Assume WatchGuard Essentials Dumps PDF Are going to be The Best Score
Fireware Essentials Essentials Exam and Certification Test Engine
NEW QUESTION 25
HOTSPOT
Match each type of NAT with the correct description:
Answer:
Explanation:
Explanation:
NAT Loopback 1-to 1 NAT
Dynamic NAT
NEW QUESTION 26
If you use an external authentication server for mobile VPN, which option must you complete before remote users can authenticate? (Select one.)
- A. Add the Mobile VPN user group and remote users to your authentication server.
- B. Create aliases for each remote user's virtual IP address.
- C. Reboot the authentication server.
- D. Add the remote users to a Mobile VPN user group on your Firebox.
Answer: B
NEW QUESTION 27
Match each type of NAT with the correct description:
Changes and routes all incoming and outgoing packets sent from one range of addresses to a different range of addresses. (Choose one)
- A. 1-to1 NAT
- B. NAT Loopback
- C. Dynamic NAT
Answer: A
Explanation:
Explanation/Reference:
When you enable 1-to-1 NAT, the Firebox changes and routes all incoming and outgoing packets sent from one range of addresses to a different range of addresses.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, page 74
NEW QUESTION 28
Which WatchGuard tools can you use to review the log messages generated by your Firebox? (Select three).
- A. Firebox System Manager > Status Report
- B. Firebox SystemManager > Traffic Monitor
- C. Fireware XTM Web UI > Traffic Monitor
- D. WatchGuard System Manager > Policy Manager
- E. Dimension > Log manager
Answer: B,C,E
Explanation:
A: You can use Firebox System Manager (FSM) to see log messages from your XTM device as they occur.
Reference:http://www.watchguard.com/help/docs/wsm/xtm_11/en-US/index.html#cshid=en-US/fsm/log_msgs_traffic_mon_wsm.html
D: You can use Firebox System Manager to see log messages in real-time on the Traffic Monitor tab. You can also examine log messages with Log Manager or WatchGuard Dimension.
B: After you connect to WatchGuard WebCenter, you can review the log messages sent from your XTM devices to your WatchGuard Log Server. Log Manager enables you to see log messages from your device for any period of time you specify, if log messages were generated in the selected time frame. To see log messages for an XTM device as they are generated, in real-time, you can use Firebox System Manager Traffic Monitor.
Reference:http://www.watchguard.com/help/docs/wsm/XTM_11/en-US/index.html#en-US/logging/log_mgr_view_device_wsm.html
Incorrect:
Not C: The Status Report tab shows statistics about Firebox orXTM device traffic and performance. It does not display log messages.
To see the Status Report:
Start Firebox System Manager.
Select the Status Report tab.
Screen shot of the Firebox System Manager Status Report
NEW QUESTION 29
When you configure the Global Application Control action, it is automatically applied to all policies.
- A. False
- B. True
Answer: A
NEW QUESTION 30
Only 50 clients on the trusted network of your Firebox can connect to the Internet at the same time. What could cause this? (Select one.)
- A. The device feature key allows a maximum of 50 client connections.
- B. The DHCP address pool on the trusted interface has only 50 IP addresses.
- C. The Outgoing policy allows a maximum of 50 client connections.
- D. TheLiveSecurity feature key is expired.
Answer: B
NEW QUESTION 31
In the default Firebox configuration file, which policies control management access to the device? (Select two.)
- A. FTP
- B. Outgoing
- C. WatchGuard Web UI
- D. WatchGuard
- E. Ping
Answer: D,E
Explanation:
When you configure the Firebox with the Quick Setup Wizard, the wizard adds four basic policies: TCP/UDP outgoing, FTP packet filter, ping, and WatchGuard.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, page 15
NEW QUESTION 32
Match each WatchGuard Subscription Service with its function.
Uses rules, pattern matching, and sender reputation to block unwanted email messages. (Choose one).
- A. Spam Blocker
- B. APT Blocker
- C. Gateway / Antivirus
- D. Reputation Enable Defense RED
- E. Intrusion Prevention Server IPS
Answer: A
Explanation:
Explanation/Reference:
SpamBlocker provides a spam scanning engine that works in concert with WatchGuard's cloud-based technology to prevent spam from gaining access to the email servers (and clients).
Reference: http://www.tomsitpro.com/articles/network-security-solutions-guide, 2-866-6.html
NEW QUESTION 33
Match each WatchGuard Subscription Service with its function.
A repository where email messages can be sent based on analysis by spamBlocker, Gateway AntiVirus, or Data Loss Prevention. (Choose one).
- A. Gateway / Antivirus
- B. Spam Blocker
- C. Intrusion Prevention Server IPS
- D. Quarantine Server
- E. Data Loss Prevention DLP
Answer: D
Explanation:
The WatchGuard Quarantine Server provides a safe mechanism to quarantine any email messages that are suspected or known to be spam, or to contain viruses or sensitive data. The QuarantineServer is a repository for email messages that the SMTP proxy sends to quarantine based on analysis by spamBlocker, Gateway AntiVirus, or Data Loss Prevention.
Reference:https://www.watchguard.com/help/docs/webui/xtm_11/en-US/index.html#cshid=en-US/quarantineserver/quar_server_about_c.html
NEW QUESTION 34
The IP address for the trusted interface on your Firebox is 10.0.40.1/24, but you want to change the IP address for this interface. How can you avoid a network outage for clients on the trusted network when you change the interface IP address to 10.0.50.1/24? (Select one.)
- A. Add 10.0.40.1/24 as a secondary IP address for the interface.
- B. Add a route to 10.0.40.0/24 with the gateway 10.0.50.1.
- C. Create a 1-to-1 NAT rule for traffic from the 10.0.40.0/24 subnet to addresses on the 10.0.50.0/24 subnet.
- D. Add IP addresses on the 10.0.40.0/24 subnet to the DHCP Server IP address pool for this interface.
Answer: A
NEW QUESTION 35
You can configure the SMTP-proxy policy to restrict email messages and email content based on
which of these message characteristics? (Select four.)
- A. Maximum email recipients
- B. Email message size
- C. Check URLs in message with WebBlocker
- D. Sender Mail From address
- E. Attachment file name and content type
Answer: A,B,C,D
NEW QUESTION 36
While troubleshooting a branch office VPN tunnel, you see this log message:
2014-07-23 12:29:15 iked (203.0.113.10<->203.0.113.20) Peer proposes phase one encryption 3DES, expecting AES
What settings could you modify in the local device configuration to resolve this issue? (Select one.)
- A. BOVPN Tunnel settings
- B. BOVPN Gateway settings
- C. BOVPN-Allow policies
- D. BOVPN Tunnel Route settings
Answer: B
Explanation:
The WatchGuard BOVPN settings error in this example states phase one encryption. Only the BOVPN Gateway settings can specify phase one settings. BOVPN Tunnel settings specify phase 2 settings.
NEW QUESTION 37
A user receives a deny message that the installation file (install.exe) is blocked by the HTTP-proxy policy and cannot be downloaded. Which HTTP proxy action rule must you modify to allow download of the installation file? (Select one.)
- A. HTTP Response > Header Fields
- B. HTTP Request > Request Methods
- C. HTTP Request > Authorization
- D. WebBlocker
- E. HTTP Response > Body Content Types
Answer: C
NEW QUESTION 38
How can you include log messages from more than one Firebox in a single report generated by Dimension?
(Select two.)
- A. Create a device group and view the reports for that group.
- B. Export report data as a single PDF file for all the devices you want to include in the report.
- C. You cannot see report data in Dimension for more than one device.
- D. Create a report schedule that includes all the devices you want to include in the report.
Answer: A,D
NEW QUESTION 39
You can configure your Firebox to send log messages to how many WatchGuard Log Servers at the same time? (Select one.)
- A. Two
- B. One
- C. As many as you have configured on your network.
Answer: C
Explanation:
http://www.watchguard.com/help/docs/wsm/xtm_11/en-us/content/en-us/logging/logging_and_logfiles_about_c.html
NEW QUESTION 40
Which authentication servers can you use with your Firebox? (Select four.)
- A. LDAP
- B. Active Directory
- C. Linux Authentication
- D. Kerberos
- E. Firebox databases
- F. TACACS+
- G. RADIUS
Answer: A,B,E,G
NEW QUESTION 41
In the default Firebox configuration file, which policies control management access to the device? (Select two.)
- A. FTP
- B. Outgoing
- C. WatchGuard
- D. Ping
- E. WatchGuard Web UI
Answer: C,E
Explanation:
Ping is generated by default as the explanation states but Ping does not manage the device. The policies that manage the device are WatchGuard & WatchGuard Web UI
NEW QUESTION 42
......
Topics of Essentials Exam
Candidates must know the exam topics before they start of preparation. Because it will really help them in hitting the core. Our Essentials dumps will include the following topics.
Use Essentials Exam Dumps (2021 PDF Dumps) To Have Reliable Essentials Test Engine: https://www.suretorrent.com/Essentials-exam-guide-torrent.html
Essentials PDF Recently Updated Questions Dumps to Improve Exam Score: https://drive.google.com/open?id=1y3P7aS9mKJeBubcH6ijvkiwy8Rmua3Vc