Which of the following should Sara configure?

Sara, the security administrator, must configure the corporate firewall to allow all public IP
addresses on the internal interface of the firewall to be translated to one public IP address on the
external interface of the same firewall. Which of the following should Sara configure?

Sara, the security administrator, must configure the corporate firewall to allow all public IP
addresses on the internal interface of the firewall to be translated to one public IP address on the
external interface of the same firewall. Which of the following should Sara configure?

A.
PAT

B.
NAP

C.
DNAT

D.
NAC

Explanation:
Port Address Translation (PAT), is an extension to network address translation (NAT) that permits
multiple devices on a local area network (LAN) to be mapped to a single public IP address. The
goal of PAT is to conserve IP addresses.
Most home networks use PAT. In such a scenario, the Internet Service Provider (ISP) assigns a
single IP address to the home network’s router. When Computer X logs on the Internet, the router
assigns the client a port number, which is appended to the internal IP address. This, in effect,
gives Computer X a unique address. If Computer Z logs on the Internet at the same time, the
router assigns it the same local IP address with a different port number. Although both computers
are sharing the same public IP address and accessing the Internet at the same time, the router
knows exactly which computer to send specific packets to because each computer has a unique
internal address.



Leave a Reply to Jamaul Cancel reply65

Your email address will not be published. Required fields are marked *

seventeen − 2 =


Wompers

Wompers

1,805 questions? There are so many here that this has actually become useless in exam prep.

Ash_Cold

Ash_Cold

I agree 1,805 questions to study is quite ridiculous, there are only like 60 questions in the exam.

Wompers

Wompers

Took the exam today. I came back and went about 100 in and did not see a single one from the test I took today.

rscott82

rscott82

Did you look past 100? I am going to test today. Will post my results

rscott82

rscott82

unfortunately I failed today 686. This test is way different from the last time I took the test.(2007) I did not find any help from any of the questions on here either. I went to about 134 or so and nothing. I will try to look further and see if there is any difference.

compuhp

compuhp

Sorry to hear that rscott82! Are the questions different from the ones we find here?

Best luck next time!

Ash_Cold

Ash_Cold

I wrote yesterday and passed, the SYO-401 (V.2) prep questions + simulations as of 23 November 2015 are 100% valid. Just know your work and use the (V.2) prep questions and you are sure to succeed.

Anony S

Anony S

Passed SY0-401 exam on the 1st attempt with an 855/900! Studied for 3 months, mainly learned the Gibson book and PassLeader SY0-401 practice tests (http://www.passleader.com/sy0-401.html), Access Control and Identity Management, Application, Data and Host Security, Network Security, Threats and Vulnerabilities, Cryptography…all those questions in PassLeader SY0-401 dumps are very helpful.

sultan

sultan

Hello dear Anony

I am Sultan

Can you please send me PassLeader SY0-401 dumps ( 1220 Q&As ) as i will take it next week

my email is ( [email protected] )

bejart

bejart

Hi dear Anony

I am Bejart

Please can you send me PassLeader SY0-401 dumps ( 1220 Q&As ) as i will take it next month

my email is ( [email protected] )

Steven Reeves

Steven Reeves

Anony and Bejart, I am also taking the SYS-401 in two weeks can you send me the 1220 Q&As. my email ([email protected]).

Sudhakar Potdar

Sudhakar Potdar

SY0-401-2016 is very difficult exam. I am going to take this exam in May 2016. Can you please send me the 1220 Q&As?

Thanks.

kamakani

kamakani

Could you send me the passleader syo-401 dumps if you have them. Got the test in a month and need all the help i can get.

Sonny

Sonny

I am Sonny
i took test fail Can you please send me PassLeader SY0-401 dumps ( 1220 Q&As ) as i will take it next week thanks
Sonny

Jose

Jose

Anony S,

Can you please send me the PassLeader SY0-401 dumps, I will take my by the end of the month.

I would appreciated it, thank you.

Jose

Jake

Jake

Hello Anony,

Could you please send me PassLeader SYO-401 dumps (1220 Q&A). Taking the test in the next two weeks.

[email protected]

Thank you

Justin Woodson

Justin Woodson

Would you send me this dump please

Well

Well

Not a single question or simulation was on my exam – SYO-401, test taken 3 Dec 2015.

checked every version available here and nothing on these versions were on my exam.

Passed, but spent valuable time using this site to assist and it was wasted. Question formatting is nothing comparable, simulations were not close and wording for questions was not accurate.

Not saying not to use it, good for testing knowledge and for finding your weak areas, but due diligence on your part is necessary. USE OTHER RESOURCES and dedicate the proper time to study.

FRESH

FRESH

I absolutely agree. This is only useful to practice and read the explanations but not enough to pass the actual exam. The actual exam is different and requires additional time to study. You need to understand all the concepts and learn all the acronyms because I got a lot of them. Most questions are also lengthy and require your full attention. Passing score is 750 out of 900, not a big margin there. Good luck!

Yan

Yan

Agree with Well and FRESH. Passed recently too. Do not expect the same questions and don’t try to memorize definitions. Instead, try understand the concepts. These questions are good for practice after you understand the objectives from CompTia. The exam is different from what it was in the past (301 code). In this one, you have to understand and apply the concepts.
Good luck!!!

Cey-Jay

Cey-Jay

I took the SYO-401 20 Oct 2015 and passed easy. I studied 401 v.2 and every single question was in that version. After reading here 401 v.3 looks to be a lot different. Not sure why that is. In three year when I need to retake this test I’m not sure this site will be the one I use. However, it does give you a good understanding and description in the answers. Good luck to the rest of you!

Bad70nova

Bad70nova

Why take the test again in 3 years? Just keep up with your CEU’s and pay your maintanance fees. You only need 50 CEU’s every 3 years easy to get and never study for this crazy test again.

billy young

billy young

I would love some questions emailed to me if anyone has the time , please and thank you

#13 Blacklight

#13 Blacklight

mmm I always imagine jamaul mounting my tiny whiteboy asshole for help on my A+ cause im so fucking dumb

Jamaul

Jamaul

ahahahaha…ha…haaaha…hahahahahahaha!

#13 Blacklight

#13 Blacklight

heil hitler fuck my tiny white ass until it’s red as mars yo

Blacklight is my hero

Blacklight is my hero

I wish Blacklight gave me this much attention

Jamaul

Jamaul

lol dude

Blacklight is my hero

Blacklight is my hero

Jamaul you’re nothing but a home wrecker me and Blacklight had a beautiful thing until you showed up

Jamaul

Jamaul

Someone must be the bad guy. I am the villain!

Blacklight is my hero

Blacklight is my hero

I see that’s why Backlight likes you so much he’s always had a thing for bad boys but he knows were his true home is once he’s done with you hell come back to me

Jamaul

Jamaul

He better get struck by lightning on the way home.

#13 Blacklight

#13 Blacklight

mmm I want to suck on that thick chocolate bar jamaul <3 im so shit at doing comptia tests I need to resort to cheating and using braindumps <3

#13 Blacklight

#13 Blacklight

tfw you go to /r/4chan for the best leles xDDDD u mad /g/ :OOOO penis in my tiny cock

Blacklight is my hero

Blacklight is my hero

NOOOOOOOOOOOOOOOOOOO How could you wish that on my bae

Jamaul

Jamaul

duh I’m evil

Blacklight is my hero

Blacklight is my hero

RUDE

shah

shah

can someone please send me questions that will be on the exam? Everyone keeps saying these are not on there.

Noory

Noory

Could someone send me a valid dump, thank you very much

t-turbo

t-turbo

Guys, I just took my SY0-401 today –>(04/22/2016). I spent a month studying the concepts and just to be sure I also memorized all the questions and answers from this website’s SY0-401 (v.2) and SY0-401 (v.3), but let me tell you, only one questions was on my test. I got 6 simulations and 72 questions total. only two simulations were are similar to the ones on this website, the other 4 are all different. The questions are longer, harder, and very tricky. I was glad I studied concepts too. I passed the test with 793 out of 900. But it was tough. I just wanted to share my experience with you guys. Don’t rely on memorization anymore, it’s no use, CompTIA switched out a lot of the questions. I took the test because my workplace required it and I must passed the test. I was so stressed out for a month.

Jes A

Jes A

Took test today and failed. I thought this site helps, so I mainly focused learning on this. Several simulation questions are similar, but not exactly the same. I didn’t study all of questions here, but I think one or two similar questions are from this site ( I mainly studied v1 and v2, and a little from v3.). Try study all the concepts listed in the study guide from CompTIA. However, this site helps me to understand clearly on security concepts because the exam format is pretty much the same as the format from this site. I had 72 questions, and I took so much time to figure out simulation question. Remember, the simulation comes first (about 6 questions), so use your time wisely because almost 1/3 of questions will consume time to read.

Jacob

Jacob

Passed today in the U.S. with a score of 878. Many questions are the same and the ones that are not are just reworded. I just studied a new lead2pass 1838Q dump with explanations.

Jean Leo

Jean Leo

Were there Simulations on your exam? If yes, can you please give some details. Also, are saying that many of the questions you got were the same as the ones on this site?

Cian

Cian

Hey jacob, grats on passing with a great score. By any chance would you mind sending me that test dump. I can paypal you some if required. Just can’t really afford the 99.99 at the moment. been going through a class and also use a book to study the concept but i just want to feel confident taking that test. Thank you in advance.

email: [email protected]

Juan Jose

Juan Jose

I have just passed this exam today (1-june-2016) with a score of 819.
I was studying more than two months to pass it. The book I used was Darriel Gibson, I tried to know/memorize all the important concepts. This exam is complicate, I did not see the exam questions or scenarios before. Two scenarios were easily, others 4 more complicated and hard to understand. I recommend doing scenarios, to get practice about how to do it. About the 72 questions, only a few were a little bit easily, rest complicated and a few very complicate. I recommend don’t spend too much time in the scenarios or complicate questions, I spend 100% of the exam time.
My recommendation is to study a lot (90%-study-time), and do some exams or test to test the knowledge (10%-study-time) knowing that the exam will be more difficult that these tests.
Good luck to everybody!

Bamilo Zend

Bamilo Zend

New SY0-401 Exam Questions and Answers Updated Recently (30/Aug/2016):

NEW QUESTION 1839
A new intern in the purchasing department requires read access to shared documents. Permissions are normally controlled through a group called “Purchasing”, however, the purchasing group permissions allow write access. Which of the following would be the BEST course of action?

A. Modify all the shared files with read only permissions for the intern.
B. Create a new group that has only read permissions for the files.
C. Remove all permissions for the shared files.
D. Add the intern to the “Purchasing” group.

Answer: B

NEW QUESTION 1840
A business has recently deployed laptops to all sales employees. The laptops will be used primarily from home offices and while traveling, and a high amount of wireless mobile use is expected. To protect the laptops while connected to untrusted wireless networks, which of the following would be the BEST method for reducing the risk of having the laptops compromised?

A. MAC filtering
B. Virtualization
C. OS hardening
D. Application white-listing

Answer: C

NEW QUESTION 1841
Which of the following is the GREATEST risk to a company by allowing employees to physically bring their personal smartphones to work?

A. Taking pictures of proprietary information and equipment in restricted areas.
B. Installing soft token software to connect to the company’s wireless network.
C. Company cannot automate patch management on personally-owned devices.
D. Increases the attack surface by having more target devices on the company’s campus

Answer: A

NEW QUESTION 1842
Which of the following is the summary of loss for a given year?

A. MTBF
B. ALE
C. SLA
D. ARO

Answer: B

NEW QUESTION 1843
A Security Officer on a military base needs to encrypt several smart phones that will be going into the field. Which of the following encryption solutions should be deployed in this situation?

A. Elliptic curve
B. One-time pad
C. 3DES
D. AES-256

Answer: D

NEW QUESTION 1844
An organization relies heavily on an application that has a high frequency of security updates. At present, the security team only updates the application on the first Monday of each month, even though the security updates are released as often as twice a week. Which of the following would be the BEST method of updating this application?

A. Configure testing and automate patch management for the application.
B. Configure security control testing for the application.
C. Manually apply updates for the application when they are released.
D. Configure a sandbox for testing patches before the scheduled monthly update.

Answer: A

NEW QUESTION 1845
A technician must configure a firewall to block external DNS traffic from entering a network. Which of the following ports should they block on the firewall?

A. 53
B. 110
C. 143
D. 443

Answer: A

NEW QUESTION 1846
A software development company needs to share information between two remote servers, using encryption to protect it. A programmer suggests developing a new encryption protocol, arguing that using an unknown protocol with secure, existing cryptographic algorithm libraries will provide strong encryption without being susceptible to attacks on other known protocols. Which of the following summarizes the BEST response to the programmer’s proposal?

A. The newly developed protocol will only be as secure as the underlying cryptographic algorithms used.
B. New protocols often introduce unexpected vulnerabilities, even when developed with otherwise secure and tested algorithm libraries.
C. A programmer should have specialized training in protocol development before attempting to design a new encryption protocol.
D. The obscurity value of unproven protocols against attacks often outweighs the potential for introducing new vulnerabilities.

Answer: B

NEW QUESTION 1847
The Chief Technology Officer (CTO) of a company, Ann, is putting together a hardware budget for the next 10 years. She is asking for the average lifespan of each hardware device so that she is able to calculate when she will have to replace each device. Which of the following categories BEST describes what she is looking for?

A. ALE
B. MTTR
C. MTBF
D. MTTF

Answer: D

NEW QUESTION 1848
A software developer wants to ensure that the application is verifying that a key is valid before establishing SSL connections with random remote hosts on the Internet. Which of the following should be used in the code? (Select TWO.)

A. Escrowed keys
B. SSL symmetric encryption key
C. Software code private key
D. Remote server public key
E. OCSP

Answer: CE

NEW QUESTION 1849
A security guard has informed the Chief Information Security Officer that a person with a tablet has been walking around the building. The guard also noticed strange white markings in different areas of the parking lot. The person is attempting which of the following types of attacks?

A. Jamming
B. War chalking
C. Packet sniffing
D. Near field communication

Answer: B

NEW QUESTION 1850
A system administrator is configuring a site-to-site VPN tunnel. Which of the following should be configured on the VPN concentrator during the IKE phase?

A. RIPEMD
B. ECDHE
C. Diffie-Hellman
D. HTTPS

Answer: C

NEW QUESTION 1851
……

P.S. These New SY0-401 Exam Questions Were Just Updated From The Real SY0-401 Exam, You Can Get The Newest SY0-401 Dumps In PDF And VCE From — http://www.passleader.com/sy0-401.html (1867 Q&As) (New Questions Are 100% Available and Wrong Answers Have Been Corrected! Free VCE simulator!)

Good Luck !!!

Churr

Churr

Hi Bamilo,

Thanks for the dumps. How do you know the new ones are accurate and in the exam? Did you recently take it?

Davon

Davon

can you send me the dump? Thank you

Bankul

Bankul

Hi Jacob,
Could you please share your lead2pass 1838Q dump with explanations? [email protected] Thanks

MK

MK

Just passed the SYO-401 Exam!!

The exam started off with 1 SIM asking to determine the attack that was being focused on a network. the attacker was using a tablet. The attack was sql injection and you had to drop various mitigations on the servers..server 1 was a web server, server 2 was a db server, server 3 was an app server and server 4 was a crm server. you had 5 mitigations to choose from.

The second sim gave you licenses (AV, DLP, NIPS, 802.1x, HIDS, ACL’s) You had to drag and drop the mitigations on either db servers, web servers, laptops, switches, routers a UTM and desktop pc’s.

Then I had some drag and dops on encryption another drag and drop on attacks i.e.( Whaling, hoaxes, spamming, vishing etc) then a final drag and drop on ports.

All this took the first 30 mins.

Then I had 70 questions to answer. This exam was more difficult than expected even though I utilized several different sources to study..I used Transcender, this site, pluralsight and the passleader pdf’s mentioned here. There were 2 drag and drops on my exam that came from the passleader pdf and maybe 2 multiple choice questions.

When I was half way through I felt like I was failing pretty bad then with 10 mins left I went back to review all my answers and I did change a few I felt better as they seemed to make sense.

Passing score was 803, not bad for 2 weeks of study.

MK

MK

Just passed the SYO-401 Exam!!

The exam started off with 1 SIM asking to determine the attack that was being focused on a network. the attacker was using a tablet. The attack was sql injection and you had to drop various mitigations on the servers..server 1 was a web server, server 2 was a db server, server 3 was an app server and server 4 was a crm server. you had 5 mitigations to choose from.

The second sim gave you licenses (AV, DLP, NIPS, 802.1x, HIDS, ACL’s) You had to drag and drop the mitigations on either db servers, web servers, laptops, switches, routers a UTM and desktop pc’s.

Then I had some drag and dops on encryption another drag and drop on attacks i.e.( Whaling, hoaxes, spamming, vishing etc) then a final drag and drop on ports.

All this took the first 30 mins.

Then I had 70 questions to answer. This exam was more difficult than expected even though I utilized several different sources to study..I used Transcender, this site, pluralsight and the passleader pdf’s mentioned here. There were 2 drag and drops on my exam that came from the passleader pdf and maybe 2 multiple choice questions.

When I was half way through I felt like I was failing pretty bad then with 10 mins left I went back to review all my answers and I did change a few I felt better as they seemed to make sense.

Passing score was 803, not bad for 2 weeks of study.

Diesel

Diesel

SY0-401 Dumps PDF
CompTIA Security+ Certification Exam

1781 Questions With Answers
SY0-401 Real Exams Question Answers
Just 1 day study required to pass exam
100% Passing Assurance
Money Back Guarantee
Free 3 Months Updates

http://www.dumps4download.com/sy0-401-dumps.html

Kepla

Kepla

ATTENTION PLEASE!!!

The SY0-401 Exam Will Retire On July 31, 2018, and then the New Exam is SY0-501!

New SY0-501 Exam Questions and Answers Updated Recently (7/Nov/2017):

NEW QUESTION 128
Joe, an employee, wants to show his colleagues how much he knows about smartphones. Joe demonstrates a free movie application that he installed from a third party on his corporate smartphone. Joe’s colleagues were unable to find the application in the app stores. Which of the following allowed Joe to install the application? (Select TWO.)

A. Near-field communication
B. Rooting/jailbreaking
C. Ad-hoc connections
D. Tethering
E. Sideloading

Answer: AB

NEW QUESTION 129
A company’s user lockout policy is enabled after five unsuccessful login attempts. The help desk notices a user is repeatedly locked out over the course of a workweek. Upon contacting the user, the help desk discovers the user is on vacation and does not have network access. Which of the following types of attacks are MOST likely occurring? (Select TWO.)

A. Replay
B. Rainbow tables
C. Brute force
D. Pass the hash
E. Dictionary

Answer: DE

NEW QUESTION 130
A user has attempted to access data at a higher classification level than the user’s account is currency authorized to access. Which of the following access control models has been applied to this user’s account?

A. MAC
B. DAC
C. RBAC
D. ABAC

Answer: D

NEW QUESTION 131
A company determines that it is prohibitively expensive to become compliant with new credit card regulations. Instead, the company decides to purchase insurance to cover the cost of any potential loss. Which of the following is the company doing?

A. Transferring the risk
B. Accepting the risk
C. Avoiding the risk
D. Mitigating the risk

Answer: A

NEW QUESTION 132
An organization has determined it can tolerate a maximum of three hours of downtime. Which of the following has been specified?

A. RTO
B. RPO
C. MTBF
D. MTTR

Answer: B

NEW QUESTION 133
An attacker compromises a public CA and issues unauthorized X.509 certificates for Company.com. In the future, impact of similar incidents. Which of the following would assist Company.com with its goal?

A. Certificate pinning
B. Certificate stapling
C. Certificate chaining
D. Certificate with extended validation

Answer: D

NEW QUESTION 134
Malicious traffic from an internal network has been detected on an unauthorized port on an application server. Which of the following network-based security controls should the engineer consider implementing?

A. ACLs
B. HIPS
C. NAT
D. MAC filtering

Answer: D

NEW QUESTION 135
A company wants to host a publicly available server that performs the following functions:
– Evaluates MX record lookup
– Can perform authenticated requests for A and AAA records
– Uses RRSIG
Which of the following should the company use to fulfill the above requirements?

A. DNSSEC
B. SFTP
C. nslookup
D. dig

Answer: C

NEW QUESTION 136
Which of the following attack types BEST describes a client-side attack that is used to mandate an HTML iframe with JavaScript code via web browser?

A. MITM
B. xss
C. SQLi

Answer: B

NEW QUESTION 137
A company has a data classification system with definitions for “Private” and “public”. The company’s security policy outlines how data should be protected based on type. The company recently added the data type “Proprietary”. Which of the following is the MOST likely reason the company added this data type?

A. Reduced cost
B. More searchable data
C. Better data classification
D. Expanded authority of the privacy officer

Answer: B

NEW QUESTION 138
A security administrator is developing training for corporate users on basic security principles for personal email accounts. Which of the following should be mentioned as the MOST secure way for password recovery?

A. Utilizing a single Qfor password recovery
B. Sending a PIN to a smartphone through text message
C. Utilizing CAPTCHA to avoid brute force attacks
D. Use a different e-mail address to recover password

Answer: B

NEW QUESTION 139
A company researched the root cause of a recent vulnerability in its software. It was determined that the vulnerability was the result of two updates made in the last release. Each update alone would not have resulted in the vulnerability. In order to prevent similar situations in the future, the company should improve which of the following?

A. Change management procedures
B. Job rotation policies
C. Incident response management
D. Least privilege access controls

Answer: A

NEW QUESTION 140
A computer on a company network was infected with a zero-day exploit after an employee accidently opened an email that contained malicious content. The employee recognized the email as malicious and was attempting to delete it, but accidently opened it. Which of the following should be done to prevent this scenario from occurring again in the future?

A. Install host-based firewalls on all computers that have an email client installed
B. Set the email program default to open messages in plain text
C. Install end-point protection on all computers that access web email
D. Create new email spam filters to delete all messages from that sender

Answer: C

NEW QUESTION 141
……

P.S. These New SY0-501 Exam Questions Were Just Updated From The Real SY0-501 Exam, You Can Get The Newest SY0-501 Dumps In PDF And VCE From — https://www.passleader.com/sy0-501.html (166q VCE and PDF)

Good Luck!

Riggan

Riggan

ATTENTION PLEASE!!! The SY0-401 Exam Will Retire On July 31, 2018, and then the New Exam is SY0-501!

New SY0-501 Exam Questions and Answers Updated Recently (28/Dec/2017):

Lab Simulation 1 — Available Security Controls for Each Building
You have just received some room and WiFi access control recommendations from a security consulting company. Click on each building to bring up available security controls. Please implement the following requirements:
……

Lab Simulation 2 — Configure the Firewall
Configure the firewall (fill out the table) to allow these four rules:
– Only allow the Accounting computer to have HTTPS access to the Administrative server.
– Only allow the HR computer to be able to communicate with the Server 2 System over SCP.
– Allow the IT computer to have access to both the Administrative Server 1 and Administrative Server 2.
……

NEW QUESTION 142
An administrator intends to configure an IPSec solution that provides ESP with integrity protection, but not confidentiality protection. Which of the following AES modes of operation would meet this integrity-only requirement?

A. HMAC
B. PCBC
C. CBC
D. GCM
E. CFB

Answer: A

NEW QUESTION 143
The Chief Security Officer (CSO) has issued a new policy that requires that all internal websites be configured for HTTPS traffic only. The network administrator has been tasked to update all internal sites without incurring additional costs. Which of the following is the best solution for the network administrator to secure each internal website?

A. Use certificates signed by the company CA.
B. Use a signing certificate as a wild card certificate.
C. Use certificates signed by a public CA.
D. Use a self-signed certificate on each internal server.

Answer: D

NEW QUESTION 144
A security program manager wants to actively test the security posture of a system. The system is not yet in production and has no uptime requirement or active user base. Which of the following methods will produce a report which shows vulnerabilities that were actually exploited?

A. Peer review
B. Component testing
C. Penetration testing
D. Vulnerability testing

Answer: C
Explanation:
A penetration test, or pen test, is an attempt to evaluate the security of an IT infrastructure by safely trying to exploit vulnerabilities.

NEW QUESTION 145
A new intern in the purchasing department requires read access to shared documents. Permissions are normally controlled through a group called “purchasing”, however, the purchasing group permissions allow write access. Which of the following would be the BEST course of action?

A. Modify all the shared files with read only permissions for the intern.
B. Create a new group that has only read permissions for the files.
C. Remove all permissions for the shared files.
D. Add the intern to the “purchasing” group.

Answer: B

NEW QUESTION 146
A business has recently deployed laptops to all sales employees. The laptops will be used primarily from home offices and while traveling, and a high amount of wireless mobile use is expected. To protect the laptops while connected to untrusted wireless networks, which of the following would be the BEST method for reducing the risk of having the laptops compromised?

A. MAC filtering
B. Virtualization
C. OS hardening
D. Application white-listing

Answer: C

NEW QUESTION 147
A security engineer is configuring a system that requires the X.509 certificate information to be pasted into a form field in Base64 encoded format to import it into the system. Which of the following certificate formats should the engineer use to obtain the information in the required format?

A. PFX
B. PEM
C. DER
D. CER

Answer: B

NEW QUESTION 148
When performing data acquisition on a workstation, which of the following should be captured based on memory volatility? (Select TWO.)

A. USB-attached hard disk
B. Swap/pagefile
C. Mounted network storage
D. ROM
E. RAM

Answer: AD

NEW QUESTION 149
When configuring settings in a mandatory access control environment, which of the following specifies the subjects that can access specific data objects?

A. Owner
B. System
C. Administrator
D. User

Answer: C

NEW QUESTION 150
……

NEW QUESTION 151
A user clicked an email link that led to a website that infected the workstation with a virus. The virus encrypted all the network shares to which the user had access. The virus was not detected or blocked by the company’s email filter, website filter, or antivirus. Which of the following describes what occurred?

A. The user’s account was over-privileged.
B. Improper error handling triggered a false negative in all three controls.
C. The email originated from a private email server with no malware protection.
D. The virus was a zero-day attack.

Answer: A

NEW QUESTION 152
Which of the fallowing security controls does an iris scanner provide?

A. Logical
B. Administrative
C. Corrective
D. Physical
E. Detective
F. Deterrent

Answer: D

NEW QUESTION 153
……

P.S. These New SY0-501 Exam Questions Were Just Updated From The Real SY0-501 Exam, You Can Get The Newest SY0-501 Dumps In PDF And VCE From — https://www.passleader.com/sy0-501.html (182q VCE and PDF)

Good Luck!