ACTUAL Exam Questions and CORRECT
Answers
DISA HBSS 201 Admin ePO5.1 (2016 Version) - CORRECT ANSWER - Pull Task
What can be created to prevent interpreting a normal behavior as an attack? - CORRECT
ANSWER - Exception
Which executable runs the main HIPS service? - CORRECT ANSWER - Firesvc.exe
How do yo uninstall the HIPS 7.0 client for Windows from a managed system? - CORRECT
ANSWER - Remove the extension from the ePO Server and initiate the McAfee Agent
wakeup call.( double check answer)
Assume three IPS policies are applied to a node; 1 default and 2 custom. The default severity
level is set to HIGH; 1 custom severity level is set to LOW and the other custom is set to
MEDIUM. What is the effective severity level outcome for the applied policy? - CORRECT
ANSWER - Low
Med
Least Restrictive - testing
Which ePO repository provides all updates to the ePO Master repository? - CORRECT
ANSWER - Source
Which is not a type of IPS Signature? - CORRECT ANSWER - Network Signatures
If a connection is in the state table; what action will occur with future traffic for that connection?
- CORRECT ANSWER - Allow
, Which ePO component gathers the events from the managed systems and communicates them to
the ePO server? - CORRECT ANSWER - McAfee Agent
What are the four main types of Permission Sets in ePO? - CORRECT ANSWER -
Executive Reviewer; Global Reviewer; Group Admin; Group Reviewer
To manually move a system from one group to another; you do which two things with the system
to move it to the other group? - CORRECT ANSWER - A. Drag and drop - testing
Which ePO core component enforces the policies on the systems? - CORRECT
ANSWER - McAfee Agent
In the Client Task Catalog you can export all of your client tasks into an XML file that can be
imported into another ePolicy Orchestrator Server. - CORRECT ANSWER - True
From this list select the format that you cannot export your query results to. - CORRECT
ANSWER - DOC - testing
Each Firewall Rule provides a set of conditions that which of the following has to meet? -
CORRECT ANSWER - B. Computers - testing
Which IPS policy determines what options are available to a client computer with a HIPS client;
including; whether or not the client icon appears in the system tray; types of intrusion alerts; and
password to allow access to the client user interface? - CORRECT ANSWER - D. Client
UI - testing
Which of the following is not a protection level defined in the IPS Protection Policy? -
CORRECT ANSWER - C. Log - testing
What are the four severity levels of signature in HIPS? - CORRECT ANSWER - High,
Medium, Low, Informational