[Nov-2022 Newly Released] Essentials Exam Questions For You To Pass
WatchGuard Essentials Exam: Basic Questions With Answers
NEW QUESTION 34
Which diagnostic tasks can you run from the Traffic Monitor tab of Firebox System Manager? (Select four.)
- A. Reputation lookup
- B. Traceroute
- C. DNS lookup
- D. MAC address lookup
- E. TCP dump
- F. Ping
Answer: B,C,E,F
Explanation:
Explanation/Reference:
From Firebox System Manager, you can run diagnostic tasks to review information in all the log messages from your Firebox or XTM device. This can help you debug problems on your network.
1. On the Traffic Monitor tab, right-click a message and select Diagnostic Tasks.
Or, select Tools > Diagnostic Tasks.
2. From the Task drop-down list, select the task to run.
Ping IPv4
Ping IPv6
traceroute
DNS Lookup
TCP Dump
Reference: http://watchguard.com/help/docs/wsm/xtm_11/en-us/content/en-us/fsm/ log_message_learn_more_wsm.html
NEW QUESTION 35
Match each type of NAT with the correct description:
Conserves IP addresses and hides the internal topology of your network. (Choose one)
- A. 1-to1 NAT
- B. Dynamic NAT
- C. NAT Loopback
Answer: B
Explanation:
Explanation/Reference:
Dynamic NAT is also known as IP masquerading. With dynamic NAT many computers can connect to the Internet from one public IP address. Dynamic NAT gives more security for internal hosts that use the Internet, because it hides the IP addresses of hosts on your network.
Reference: http://www.watchguard.com/help/docs/wsm/xtm_11/en-US/index.html#en-US/nat/ nat_dynamic_use_c.html%3FTocPath%3DNetwork%2520Address%2520Translation%2520(NAT)%7CAbout%
2520Dynamic%2520NAT%7C_____0
NEW QUESTION 36
Users on the trusted network cannot browse Internet websites. Based on the configuration shown in this image, what could be the problem with this policy configuration? (Select one.)
- A. The default Outgoing policy has been removed and there is no policy to allow DNS traffic.
- B. The HTTP-proxy allows Any-Trusted and Any-Optional to Any-External.
- C. The HTTP-proxy policy has higher precedence than the HTTPS-proxy policy.
- D. The HTTP-proxy policy is configured for the wrong port.
Answer: A
NEW QUESTION 37
Which WatchGuard Subscription Service must be enabled in a proxy policy before you can use APT Blocker? (Select one.)
- A. Application Control
- B. WebBlocker
- C. IPS
- D. Gateway Antivirus
- E. RED
Answer: D
NEW QUESTION 38
Match each WatchGuard Subscription Service with its function.
Cloud based service that controls access to website based on a site's previous behavior. (Choose one).
- A. Application Control
- B. WebBlocker
- C. Data Loss Prevention DLP
- D. Intrusion Prevention Server IPS
- E. Reputation Enable Defense RED
- F. Quarantine Server
Answer: E
Explanation:
Explanation/Reference:
Reputation Enable Device (RED) is a cloud-based reputation service that controls user's ability to get main access to web malicious sites. Works in concert with the WebBlocker module.
Reference: http://www.tomsitpro.com/articles/network-security-solutions-guide, 2-866-6.html
NEW QUESTION 39
Match the monitoring tool to the correct task.
Which tool can view a list of users connected to the Firebox? (Select one)
- A. FireWatch
- B. FireBox System Manager - Blocked Sites list
- C. Log Server
- D. Traffic Monitor
- E. Firebox System Manager - Subscription services
- F. Firebox System Manager - Authentication list
Answer: F
Explanation:
Explanation/Reference:
You can view a list of users connected to the Firebox through HostWatch, and you can also use Authentication List, which identifies the IP addresses and user names of all the users that are authenticated to the Firebox.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181
NEW QUESTION 40
How is a proxy policy different from a packet filter policy? (Select two.)
- A. Only a proxy policy uses the IP source,destination, and port to control network traffic.
- B. Only a proxy works at the application, network, and transport layers to examine all connection data.
- C. Only a proxy policy can prevent specific threats without blocking the entire connection.
- D. Only a proxy policy examines information in the IP header.
Answer: B,C
Explanation:
C: Proxies can prevent potential threats from reaching your network without blocking the entire connection.
D: A proxy operates at the application layer, as well as the network and transport layers of a TCP/IP packet, while a packet filter operates onlyat the network and transport protocol layers.
Incorrect:
Not A: A packet filter examines each packet's IP header to control the network traffic into and out of your network.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, page 95
NEW QUESTION 41
A local branch office VPN tunnel route is configured as shown in this image. On the remote peer device, what must be configured as the remote network address for this tunnel route? (Select one.)
- A. 10.0.1.0/24
- B. 10.0.20.0/24
- C. 10.0.10.0/24
Answer: C
NEW QUESTION 42
In this diagram, which branch office VPN tunnel route must you add on the Site A Firebox to allow traffic between devices on the trusted network at Site A and the trusted network at site B? (Select one.)
- A. Local: 10.0.10.1/24 <--> Remote: 192.168.1.1/24
- B. Local: 203.0.113.10/24 <--> Remote: 198.151.100.2/24
- C. Local: 10.0.10.0/24 <--> Remote: 192.168.1.0/24
- D. Local: 192.168.1.0/24 <--> Remote: 10.0.10.0/24
Answer: A
NEW QUESTION 43
Match each WatchGuard Subscription Service with its function.
Scans files to detect malicious software infections. (Choose one).
- A. Gateway / Antivirus
- B. Spam Blocker
- C. Data Loss Prevention DLP
- D. Reputation Enable Defense RED
- E. Quarantine Server
Answer: A
Explanation:
Explanation/Reference:
Gateway Antivirus provides a virus scanner that uses both an extensive signature database (updated through subscription) and a heuristic analysis engine.
Reference: http://www.tomsitpro.com/articles/network-security-solutions-guide, 2-866-6.html
NEW QUESTION 44
If your Firebox has a single public IP address, and you want to forward inbound traffic to internal hosts based on the destination port, which type of NAT should you use? (Select one.)
- A. Dynamic NAT
- B. 1-to-1 NAT
- C. Static NAT
Answer: B
NEW QUESTION 45
Which authentication servers can you use with your Firebox? (Select four.)
- A. Active Directory
- B. TACACS+
- C. LDAP
- D. Linux Authentication
- E. Firebox databases
- F. Kerberos
- G. RADIUS
Answer: A,C,E,G
NEW QUESTION 46
Which of these options are private IPv4 addresses you can assign to a trusted interface, as described in RFC 1918, Address Allocation for Private Internets? (Select three.)
- A. 172.16.0.1/16
- B. 10.50.1.1/16
- C. 198.51.100.1/24
- D. 192.0.2.1/24
- E. 192.168.50.1/24
Answer: A,B,E
NEW QUESTION 47
Which of these services would you use to allow the use of P2P programs for a specific department in your organization? (Select one.)
- A. Reputation Enabled Defense
- B. Application Control
- C. Data Loss Prevention
- D. IPS
Answer: B
NEW QUESTION 48
You configured four Device Administrator user accounts for your Firebox. To see a report of witch Device Management users have made changes to the device configuration, what must you do? (Select two.)
- A. Connect to Report Manager or Dimension and view the Audit Trail report for your device.
- B. Open WatchGuard Server Center and review the configuration history for managed devices.
- C. Configure your device to send audit trail log messages to your WatchGuard Log Server or Dimension Log Server.
- D. Start Firebox System Manager for the device and review the activity for the Management Users on the Authentication List tab.
Answer: A,B
NEW QUESTION 49
What is one reason that users could see a certificate warning in their web browsers when they connect to Fireware XTM Web UI? (Select one.)
- A. The user or group is not present in the Firebox User database.
- B. The authentication server does not respond after three minutes.
- C. The user has been previously added to the Blocked Sites list.
- D. The Firebox or XTM device uses the default self-signed certificate.
Answer: D
NEW QUESTION 50
Which tool can add an IP address for the Firebox to permanently block? (Select one)
- A. FireWatch
- B. Log Server
- C. Traffic Monitor
- D. Firebox System Manager - Subscription services
- E. Firebox System Manager - Authentication list
- F. FireBox System Manager - Blocked Sites list
Answer: F
Explanation:
Explanation/Reference:
Block a site permanently
The Successful Company network administrator has been driven to distraction recently by a script kiddy using addresses in the 192.136.15.0/24 network to run probes of the Successful network. In this exercise, we permanently block all connections from that network.
1. From Policy Manager, select Setup > Default Threat Protection > Blocked Sites.
The Blocked Sites Configuration dialog box opens.
2. On the Blocked Sites tab, click Add.
3. The Add Site dialog box opens. 3. Use the Choose Type drop-down list to select Network IP. In the Value text box, type 192.136.15.0/ 24.
4. Click OK.
The entry appears in the Blocked Sites list. With this configuration, the Firebox blocks all packets to and from the 192.136.15.0/24 network range.
Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181
NEW QUESTION 51
......
New 2022 Realistic Free WatchGuard Essentials Exam Dump Questions and Answer: https://www.examcollectionpass.com/WatchGuard/Essentials-practice-exam-dumps.html