We at Crack4sure are committed to giving students who are preparing for the Symantec 250-587 Exam the most current and reliable questions . To help people study, we've made some of our Symantec Data Loss Prevention 16.x Administration Technical Specialist exam materials available for free to everyone. You can take the Free 250-587 Practice Test as many times as you want. The answers to the practice questions are given, and each answer is explained.
A DLP administrator determines that the \SymantecDLP\Protect\Incidents folder on the Enforce server contains. BAD files dated today, while other. IDC files are flowing in and out of the \Incidents directory. Only .IDC files larger than 1MB are turning to .BAD files.
What could be causing only incident data smaller than 1MB to persist while incidents larger than 1MB change to .BAD files?
When Symantec DLP and Symantec CloudSOC are integrated, what must you configure in Enforce to tell CloudSOC which traffic or content to send to the Cloud Detection Service for analysis?
Which channel does Endpoint Prevent protect using Device Control?
Which two detection servers are available as virtual appliances? (Choose two.)
A DLP administrator needs to remove an agent and its associated events from an Endpoint server.
Which Agent Task should the administrator perform to disable the agent’s visibility in the Enforce management console?
Which two automated response rules will be active in policies that include Exact Data Matching (EDM) detection rule? (Choose two.)
Which two components can perform a file system scan of a workstation? (Choose two.)
What should an incident responder select in the Enforce management console to remediate multiple incidents simultaneously?
Where in the Enforce management console can a DLP administrator change the “UI.NO_SCAN.int” setting to disable the “Inspecting data” pop-up?
What is Application Detection Configuration?
Which service encrypts the message when using a Modify SMTP Message response rule?
Which of the following would have to be a custom attribute (and not an out-of -the-box system attribute) in incident snapshots?
Which product is able to replace a confidential document residing on a file share with a marker file explaining why the document was removed?
Which two Infrastructure-as-a-Service providers are supported for hosting Cloud Prevent for Office 365? (Choose two.)
A DLP administrator is testing Network Prevent for Web functionality. When the administrator posts a small test file to a cloud storage website, no new incidents are reported.
What should the administrator do to allow incidents to be generated against this file?
A DLP administrator is checking the System Overview in the Enforce management console, and all of the detection servers are showing as “unknown”. The Vontu services are up and running on the detection servers. Thousands of .IDC files are building up in the Incidents directory on the detection servers. There is good network connectivity between the detection servers and the Enforce server when testing with the telnet command.
How should the administrator bring the detection servers to a running state in the Enforce management console?
Which two (2) detection servers are available as virtual appliances? (Choose two.)
Which two (2) DLP products support Optical Character Recognition (OCR)? (Choose two.)
Why is it important for an administrator to utilize the grid scan feature?
Refer to the exhibit. Which type of Endpoint response rule is shown?
What detection server type requires a minimum of two physical network interface cards?
A DLP administrator created a new agent configuration for an Endpoint server. However, the endpoint agents fail to receive the new configuration.
What is one possible reason that the agent fails to receive the new configuration?
Why would an administrator set the Similarity Threshold to s=zero when testing and tuning a Vector Machine Learning (VML) profile?
When troubleshooting Enforce issues, what should be considered regarding server resources?
What are two (2) reasons an administrator should utilize a manual configuration to determine the endpoint location? (Choose two.)
Which two detection technology options run on the DLP agent? (Choose two.)
Which two locations can Symantec DLP scan and perform Information Centric Encryption (ICE) actions on? (Choose two.)
3 Months Free Update
3 Months Free Update
3 Months Free Update