IBM InfoSphere Guardium Sample Questions:
1. What is the difference between real time alerts and correlation alerts?
A) There is no difference, terminology is used interchangeably.
B) Real time alerts are based on policy rules. Correlation alerts are Querybased.
C) Real time alerts could only be run on the Managed Units. Correlation alerts can only be run on Central Manager.
D) Real time alerts are driven by anomaly detection. Correlation alerts are policy driven.
2. Which statement about Configuration Audit System (CAS) is true?
A) It does not support monitoring of file permissions (rwxrwxrwx).
B) It supports running operating system shell scripts.
C) It does not support windows platform.
D) It supports vulnerability assessment tests using observed behavior.
3. Which guard_tap.ini parameter should be used to set the virtual IP of a Microsoft SQL Server cluster environment?
A) connect_to_ip
B) alternate_ips
C) tap_ip
D) sqlguard_ip
4. In a centrally managed environment, if thededicated Central Manager is down, which statement is true?
A) Collector stop logging data from its S-TAPs.
B) Interactive reports would not run.
C) Users would not be able to login to the Managed Units.
D) All Managed Units will revert to pre-registeredconfiguration.
5. Whichappliance type(s) can serve as a Guardium host for S-TAPs?
A) Collectors and standalone Central Managers.
B) A collector only.
C) All appliance types can accept S-TAP connections.
D) Collectors and Aggregators only.
Solutions:
| Question # 1 Answer: B | Question # 2 Answer: B | Question # 3 Answer: B | Question # 4 Answer: B | Question # 5 Answer: B |

We're so confident of our products that we provide no hassle product exchange.


By Wanda


