spamBlocker virus outbreak detection action to allow emails from the newsletter source.
  • B. Set the spamBlocker action to quarantine the email for later retrieval.
  • C. Add a spamBlocker exception based on the From field of the newsletter email.
  • D. Add a spamBlocker subject tag for bulk email messages.

Answer: D

 

NEW QUESTION 15
While troubleshooting a branch office VPN tunnel, you see this log message:
2 014-07-23 12:29:15 iked (203.0.113.10<->203.0.113.20) Peer proposes phase one encryption 3DES, expecting AES
What settings could you modify in the local device configuration to resolve this issue? (Select one.)

  • A. BOVPN-Allow policies
  • B. BOVPN Gateway settings
  • C. BOVPN Tunnel settings
  • D. BOVPN Tunnel Route settings

Answer: B

Explanation:
Explanation/Reference:
The WatchGuard BOVPN settings error in this example states phase one encryption. Only the BOVPN Gateway settings can specify phase one settings. BOVPN Tunnel settings specify phase 2 settings.

 

NEW QUESTION 16
Which items are included in a Firebox backup image? (Select four.)

  • A. Certificates
  • B. Log file
  • C. Configuration file
  • D. Fireware OS
  • E. Feature keys
  • F. Support snapshot

Answer: B,C,E,F

 

NEW QUESTION 17
In this diagram, which branch office VPN tunnel route must you add on the Site A Firebox to allow traffic between devices on the trusted network at Site A and the trusted network at site B? (Select one.)

  • A. Local: 10.0.10.0/24 <--> Remote: 192.168.1.0/24
  • B. Local: 10.0.10.1/24 <--> Remote: 192.168.1.1/24
  • C. Local: 203.0.113.10/24 <--> Remote: 198.151.100.2/24
  • D. Local: 192.168.1.0/24 <--> Remote: 10.0.10.0/24

Answer: B

Explanation:
Explanation/Reference:
The local, Site A, network is 10.0.10.1/24 while the remote, Site B, network is 192.168.1.1/24.

 

NEW QUESTION 18
Which tool is used to see a treemap visualization of the traffic through your Firebox? (Select one)

  • A. FireBox SystemManager - Blocked Sites list
  • B. Log Server
  • C. Firebox System Manager - Authentication list
  • D. Traffic Monitor
  • E. Firebox System Manager - Subscription services
  • F. FireWatch

Answer: F

Explanation:
The FireWatch page is separated into tabs of data that is presented in aTreemap Visualization. The treemap is a widget that proportionally sizes blocks in the display to represent the data for that tab. The largest blocks on the tab represent the largest data users. The data is sorted by the tab you select and the type you select from the drop-down list at the top right of the page.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181

 

NEW QUESTION 19
You can configure the SMTP-proxy policy to restrict email messages and email content based on which of these message characteristics? (Select four.)

  • A. Check URLs in message with WebBlocker
  • B. Maximum email recipients
  • C. Email message size
  • D. Attachment file name and content type
  • E. Sender Mail From address

Answer: B,C,D,E

Explanation:
Explanation/Reference:
A: Another way to protect your SMTP server is to restrict incoming traffic to only messages that use your company domain. In this example, we use the mywatchguard.com domain. You can use your own company domain.
1. From the SMTP-Incoming Categories list, select Address > Rcpt To.
2. In the Pattern text box, type *.mywatchguard.com. Click Add. This denies any email messages with a Rcpt To address that does not match the company domain.
3. Click OK to close the SMTP Proxy Action Configuration dialog box.
C: In this exercise we will reduce the maximum email size to 5 MB (5, 000 kilobytes).
1. From the SMTP Proxy Action dialog box under the Categories list, select General > General Settings.
2. Find the Limits section. In the Set the maximum email size value box, type 5000.
D: Example: He must configure the Firebox to allow Microsoft Access database files to go through the SMTP proxy. He must also configure the Firebox to deny Apple iTunes MP4 files because of a recent vulnerability announced by Apple.
1. From the SMTP-Incoming Categories list, select Attachments > Content Types.
2. In the Actions to take section, use the None Matched drop-down list to select Allow.
This allows all content types through Firebox to the SMTP server. After Successful Company is able to add in the specific content types they want to allow, they set this parameter to strip content type that does not match their list of allowed content types.
From the SMTP-Incoming Categories list, select Attachments > Filenames.
4. The filename extension for Microsoft Access databases is ".mdb". In the list of filenames, find and select
.mdb. Click Remove. Click Yes to confirm.
3. If no rules match, the Action to take option is set to allow the attachment. In this example, MS Access files are now allowed through the Firebox.
5. In the Pattern text box, type *.mp4. Click Add.
This rule configures the Firebox to deny all files with the Apple iTunes ".mp4" file extension bound for the SMTP server.
E: The Set the maximum email recipient checkbox is used to set the maximum number of email recipients to which a message can be sent in the adjacent text box that appears, type or select the number of recipients.
The XTM device counts and allows the specified number of addresses through, and then drops the other addresses. For example, if you set the value to 50 and there is a message for 52 addresses, the first 50 addresses get the email message. The last two addresses do not get a copy of the message.
Incorrect:
Not B: Webblocker is configured through a HTTP-policy, not through an SMTP policy.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 125, 126 Reference: http://watchguard.com/help/docs/wsm/xtm_11/en-us/content/en-us/proxies/smtp/ proxy_smtp_gen_settings_c.html

 

NEW QUESTION 20
Which of these threats can the Firebox prevent with the default packet handling settings? (Select four.)

  • A. Access to inappropriate websites
  • B. Malware in downloaded files
  • C. Denial of service attacks
  • D. IP spoofing
  • E. Port scans
  • F. Flood attacks
  • G. Viruses in email messages

Answer: C,D,E,F

Explanation:
Explanation/Reference:
B: The default configuration of the XTM device is to block DDoS attacks.
C: In a flood attack, attackers send a very high volume of traffic to a system so it cannot examine and allow permitted network traffic. For example, an ICMP flood attack occurs when a system receives too many ICMP ping commands and must use all of its resources to send reply commands. The XTM device can protect against these types of flood attacks: IPSec, IKE, ICMP. SYN, and UDP.
E: When the Block Port Space Probes (port scans) and Block Address Space Probes check boxes are selected, all incoming traffic on all interfaces is examined by the XTM device.
CG: Default packet handling can reject a packet that could be a security risk, including packets that could be part of a spoofing attack or SYN flood attack
Reference: http://www.watchguard.com/help/docs/wsm/xtm_11/en-US/index.html#en-US/ intrusionprevention/default_pkt_handling_opt_about_c.html%3FTocPath%3DDefault%2520Threat%
2520Protection%7CAbout%2520Default%2520Packet%2520Handling%2520Options%7C_____0

 

NEW QUESTION 21
To use the Web Setup Wizard or Quick Setup Wizard to configure your Firebox or XTM device, your computer must have an IP address on which subnet? (Select one.)

  • A. 10.0.1.0/24
  • B. 10.0.10.0/24
  • C. 192.168.1.0/24
  • D. 172.16.10.0/24

Answer: A

 

NEW QUESTION 22
Which diagnostic tasks can you run from the Traffic Monitor tab of Firebox System Manager? (Select four.)

  • A. Reputation lookup
  • B. Traceroute
  • C. DNSlookup
  • D. Ping
  • E. TCP dump
  • F. MAC address lookup

Answer: B,C,D,E

Explanation:
From Firebox System Manager, you can run diagnostic tasks to review information in all the log messages from your Firebox or XTM device. This can help you debug problems on your network.
1.On the Traffic Monitor tab, right-click a message and select Diagnostic Tasks. Or, select Tools > Diagnostic Tasks.
2.From the Task drop-down list, select the task to run. Ping IPv4 Ping IPv6 traceroute DNS Lookup TCP Dump
Reference:http://watchguard.com/help/docs/wsm/xtm_11/en-us/content/enus/fsm/log_message_learn_more_wsm.html

 

NEW QUESTION 23
Match each WatchGuard Subscription Service with its function.
A repository where email messages can be sent based on analysis by spamBlocker, Gateway AntiVirus, or Data Loss Prevention. (Choose one).

  • A. Spam Blocker
  • B. Quarantine Server
  • C. Intrusion Prevention Server IPS
  • D. Gateway / Antivirus
  • E. Data Loss Prevention DLP

Answer: B

Explanation:
Explanation/Reference:
The WatchGuard Quarantine Server provides a safe mechanism to quarantine any email messages that are suspected or known to be spam, or to contain viruses or sensitive data. The Quarantine Server is a repository for email messages that the SMTP proxy sends to quarantine based on analysis by spamBlocker, Gateway AntiVirus, or Data Loss Prevention.
Reference: https://www.watchguard.com/help/docs/webui/xtm_11/en-US/index.html#cshid=en-US/ quarantineserver/quar_server_about_c.html

 

NEW QUESTION 24
After you enable spamBlocker, your users experience no reduction in the amount of spam they receive. What could explain this? (Select three.)

  • A. spamBlocker Virus Outbreak Detection is not enabled.
  • B. Connections cannot be resolved to the spamBlocker servers because DNS is not configured on the Firebox.
  • C. The Maximum File Size to Scan option is set too high.
  • D. The spamBlocker action for Confirmed Spam is set to Allow.
  • E. A spamBlocker exception is configured to allow traffic from sender *.

Answer: B,D,E

 

NEW QUESTION 25
What settings must you device configuration file include for Gateway AntiVirus to protect users on your network? (Select two.)

  • A. Install the GatewayAntiVirus server on your network.
  • B. Configure Gateway AntiVirus settings for a proxy action.
  • C. Decrease the scan limits
  • D. Configure a policy to use a proxy action that has AntiVirus settings configured.
  • E. Disable automatic signature updates.

Answer: B,D

Explanation:
When you enable Gateway AntiVirus, you must set the actions to be taken if a virus or error is found in an email message (SMTP or POP3 proxies), web page download or upload post (HTTP proxy), or uploaded or downloaded file (FTP proxy). When Gateway AntiVirus is enabled, it scans each file up to a specified kilobyte count. Any additional bytes in the file are not scanned. This allows the proxy to partially scan very large files without a large effect on performance.
Reference:http://watchguard.com/help/docs/webui/xtm_11/en-us/content/en
us/services/gateway_av/av_actions_config_c.html

 

NEW QUESTION 26
From the Firebox System Manager >Authentication List tab, you can view all of the authenticated users connected to your Firebox and disconnect any of them.

  • A. True
  • B. False

Answer: A

 

NEW QUESTION 27
How can you prevent connections to the Fireware Web UI from computers on optional interface Eth2? (Select one.)

  • A. Remove Any-Optional from the From list of the WatchGuard policy.
  • B. Remove Any-Optional from the To list of the WatchGuard policy
  • C. Remove Any-Optional from the To list of the WatchGuard Web UI policy.
  • D. Remove Eth2 from the Any-Optional alias.
  • E. Remove Any-Optional from the From list of the WatchGuard Web UI policy

Answer: C

 

NEW QUESTION 28
Which of these options are private IPv4 addresses you can assign to a trusted interface, as described in RFC 1918, Address Allocation for Private Internets? (Select three.)

  • A. 192.0.2.1/24
  • B. 198.51.100.1/24
  • C. 172.16.0.1/16
  • D. 10.50.1.1/16
  • E. 192.168.50.1/24

Answer: C,D,E

 

NEW QUESTION 29
Which of these actions adds a host to the temporary or permanent blocked sites list? (Select three.)

  • A. In Policy Manager, selectSetup> Default Threat Protection > Blocked Sitesand clickAdd.
  • B. On the Firebox System Manager >Blocked Sitestab, selectAdd.
  • C. Add the site to theBlocked Sites Exceptionslist.
  • D. Enable theAUTO-block sites that attempt to connectoption in a deny policy.

Answer: A,B,D

Explanation:
A: You can configure a deny policy to automatically block sites that originate traffic that does not comply with the policy rulese
1.From Policy Manager, double-click the PCAnywhere policy.
2.Click the Properties tab. Select the Auto-block sites that attempt to connect checkbox.
Reference:https://www.watchguard.com/training/fireware/80/defense8.htm
C: The blocked sites list shows all the sites currently blocked as a result of the rules defined in Policy Manager. From this tab, you can add sites to the temporary blocked sites list, or remove temporary blocked sites.
Reference:http://www.watchguard.com/training/fireware/82/monitoa6.htm
D: You can usePolicy Manager to permanently add sites to the Blocked Sites list.
1.select Setup > Default Threat Protection > Blocked Sites.
2.Click Add.
The Add Site dialog box appears.
Reference:http://www.watchguard.com/help/docs/wsm/xtm_11/en-US/index.html#cshid=en-
US/intrusionprevention/blocked_sites_permanent_c.html

 

NEW QUESTION 30
If your Firebox has a single public IP address, and you want to forward inbound traffic to internal hosts based on the destination port, which type of NAT should you use? (Select one.)

  • A. Static NAT
  • B. 1-to-1 NAT
  • C. Dynamic NAT

Answer: B

 

NEW QUESTION 31
What settings must you device configuration file include for Gateway AntiVirus to protect users on your network? (Select two.)

  • A. Configure Gateway AntiVirus settings for a proxy action.
  • B. Decrease the scan limits
  • C. Install the Gateway AntiVirus server on your network.
  • D. Configure a policy to use a proxy action that has AntiVirus settings configured.
  • E. Disable automatic signature updates.

Answer: A,D

 

NEW QUESTION 32
If your Firebox has a single public IP address, and you want to forward inbound traffic to internal hosts based on the destination port, which type of NAT should you use? (Select one.)

  • A. Static NAT
  • B. 1-to-1 NAT
  • C. Dynamic NAT

Answer: B

 

NEW QUESTION 33
......

Essentials Braindumps Real Exam Updated on Jan 05, 2022 with 75 Questions: https://www.dumpsactual.com/Essentials-actualtests-dumps.html

Latest Essentials PDF Dumps & Real Tests Free Updated Today: https://drive.google.com/open?id=1zgRnoNl2Lz5injhv5BVL5nh4e1ernCve