显示标签为“ST0-116”的博文。显示所有博文
显示标签为“ST0-116”的博文。显示所有博文

2013年12月10日星期二

Symantec certification ST0-116 exam training programs

IT-Tests's product is prepared for people who participate in the Symantec certification ST0-116 exam. IT-Tests's training materials include not only Symantec certification ST0-116 exam training materials which can consolidate your expertise, but also high degree of accuracy of practice questions and answers about Symantec certification ST0-116 exam. IT-Tests.com can guarantee you passe the Symantec certification ST0-116 exam with high score the even if you are the first time to participate in this exam.

Success is has method. You can be successful as long as you make the right choices. IT-Tests.com's Symantec ST0-116 exam training materials are tailored specifically for IT professionals. It can help you pass the exam successfully. If you're still catching your expertise to prepare for the exam, then you chose the wrong method. This is not only time-consuming and laborious, but also is likely to fail. But the remedy is not too late, go to buy IT-Tests.com's Symantec ST0-116 exam training materials quickly. With it, you will get a different life. Remember, the fate is in your own hands.

There are many ways to help you prepare for your Symantec ST0-116 exam. IT-Tests.com provide a reliable training tools to help you prepare for your Symantec ST0-116 exam certification. The IT-Tests.com Symantec ST0-116 exam materials are including test questions and answers. Our materials are very good sofeware that through the practice test. Our materials will meet all of theIT certifications.

Exam Code: ST0-116
Exam Name: Symantec (Symantec Data Loss Prevention 11 Technical Assessment)
Free One year updates to match real exam scenarios, 100% pass and refund Warranty.
Total Q&A: 176 Questions and Answers
Last Update: 2013-12-10

We are committed to using IT-Tests.com Symantec ST0-116 exam training materials, we can ensure that you pass the exam on your first attempt. If you are ready to take the exam, and then use our IT-Tests.com Symantec ST0-116 exam training materials, we guarantee that you can pass it. If you do not pass the exam, we can give you a refund of the full cost of the materials purchased, or free to send you another product of same value.

ST0-116 (Symantec Data Loss Prevention 11 Technical Assessment) Free Demo Download: http://www.it-tests.com/ST0-116.html

NO.1 Which two functions of the communications architecture ensure that the system will automatically
recover if a network connectivity failure occurs between the detection servers and the Enforce Server?
(Select two.)
A. Oracle database backup
B. detection server autonomous monitoring
C. Enforce Server offline alert notification
D. detection server incident queuing
E. detection server alert archiving
Answer: B, D

Symantec study guide   ST0-116   ST0-116 demo   ST0-116 study guide

NO.2 What is a feature of keyword proximity matching?
A. It will match on whole keywords only.
B. It has a maximum distance between keywords of 99.
C. It only matches on message body.
D. It evaluates each keyword pair independently.
Answer: D

Symantec   ST0-116 test   ST0-116 certification

NO.3 How can an administrator validate that once a policy is updated and saved it has been enabled on a
specific detection server?
A. check the status of the policy on the policy list page
B. check to see whether the policy was loaded under System > Servers > Alerts
C. check the policy and validate the date and time it was last updated
D. check to see whether the policy was loaded under System > Servers > Events
Answer: D

Symantec dumps   ST0-116   ST0-116 braindump   ST0-116

NO.4 Which DLP Agent task is unique to the Symantec Management Platform and is unavailable through
the Enforce console?
A. Change Endpoint server
B. Restart agent
C. Pull agent logs
D. Set log level
Answer: D

Symantec exam   ST0-116 practice test   ST0-116   ST0-116 test   ST0-116 exam

NO.5 Which product provides support for the Citrix XenApp virtualization platform?
A. Endpoint Prevent
B. Network Discover
C. Network Protect
D. Network Prevent
Answer: A

Symantec exam   ST0-116   ST0-116   ST0-116 test answers   ST0-116

NO.6 The database is full and the Incident Persister is unable to process incidents. Which two file types
could be present in Vontu/protect/incidents? (Select two.)
A. .idx
B. .edc
C. .idc
D. .inc
E. .bad
Answer: C, E

Symantec   ST0-116 exam prep   ST0-116

NO.7 After installing several new DLP Agents, the Data Loss Prevention administrator discovers that none of
the endpoint agents are appearing on the Agent Overview page. After refreshing the page several times,
and determining that the equipment is powered on and connected to the network, the Agent Overview
page still fails to display the new agents. What is a possible cause for this issue?
A. The DLP Agents need to be added manually through the Symantec Management Platform.
B. The DLP Agents were installed with the incorrect Endpoint server IP address.
C. The assigned Endpoint server needs to be recycled in order to detect the new DLP Agents.
D. The Endpoint Location is set to "Manually" instead of "Automatically" in the Enforce user interface.
Answer: B

Symantec original questions   ST0-116   ST0-116 original questions

NO.8 Which two policy management actions can result in a reduced number of incidents for a given traffic
flow? (Select two.)
A. adding additional component matching to the rule
B. adding data owner exceptions
C. deploying to additional detection servers
D. increasing condition match count
E. adding additional severities
Answer: B, D

Symantec test questions   ST0-116   ST0-116 exam dumps

NO.9 A role is configured for XML export and a user executes the export XML incident action. What must be
done before history information is included in the export?
A. A remediator must take an action on the incident.
B. History must be enabled as a tab or panel in the incident snapshot layout.
C. Incident history must be enabled in the user's role.
D. The manager.properties must be configured for XML export.
Answer: C

Symantec   ST0-116   ST0-116 test   ST0-116 demo

NO.10 A company needs to scan all of its file shares on a weekly basis to make sure sensitive data is being
stored correctly. The total volume of data on the file servers is greater than 1 TB . Which approach will
allow the company to quickly scan all of this data on a weekly basis?
A. run an initial complete scan of all the file shares, then modify the scan target to add date filters and
exclude any files created or modified before the initial scan was run
B. run an initial complete scan of all the file shares, then modify the scan target to an incremental scan
type
C. create a separate scan target for each file share and exclude files accessed before the start of each
scan
D. run an initial complete scan of all file shares, create a summary report of all incidents created by the
scan, then run weekly scans and compare incidents from weekly scans to incidents from the complete
scan
Answer: B

Symantec   ST0-116 dumps   ST0-116 exam   ST0-116 certification training   ST0-116 exam prep

NO.11 What must a policy manager do when working with Exact Data Matching (EDM) indexes?
A. re-index large data sources on a daily or weekly basis
B. index the original data source on the detection server
C. deploy the index only to specific detection servers
D. create a new data profile if data source schema changes
Answer: D

Symantec test answers   ST0-116   ST0-116 answers real questions   ST0-116   ST0-116 test questions

NO.12 To manually troubleshoot DLP Agent issues, the database and log viewer tools must be executed in
which location?
A. in the same location as the dcs.ead file location
B. in the same location as the cg.ead file location
C. in the same location as the ks.ead file location
D. in the same location as the is.ead file location
Answer: C

Symantec   ST0-116   ST0-116 certification training   ST0-116 practice test   ST0-116

NO.13 Where should the Network Discover detection server be placed in a corporate network architecture?
A. inside the DMZ
B. on the same virtual LAN as the proxy server
C. inside the corporate network
D. on the same switch as the Oracle database server
Answer: C

Symantec certification training   ST0-116 demo   ST0-116   ST0-116

NO.14 Which two remediation actions are available for Network Protect? (Select two.)
A. Copy
B. Move
C. Block
D. Rename
E. Quarantine
Answer: A, E

Symantec   ST0-116 original questions   ST0-116 certification   ST0-116 certification training

NO.15 A divisional executive requests a report of all incidents generated by a particular region, summarized
by department. What must be populated to generate this report?
A. remediation attributes
B. sender correlations
C. status groups
D. custom attributes
Answer: D

Symantec original questions   ST0-116   ST0-116 pdf   ST0-116 certification

NO.16 An administrator is running a Discover Scanner target scan and the scanner is unable to
communicate back to the Discover Server. Where will the files be stored.?
A. Discover Server incoming folder
B. scanner's outgoing folder
C. scanner's incoming folder
D. Enforce incident persister
Answer: B

Symantec test   ST0-116 pdf   ST0-116 test

NO.17 A Data Loss Prevention administrator notices that several errors occurred during a Network Discover
scan. Which report can the administrator use to determine exactly which errors occurred and when?
A. Discover Incident report sorted by target name and scan
B. Full Activity report for that particular scan
C. Server Event report from Server Overview
D. Full Statistics report for that particular scan
Answer: B

Symantec dumps   ST0-116   ST0-116 original questions

NO.18 Which Network Discover option is used to determine whether confidential data exists without having to
scan the entire target?
A. Byte Throttling
B. File Throttling
C. Match Thresholds
D. Inventory Mode Scanning
Answer: D

Symantec   ST0-116 exam simulations   ST0-116 test answers   ST0-116 exam prep   ST0-116 questions

NO.19 A user is unable to log in as sysadmin. The Data Loss Prevention system is configured to use Active
Directory authentication. The user is a member of two roles, sysadmin and remediator. How should the
user log in to the user interface in the sysadmin role?
A. sysadmin\username@domain
B. sysadmin\username
C. domain\username
D. sysadmin\username\domain
Answer: B

Symantec   ST0-116 exam simulations   ST0-116 practice test   ST0-116 study guide

NO.20 What are two benefits of the Symantec Data Loss Prevention 11 security architecture? (Select two.)
A. Communication is initiated by the detection servers inside the firewall.
B. SSL communication is used for user access to the Enforce Platform.
C. Endpoint Agent to Endpoint Server communication uses the Triple Data Encryption Standard (Triple
DES).
D. Confidential information captured by system components is stored using Advanced Encryption
Standards (AES) symmetric keys.
E. All indexed data uploaded into the Enforce Platform is protected with a two-way hash.
Answer: B, D

Symantec demo   ST0-116 exam simulations   ST0-116 test answers   ST0-116

IT-Tests.com offer the latest BAS-013 Questions & Answers and high-quality MB2-866 PDF Practice Test. Our 70-687 VCE testing engine and CAT-440 study guide can help you pass the real exam. High-quality ICYB Real Exam Questions can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.it-tests.com/ST0-116.html

2013年11月14日星期四

ST0-116 exam dumps

Compared with other training materials, why IT-Tests.com's Symantec ST0-116 exam training materials is more welcomed by the majority of candidates? First, this is the problem of resonance. We truly understand the needs of the candidates, and comprehensively than any other site. Second, focus. In order to do the things we decided to complete, we have to give up all the unimportant opportunities. Third, the quality of the product. People always determine a good or bad thing based on the surface. We may have the best products of the highest quality, but if we shows it with a shoddy manner, it naturally will be as shoddy product. However, if we show it with both creative and professional manner, then we will get the best result. The IT-Tests.com's Symantec ST0-116 exam training materials is so successful training materials. It is most suitable for you, quickly select it please.

Passing ST0-116 exam is not very simple. ST0-116 exam requires a high degree of professional knowledge of IT, and if you lack this knowledge, IT-Tests.com can provide you with a source of IT knowledge. IT-Tests's expert team will use their wealth of expertise and experience to help you increase your knowledge, and can provide you practice questions and answers ST0-116 certification exam. IT-Tests.com will not only do our best to help you pass the ST0-116 certification exam for only one time, but also help you consolidate your IT expertise. If you select IT-Tests, we can not only guarantee you 100% pass ST0-116 certification exam, but also provide you with a free year of exam practice questions and answers update service. And if you fail to pass the examination carelessly, we can guarantee that we will immediately 100% refund your cost to you.

Fantasy can make people to come up with many good ideas, but it can not do anything. So when you thinking how to pass the Symantec ST0-116 exam, It's better open your computer, and click the website of IT-Tests.com, then you will see the things you want. IT-Tests.com's products have favorable prices, and have quality assurance, but also to ensure you to 100% pass the exam.

IT-Tests.com can provide a shortcut for you and save you a lot of time and effort. IT-Tests.com will provide good training tools for your Symantec certification ST0-116 exam and help you pass Symantec certification ST0-116 exam. If you see other websites provide relevant information to the website, you can continue to look down and you will find that in fact the information is mainly derived from our IT-Tests. Our IT-Tests.com provide the most comprehensive information and update fastest.

Exam Code: ST0-116
Exam Name: Symantec (Symantec Data Loss Prevention 11 Technical Assessment)
Free One year updates to match real exam scenarios, 100% pass and refund Warranty.
Total Q&A: 176 Questions and Answers
Last Update: 2013-11-14

IT-Tests.com can not only save you valuable time, but also make you feel at ease to participate in the exam and pass it successfully. IT-Tests.com has good reliability and a high reputation in the IT professionals. You can free download the part of Symantec ST0-116 exam questions and answers IT-Tests.com provide as an attempt to determine the reliability of our products. I believe you will be very satisfied of our products. I have confidence in our IT-Tests.com products that soon IT-Tests's exam questions and answers about Symantec ST0-116 will be your choice and you will pass Symantec certification ST0-116 exam successfully. It is wise to choose our IT-Tests.com and IT-Tests.com will prove to be the most satisfied product you want.

We are doing our utmost to provide services with high speed and efficiency to save your valuable time for the majority of candidates. The Symantec ST0-116 materials of IT-Tests.com offer a lot of information for your exam guide, including the questions and answers. IT-Tests.com is best website that providing Symantec ST0-116 exam training materials with high quality on the Internet. With the learning information and guidance of IT-Tests.com, you can through Symantec ST0-116 exam the first time.

In this competitive society, being good at something is able to take up a large advantage, especially in the IT industry. Gaining some IT authentication certificate is very useful. Symantec ST0-116 is a certification exam to test the IT professional knowledge level and has a Pivotal position in the IT industry. While Symantec ST0-116 exam is very difficult to pass, so in order to pass the Symantec certification ST0-116 exam a lot of people spend a lot of time and effort to learn the related knowledge, but in the end most of them do not succeed. Therefore IT-Tests.com is to analyze the reasons for their failure. The conclusion is that they do not take a pertinent training course. Now IT-Tests.com experts have developed a pertinent training program for Symantec certification ST0-116 exam, which can help you spend a small amount of time and money and 100% pass the exam at the same time.

ST0-116 (Symantec Data Loss Prevention 11 Technical Assessment) Free Demo Download: http://www.it-tests.com/ST0-116.html

NO.1 A Data Loss Prevention administrator notices that several errors occurred during a Network Discover
scan. Which report can the administrator use to determine exactly which errors occurred and when?
A. Discover Incident report sorted by target name and scan
B. Full Activity report for that particular scan
C. Server Event report from Server Overview
D. Full Statistics report for that particular scan
Answer: B

Symantec test questions   ST0-116   ST0-116 exam dumps   ST0-116

NO.2 Which DLP Agent task is unique to the Symantec Management Platform and is unavailable through
the Enforce console?
A. Change Endpoint server
B. Restart agent
C. Pull agent logs
D. Set log level
Answer: D

Symantec   ST0-116   ST0-116 pdf

NO.3 What must a policy manager do when working with Exact Data Matching (EDM) indexes?
A. re-index large data sources on a daily or weekly basis
B. index the original data source on the detection server
C. deploy the index only to specific detection servers
D. create a new data profile if data source schema changes
Answer: D

Symantec   ST0-116   ST0-116 exam prep

NO.4 After installing several new DLP Agents, the Data Loss Prevention administrator discovers that none of
the endpoint agents are appearing on the Agent Overview page. After refreshing the page several times,
and determining that the equipment is powered on and connected to the network, the Agent Overview
page still fails to display the new agents. What is a possible cause for this issue?
A. The DLP Agents need to be added manually through the Symantec Management Platform.
B. The DLP Agents were installed with the incorrect Endpoint server IP address.
C. The assigned Endpoint server needs to be recycled in order to detect the new DLP Agents.
D. The Endpoint Location is set to "Manually" instead of "Automatically" in the Enforce user interface.
Answer: B

Symantec questions   ST0-116 practice test   ST0-116   ST0-116

NO.5 The database is full and the Incident Persister is unable to process incidents. Which two file types
could be present in Vontu/protect/incidents? (Select two.)
A. .idx
B. .edc
C. .idc
D. .inc
E. .bad
Answer: C, E

Symantec   ST0-116 exam prep   ST0-116 certification training

NO.6 Which product provides support for the Citrix XenApp virtualization platform?
A. Endpoint Prevent
B. Network Discover
C. Network Protect
D. Network Prevent
Answer: A

Symantec   ST0-116 exam simulations   ST0-116   ST0-116 dumps

NO.7 A user is unable to log in as sysadmin. The Data Loss Prevention system is configured to use Active
Directory authentication. The user is a member of two roles, sysadmin and remediator. How should the
user log in to the user interface in the sysadmin role?
A. sysadmin\username@domain
B. sysadmin\username
C. domain\username
D. sysadmin\username\domain
Answer: B

Symantec certification   ST0-116   ST0-116 study guide   ST0-116 demo   ST0-116 exam simulations

NO.8 To manually troubleshoot DLP Agent issues, the database and log viewer tools must be executed in
which location?
A. in the same location as the dcs.ead file location
B. in the same location as the cg.ead file location
C. in the same location as the ks.ead file location
D. in the same location as the is.ead file location
Answer: C

Symantec   ST0-116 answers real questions   ST0-116   ST0-116 demo   ST0-116   ST0-116 answers real questions

NO.9 Which two policy management actions can result in a reduced number of incidents for a given traffic
flow? (Select two.)
A. adding additional component matching to the rule
B. adding data owner exceptions
C. deploying to additional detection servers
D. increasing condition match count
E. adding additional severities
Answer: B, D

Symantec   ST0-116   ST0-116   ST0-116 questions

NO.10 Which Network Discover option is used to determine whether confidential data exists without having to
scan the entire target?
A. Byte Throttling
B. File Throttling
C. Match Thresholds
D. Inventory Mode Scanning
Answer: D

Symantec   ST0-116   ST0-116   ST0-116   ST0-116 test

NO.11 An administrator is running a Discover Scanner target scan and the scanner is unable to
communicate back to the Discover Server. Where will the files be stored.?
A. Discover Server incoming folder
B. scanner's outgoing folder
C. scanner's incoming folder
D. Enforce incident persister
Answer: B

Symantec answers real questions   ST0-116   ST0-116 certification training   ST0-116

NO.12 Which two remediation actions are available for Network Protect? (Select two.)
A. Copy
B. Move
C. Block
D. Rename
E. Quarantine
Answer: A, E

Symantec   ST0-116 test   ST0-116 questions   ST0-116 exam   ST0-116 exam

NO.13 A role is configured for XML export and a user executes the export XML incident action. What must be
done before history information is included in the export?
A. A remediator must take an action on the incident.
B. History must be enabled as a tab or panel in the incident snapshot layout.
C. Incident history must be enabled in the user's role.
D. The manager.properties must be configured for XML export.
Answer: C

Symantec   ST0-116 study guide   ST0-116 exam   ST0-116   ST0-116 exam

NO.14 What are two benefits of the Symantec Data Loss Prevention 11 security architecture? (Select two.)
A. Communication is initiated by the detection servers inside the firewall.
B. SSL communication is used for user access to the Enforce Platform.
C. Endpoint Agent to Endpoint Server communication uses the Triple Data Encryption Standard (Triple
DES).
D. Confidential information captured by system components is stored using Advanced Encryption
Standards (AES) symmetric keys.
E. All indexed data uploaded into the Enforce Platform is protected with a two-way hash.
Answer: B, D

Symantec   ST0-116   ST0-116   ST0-116   ST0-116

NO.15 What is a feature of keyword proximity matching?
A. It will match on whole keywords only.
B. It has a maximum distance between keywords of 99.
C. It only matches on message body.
D. It evaluates each keyword pair independently.
Answer: D

Symantec certification   ST0-116 dumps   ST0-116   ST0-116 exam   ST0-116

NO.16 A company needs to scan all of its file shares on a weekly basis to make sure sensitive data is being
stored correctly. The total volume of data on the file servers is greater than 1 TB . Which approach will
allow the company to quickly scan all of this data on a weekly basis?
A. run an initial complete scan of all the file shares, then modify the scan target to add date filters and
exclude any files created or modified before the initial scan was run
B. run an initial complete scan of all the file shares, then modify the scan target to an incremental scan
type
C. create a separate scan target for each file share and exclude files accessed before the start of each
scan
D. run an initial complete scan of all file shares, create a summary report of all incidents created by the
scan, then run weekly scans and compare incidents from weekly scans to incidents from the complete
scan
Answer: B

Symantec   ST0-116 exam simulations   ST0-116 practice test   ST0-116

NO.17 Which two functions of the communications architecture ensure that the system will automatically
recover if a network connectivity failure occurs between the detection servers and the Enforce Server?
(Select two.)
A. Oracle database backup
B. detection server autonomous monitoring
C. Enforce Server offline alert notification
D. detection server incident queuing
E. detection server alert archiving
Answer: B, D

Symantec test answers   ST0-116 study guide   ST0-116

NO.18 A divisional executive requests a report of all incidents generated by a particular region, summarized
by department. What must be populated to generate this report?
A. remediation attributes
B. sender correlations
C. status groups
D. custom attributes
Answer: D

Symantec test answers   ST0-116 questions   ST0-116 questions

NO.19 Where should the Network Discover detection server be placed in a corporate network architecture?
A. inside the DMZ
B. on the same virtual LAN as the proxy server
C. inside the corporate network
D. on the same switch as the Oracle database server
Answer: C

Symantec test   ST0-116 answers real questions   ST0-116 test   ST0-116 certification   ST0-116

NO.20 How can an administrator validate that once a policy is updated and saved it has been enabled on a
specific detection server?
A. check the status of the policy on the policy list page
B. check to see whether the policy was loaded under System > Servers > Alerts
C. check the policy and validate the date and time it was last updated
D. check to see whether the policy was loaded under System > Servers > Events
Answer: D

Symantec   ST0-116   ST0-116 pdf

IT-Tests.com offer the latest MSC-431 Questions & Answers and high-quality HP5-T01D PDF Practice Test. Our HP2-Z25 VCE testing engine and E20-018 study guide can help you pass the real exam. High-quality 700-410 Real Exam Questions can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.it-tests.com/ST0-116.html

2013年9月27日星期五

Symantec certification ST0-116 exam best training materials

No one wants to own insipid life. Do you want to at the negligible postion and share less wages forever? And do you want to wait to be laid off or waiting for the retirement? This life is too boring. Do not you want to make your life more interesting? It does not matter. Today, I tell you a shortcut to success. It is to pass the Symantec ST0-116 exam. With this certification, you can live the life of the high-level white-collar. You can become a power IT professionals, and get the respect from others. IT-Tests.com will provide you with excellent Symantec ST0-116 exam training materials, and allows you to achieve this dream effortlessly. Are you still hesitant? Do not hesitate, Add the IT-Tests.com's Symantec ST0-116 exam training materials to your shopping cart quickly.

If you want to through the Symantec ST0-116 certification exam to make a stronger position in today's competitive IT industry, then you need the strong expertise knowledge and the accumulated efforts. And pass the Symantec ST0-116 exam is not easy. Perhaps through Symantec ST0-116 exam you can promote yourself to the IT industry. But it is not necessary to spend a lot of time and effort to learn the expertise. You can choose IT-Tests.com's Symantec ST0-116 exam training materials. This is training product that specifically made for IT exam. With it you can pass the difficult Symantec ST0-116 exam effortlessly.

Exam Code: ST0-116
Exam Name: Symantec (Symantec Data Loss Prevention 11 Technical Assessment)
Free One year updates to match real exam scenarios, 100% pass and refund Warranty.
Total Q&A: 176 Questions and Answers
Last Update: 2013-09-27

If you have IT-Tests.com's Symantec ST0-116 exam training materials, we will provide you with one-year free update. This means that you can always get the latest exam information. As long as the Exam Objectives have changed, or our learning material changes, we will update for you in the first time. We know your needs, and we will help you gain confidence to pass the Symantec ST0-116 exam. You can be confident to take the exam and pass the exam.

If you choose IT-Tests, success is not far away for you. And soon you can get Symantec certification ST0-116 exam certificate. The product of IT-Tests.com not only can 100% guarantee you to pass the exam, but also can provide you a free one-year update service.

IT-Tests.com Symantec ST0-116 exam questions and answers provide you test preparation information with everything you need. About Symantec ST0-116 exam, you can find these questions from different web sites or books, but the key is logical and connected. Our questions and answers will not only allow you effortlessly through the exam first time, but also can save your valuable time.

ST0-116 (Symantec Data Loss Prevention 11 Technical Assessment) Free Demo Download: http://www.it-tests.com/ST0-116.html

NO.1 What are two benefits of the Symantec Data Loss Prevention 11 security architecture? (Select two.)
A. Communication is initiated by the detection servers inside the firewall.
B. SSL communication is used for user access to the Enforce Platform.
C. Endpoint Agent to Endpoint Server communication uses the Triple Data Encryption Standard (Triple
DES).
D. Confidential information captured by system components is stored using Advanced Encryption
Standards (AES) symmetric keys.
E. All indexed data uploaded into the Enforce Platform is protected with a two-way hash.
Answer: B, D

Symantec test   ST0-116 questions   ST0-116   ST0-116 practice test   ST0-116 exam dumps

NO.2 Which two remediation actions are available for Network Protect? (Select two.)
A. Copy
B. Move
C. Block
D. Rename
E. Quarantine
Answer: A, E

Symantec exam dumps   ST0-116 pdf   ST0-116   ST0-116   ST0-116

NO.3 Which two policy management actions can result in a reduced number of incidents for a given traffic
flow? (Select two.)
A. adding additional component matching to the rule
B. adding data owner exceptions
C. deploying to additional detection servers
D. increasing condition match count
E. adding additional severities
Answer: B, D

Symantec   ST0-116   ST0-116   ST0-116

NO.4 What is a feature of keyword proximity matching?
A. It will match on whole keywords only.
B. It has a maximum distance between keywords of 99.
C. It only matches on message body.
D. It evaluates each keyword pair independently.
Answer: D

Symantec certification   ST0-116   ST0-116 exam   ST0-116 study guide   ST0-116

NO.5 A divisional executive requests a report of all incidents generated by a particular region, summarized
by department. What must be populated to generate this report?
A. remediation attributes
B. sender correlations
C. status groups
D. custom attributes
Answer: D

Symantec questions   ST0-116   ST0-116

NO.6 A user is unable to log in as sysadmin. The Data Loss Prevention system is configured to use Active
Directory authentication. The user is a member of two roles, sysadmin and remediator. How should the
user log in to the user interface in the sysadmin role?
A. sysadmin\username@domain
B. sysadmin\username
C. domain\username
D. sysadmin\username\domain
Answer: B

Symantec demo   ST0-116   ST0-116   ST0-116   ST0-116 practice test   ST0-116

NO.7 What must a policy manager do when working with Exact Data Matching (EDM) indexes?
A. re-index large data sources on a daily or weekly basis
B. index the original data source on the detection server
C. deploy the index only to specific detection servers
D. create a new data profile if data source schema changes
Answer: D

Symantec demo   ST0-116   ST0-116   ST0-116 exam prep   ST0-116 original questions

NO.8 How can an administrator validate that once a policy is updated and saved it has been enabled on a
specific detection server?
A. check the status of the policy on the policy list page
B. check to see whether the policy was loaded under System > Servers > Alerts
C. check the policy and validate the date and time it was last updated
D. check to see whether the policy was loaded under System > Servers > Events
Answer: D

Symantec   ST0-116 demo   ST0-116   ST0-116   ST0-116

NO.9 Which two functions of the communications architecture ensure that the system will automatically
recover if a network connectivity failure occurs between the detection servers and the Enforce Server?
(Select two.)
A. Oracle database backup
B. detection server autonomous monitoring
C. Enforce Server offline alert notification
D. detection server incident queuing
E. detection server alert archiving
Answer: B, D

Symantec study guide   ST0-116 answers real questions   ST0-116 test   ST0-116 test answers

NO.10 Which DLP Agent task is unique to the Symantec Management Platform and is unavailable through
the Enforce console?
A. Change Endpoint server
B. Restart agent
C. Pull agent logs
D. Set log level
Answer: D

Symantec   ST0-116 test answers   ST0-116   ST0-116   ST0-116

NO.11 An administrator is running a Discover Scanner target scan and the scanner is unable to
communicate back to the Discover Server. Where will the files be stored.?
A. Discover Server incoming folder
B. scanner's outgoing folder
C. scanner's incoming folder
D. Enforce incident persister
Answer: B

Symantec test answers   ST0-116 practice test   ST0-116 exam simulations   ST0-116

NO.12 A role is configured for XML export and a user executes the export XML incident action. What must be
done before history information is included in the export?
A. A remediator must take an action on the incident.
B. History must be enabled as a tab or panel in the incident snapshot layout.
C. Incident history must be enabled in the user's role.
D. The manager.properties must be configured for XML export.
Answer: C

Symantec certification training   ST0-116   ST0-116 study guide

NO.13 A company needs to scan all of its file shares on a weekly basis to make sure sensitive data is being
stored correctly. The total volume of data on the file servers is greater than 1 TB . Which approach will
allow the company to quickly scan all of this data on a weekly basis?
A. run an initial complete scan of all the file shares, then modify the scan target to add date filters and
exclude any files created or modified before the initial scan was run
B. run an initial complete scan of all the file shares, then modify the scan target to an incremental scan
type
C. create a separate scan target for each file share and exclude files accessed before the start of each
scan
D. run an initial complete scan of all file shares, create a summary report of all incidents created by the
scan, then run weekly scans and compare incidents from weekly scans to incidents from the complete
scan
Answer: B

Symantec test questions   ST0-116   ST0-116   ST0-116 certification   ST0-116

NO.14 A Data Loss Prevention administrator notices that several errors occurred during a Network Discover
scan. Which report can the administrator use to determine exactly which errors occurred and when?
A. Discover Incident report sorted by target name and scan
B. Full Activity report for that particular scan
C. Server Event report from Server Overview
D. Full Statistics report for that particular scan
Answer: B

Symantec   ST0-116 test answers   ST0-116 demo   ST0-116 answers real questions

NO.15 To manually troubleshoot DLP Agent issues, the database and log viewer tools must be executed in
which location?
A. in the same location as the dcs.ead file location
B. in the same location as the cg.ead file location
C. in the same location as the ks.ead file location
D. in the same location as the is.ead file location
Answer: C

Symantec   ST0-116 pdf   ST0-116 exam simulations   ST0-116 exam dumps

NO.16 The database is full and the Incident Persister is unable to process incidents. Which two file types
could be present in Vontu/protect/incidents? (Select two.)
A. .idx
B. .edc
C. .idc
D. .inc
E. .bad
Answer: C, E

Symantec braindump   ST0-116 questions   ST0-116

NO.17 Which Network Discover option is used to determine whether confidential data exists without having to
scan the entire target?
A. Byte Throttling
B. File Throttling
C. Match Thresholds
D. Inventory Mode Scanning
Answer: D

Symantec demo   ST0-116 answers real questions   ST0-116

NO.18 Which product provides support for the Citrix XenApp virtualization platform?
A. Endpoint Prevent
B. Network Discover
C. Network Protect
D. Network Prevent
Answer: A

Symantec   ST0-116   ST0-116 test   ST0-116 practice test   ST0-116 exam simulations

NO.19 After installing several new DLP Agents, the Data Loss Prevention administrator discovers that none of
the endpoint agents are appearing on the Agent Overview page. After refreshing the page several times,
and determining that the equipment is powered on and connected to the network, the Agent Overview
page still fails to display the new agents. What is a possible cause for this issue?
A. The DLP Agents need to be added manually through the Symantec Management Platform.
B. The DLP Agents were installed with the incorrect Endpoint server IP address.
C. The assigned Endpoint server needs to be recycled in order to detect the new DLP Agents.
D. The Endpoint Location is set to "Manually" instead of "Automatically" in the Enforce user interface.
Answer: B

Symantec   ST0-116   ST0-116   ST0-116

NO.20 Where should the Network Discover detection server be placed in a corporate network architecture?
A. inside the DMZ
B. on the same virtual LAN as the proxy server
C. inside the corporate network
D. on the same switch as the Oracle database server
Answer: C

Symantec certification   ST0-116   ST0-116

IT-Tests.com offer the latest HH0-050 Questions & Answers and high-quality 000-226 PDF Practice Test. Our 000-318 VCE testing engine and 00M-617 study guide can help you pass the real exam. High-quality 000-273 Real Exam Questions can 100% guarantee you pass the exam faster and easier. Pass the exam to obtain certification is so simple.

Article Link: http://www.it-tests.com/ST0-116.html