100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

Sophos Firewall Expert Q&A for Total Exam Domination

Rating
-
Sold
-
Pages
5
Grade
A+
Uploaded on
02-07-2025
Written in
2024/2025

Which interface type is a virtual LAN created on an existing XG interface - VLAN you are working with sensitive corporate data and want to ensure that traffic from remote locations is monitored and blocked from leaving the corporate LAN. What would be the most appropriate security mode to deploy the RED devices in - Standard/Unified NAT rules require firewall rules to allow traffic - True When creating a NAT rule which option allows you to select - Override source translation When creating a NAT rule which option allows you to select different source NATs based on the outbound interface within a single rule? - Override source translation Which 2 methods can be used to generate one-time passwords for authenticating with the XG Firewall - Bridge, transparent Which of the following statements about zero-touch deployment are TRUE - Zero-touch configuration rules can only be created for unregistered hardware serial numbers What is the clientless Access portal used for? - To provide access to internal resources without the need for a VPN client to be installed Which firewall icon represents a disabled user Rule? - CWhich page list all current applications that are connecting through the XG Firewall? - Live connections

Show more Read less
Institution
Sophos Firewall
Course
Sophos Firewall









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
Sophos Firewall
Course
Sophos Firewall

Document information

Uploaded on
July 2, 2025
Number of pages
5
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Content preview

Sophos Firewall Questions

Which interface type is a virtual LAN created on an existing XG interface
- ✔ ✔ VLAN

you are working with sensitive corporate data and want to ensure that
traffic from remote locations is monitored and blocked from leaving the
corporate LAN. What would be the most appropriate security mode to
deploy the RED devices in - ✔ ✔ Standard/Unified

NAT rules require firewall rules to allow traffic - ✔ ✔ True

When creating a NAT rule which option allows you to select - ✔ ✔
Override source translation

When creating a NAT rule which option allows you to select different
source NATs based on the outbound interface within a single rule? - ✔
✔ Override source translation

Which 2 methods can be used to generate one-time passwords for
authenticating with the XG Firewall - ✔ ✔ Bridge, transparent

Which of the following statements about zero-touch deployment are
TRUE - ✔ ✔ Zero-touch configuration rules can only be created for
unregistered hardware serial numbers

What is the clientless Access portal used for? - ✔ ✔ To provide
access to internal resources without the need for a VPN client to be
installed

Which firewall icon represents a disabled user Rule? - ✔ ✔ C

, Which page list all current applications that are connecting through the
XG Firewall? - ✔ ✔ Live connections

How many days of data is available in Sophos Central? - ✔ ✔ 7 days

What do you need to do in order to use NTLM and Kerberos for web
authentication? - ✔ ✔ Enable AD SSO per zone on the Device Access
page

The XG firewall's life implementation of Cloud Access security Broker
blocks all cloud applications by default - ✔ ✔ False

Below Below is an image of the XG Firewall Control Center. From here,
what would you click to access the Policy Test Simulator - ✔ ✔ Log
Viewer

Which 4 of the following are supported external authentication servers
on Sophos XG firewall 18.0? - ✔ ✔ eDirectory. Radius, Active
directory. LDAP

The option to create loopback and reflexive Nat rules is only when
adding NEW NAT rule, not when editing an existing NAT rule. - ✔ ✔
True

Which 3 options should be configured to ensure the most secure
scanning settings are in place to protect users as they browse the web?
- ✔ ✔ Malware scan mode: Batch, Engine Selection, Dual engine.
Content : Block

Which deployment mode can protect web servers from common
attacks? - ✔ ✔ Web Application Firewall

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
jackline98 Stanford University
View profile
Follow You need to be logged in order to follow users or courses
Sold
259
Member since
2 year
Number of followers
152
Documents
9862
Last sold
1 month ago

Here you will find different past papers with correct and updated solutions .Please do not forget to leave a review after purchasing any document .Goodluck and success in advance.

3.3

60 reviews

5
20
4
11
3
9
2
5
1
15

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions