An administrator is installing ESM Core 4.0. The SQL Server is running on a non-standard port (36418). The database connection validation is failing. The administrator has entered the following information: Server Name: Servername\Instance Database: TrapsDB User Name: Domain\Account
What is causing the failure?
A. The database name "TrapsDB" is unsupported
B. The instance name should not be specified
C. The non-standard port needs to be specified in the format TrapsDB,36418
D. The destination port cannot be configured during installation
A retail company just purchased Traps for its 8,000 endpoints. Many of its users work remotely. The company is not using any VPN solution, but would still like to manage all endpoints regardless where they are. Which two aspects should be part of the recommendation? (Choose two.)
A. As each ESM Core server can handle up to 30,000 endpoints, use at least 1 ESM Core server internally and 1 ESM core server in the DMZ for external endpoints.
B. Placing an ESM Core server in the DMZ or in a cloud hosting service allows external endpoints to connect to it, even without a VPN client.
C. Protection for remote endpoints is currently not supported. Since the ESM servers can only be installed in an internal network, endpoints without VPN will not be able to connect to it.
D. If there is no connection to the ESM Core server, Traps agents automatically connect to WildFire and endpoints are fully protected. No additional ESM Core servers are needed.
An administrator is testing an exploit that is expected to be blocked by the JIT Mitigation EPM protecting the viewer application in use. No prevention occurs, and the attack is successful. In which two ways can the administrator determine the reason for the missed prevention? (Choose two.)
A. Check in the HKLM\SYSTEM\Cyvera\Policy registry key and subkeys whether JIT Mitigation is enabled for this application
B. Check if a Just-In-Time debugger is installed on the system
C. Check that the Traps libraries are injected into the application
D. Check that all JIT Mitigation functions are enabled in the HKLM\SYSTEM\Cyvera\Policy\Organization \Process\Default registry key
A company is trying to understand which platform can be installed on their environment: Select the three endpoints where Traps can be installed (Choose three).
A. Windows 10 LTSB with 2 GB RAM, 500MB free disk space and Intel Core i5 CPU
B. Windows 2000 SP4 with 1 GB RAM, 4 GB free disk space and Intel Pentium 4 CPU
C. Apple iPhone 6s
D. Windows Server 2012 R2 Standard Edition in FIPS Mode, with 4GB RAM, 20GB free disk space, running on VMware ESXi.
E. 15" MacBook Pro running macOS 10.12 with 16GB RAM, Intel Core i7 CPU and 100GB tree disk space
During installation of the ESM and the agent, SSL was enabled on an endpoint. However, the agent
communication is failing. The services.log on the endpoint has the following
error.
*An error occurred while making the HTTP request to https: //hostname:2125/CyveraServer/. This could be
due to the fact that the server certificate is not configured property with HTTP SYS in the HTTPS case.
This could also be caused by a mismatch of the security binding between the client and the server."
Which certificate can be imported on the endpoint to solve this issue? Assume the hostname is a valid
FQDN and the ESM Server and Console have different certificates.
A. ESM Server Public Certificate
B. ESM Server Serf-Signed Certificate
C. ESM Console Self-Signed Certificate
D. ESM Console Public Certificate
An administrator has installed Traps 4.0. The administrator wants to test the malware protections provided. What sample should they use to test the protections provided by Traps?
A. A sample with a low number of hits in Virus Total
B. A toolbar package known to be flagged as grayware by Traps
C. A sample known to generate false positives in the production environment
D. An MS Office document which contains a ransomware macro
A company is using a Web Gateway/Proxy for all outbound connections. The company has deployed Traps within the domain and in testing, discovered that the ESM Servers are unable to communicate with WildFire. All other Traps features are working.
What is the most likely cause of the issue?
A. The administrator needs to configure WildFire proxy settings in each Agent Console.
B. The administrator needs to configure WildFire proxy settings in the ESM Console and in each Agent Console.
C. The Administrator needs to purchase the additional site license required for WildFire.
D. The Administrator needs to configure WildFire proxy settings in the ESM Console.
What is the default interval for Traps agents to communicate via heartbeat to the ESM?
A. Every 1 Minute
B. Every 1 Hour
C. Every 1 Day
D. Every 1 year
An administrator would like to add Google Chrome and Google Chrome Helper to the exploit prevention policy for macOS. In order to achieve this task, which option should be added to the macOS protected processes list?
A. chrome app
B. google chrome and google chrome helper
C. chrome*
D. google chrome
From the ESM console, which two ways can an administrator verify that their installed macOS agents are functional? (Choose two.)
A. Click the Settings Tab > Agent > Installation Package to view the agents installed.
B. Click the Dashboard Tab, and refer to the Computer Distribution and Version window
C. Click the Monitor Tab > Agent > Health. Sort by OS and look for the macOS endpoints
D. Click the Monitor Tab > Data Retrieval
Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Palo Alto Networks exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PSE-ENDPOINT exam preparations and Palo Alto Networks certification application, do not hesitate to visit our Vcedump.com to find your solutions here.