Summer Certification Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = getmirror

Pass the Riverbed RCSP-NPM 299-01 Questions and answers with ExamsMirror

Practice at least 50% of the questions to maximize your chances of passing.
Exam 299-01 Premium Access

View all detail and faqs for the 299-01 exam


805 Students Passed

85% Average Score

94% Same Questions
Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions
Questions # 41:

A SPAN port or Port Mirror differs from RSPAN technology in which way:

Options:

A.

A SPAN port captures traffic locally, an RSPAN captures traffic remotely

B.

A SPAN port captures traffic consistently, an RSPAN captures traffic randomly

C.

A SPAN port captures multiple ports while an RSPAN is "relational" and captures multiple VLANs (Relational LANs)

D.

They are both the same with different terms being used by different vendors

E.

A SPAN port is used on a Switch while a RSPAN is used on a Router

Questions # 42:

For DNS reverse lookup, Cascade Profiler caches as follows:

Options:

A.

Cache the most recent 500 IPs.

B.

Obey DNS TTLs.

C.

Cascade does not cache DNS responses.

D.

For 24 hours.

Questions # 43:

What is the maximum number of custom applications (Layer 4 and 7 combined) permitted to be defined on a single Cascade Profiler?

Options:

A.

50

B.

75

C.

100

D.

125

E.

Unlimited

Questions # 44:

Cascade Profiler is reporting the traffic on Steelhead optimized flows separately than the connections on tcp/7800 between two Steelheads. In other words, from Cascade you see flows for traffic on various ports used natively by the clients and servers across the steelhead as well as flows for tcp/7800. What does this indicate?

Options:

A.

This is normal in optimization environments and provides the proper reporting of traffic volume between locations.

B.

This indicates that Flow data is being reported on the optimized connection, between Steelheads and has no impact on reporting.

C.

This indicates that Flow data is being reported on the optimized connection, between Steelheads and can lead to Cascade double-counting volumes between locations.

D.

This cannot happen.

Questions # 45:

When changing the priority for a Layer 4 mapping on Cascade Profiler best practices indicate that Application Mappings should be given higher priorities based on:

Options:

A.

Longest Match

B.

Shortest Match

C.

IP & Port

D.

IP

Questions # 46:

What is a benefit that Cascade Profiler might provide to Security Operations? (Select 3)

Options:

A.

Ability to identify Scanners and Worm Propagations.

B.

Ability to provide information for a firewall rule when a user defined policy is violated.

C.

Ability to alert on security policy (e.g. an insecure policies, such as FTP, is in use).

D.

Ability to identify Worms by name.

Questions # 47:

What are the two (at a minimum) devices you need to configure in Cascade Profiler for Switch Port Discovery integration to work for a portion of the network?

Options:

A.

At least one NetFlow sources (router, switch, or steelhead).

B.

At least one lookup router and at least one access tier switch.

C.

A Vulnerability Scanner and a Netflow source (router, switch, or steelhead).

D.

A Vulnerability Scanner and an External Link.

Questions # 48:

How many Host Group Types can be tracked on the Dashboard within the Cascade Profiler GUI?

Options:

A.

Unlimited

B.

Ten

C.

Four

D.

Twenty

Questions # 49:

How do all the Cascade components stay time synchronized?

Options:

A.

They all point to the same NTP server.

B.

The Profiler, ideally, points to an NTP server (although it can use local time as well), the Gateway and Sensor get their time information from the Profiler which acts as their NTP Server.

C.

For security reasons, all components use local time. The same time should be set on each component.

D.

They all synchronize their time via timestamps in Netflow sources.

Questions # 50:

If there is a Layer 7 fingerprint and a Layer 4 mapping for a particular application, which of the following is truE. (Select 5)

Options:

A.

If the Layer 4 mapping override policy is not "Unknown/Unclassified", the Layer 4 mapping applies to flows not passing a Sensor or other application fingerprinting device as well as to flows not matching any defined Layer 7 fingerprint

B.

If the Layer 4 mapping override policy is "Always", then the Layer 7 fingerprint will never be used for flows matching both criteria

C.

If the Layer 4 mapping override policy is "Unclassified", the Layer 4 mapping only applies to flows not passing a Sensor or other application fingerprinting device

D.

If the Layer 4 mapping override policy is "Unknown/Unclassified", the Layer 4 mapping applies to flows not passing a Sensor or other application fingerprinting device as well as to flows not matching any defined Layer 7 fingerprint

E.

Care must be taken when defining reports and policies to reflect overlapping definitions and the Layer 4 override policy

F.

The traffic Expression "app L7_fingerprint or app L4_mapping" will catch all traffic flows for the application data in a report

Viewing page 5 out of 8 pages
Viewing questions 41-50 out of questions
TOP CODES

TOP CODES

Top selling exam codes in the certification world, popular, in demand and updated to help you pass on the first try.