A company needs to restrict unauthorized application installations. Which policy should they implement first?
AExecution Control Policy
BPatch Management Policy
CAccess Control Policy
DData Loss Prevention Policy
Explanation
Execution Control Policy directly prevents unauthorized applications from executing, unlike other policies which serve different security purposes.
Q162
What happens when a user tries to run an application not in the whitelist?
AThe application executes anyway
BThe application is blocked
CThe user receives a warning
DThe system crashes
Explanation
If an application is not in the whitelist, it is blocked to prevent execution, while others describe incorrect outcomes.
Q163
Which service is essential for monitoring application behavior in VMware Carbon Black App Control?
AReal-time File Integrity Monitoring
BCloud Data Backup
CUser Activity Logging
DNetwork Traffic Analysis
Explanation
Real-time File Integrity Monitoring tracks changes to application execution, while the others serve different purposes.
Q164
A company needs to prevent unauthorized applications from running. What should they implement in Carbon Black App Control?
ABlacklisting all applications
BApplication Control Policies
CUser Privilege Management
DNetwork Restrictions
Explanation
Application Control Policies specifically manage which applications can run, whereas other options do not enforce application access directly.
Q165
You are configuring a policy to allow specific software updates, but you notice the updates are blocked. What could be the cause?
APolicy lacks update rules
BSoftware is whitelisted
CIntegrity monitoring prevents it
DUpdates require user approval
Explanation
Without update rules in the policy, Carbon Black cannot allow the software updates, while the other options do not accurately describe the restriction.
Q166
Which service is crucial for ensuring visibility on software changes in VMware Carbon Black Application Control?
AFile Integrity Monitoring
BAutomated Backup
CPerformance Augmentation
DNetwork Segmentation
Explanation
File Integrity Monitoring detects software changes efficiently; other options do not provide change visibility.
Q167
A company needs to prevent unauthorized application executions on endpoints. What should they configure in VMware Carbon Black Application Control?
AApplication Blacklisting
BCloud Backup
CNetwork Firewalls
DEmail Filtering
Explanation
Application Blacklisting specifically prevents unauthorized applications while the other options address different security aspects.
Q168
You are configuring an application control policy specifically for user downloads. What happens when 'Allow only signed applications' is enabled?
AUnsigned applications can be downloaded.
BOnly verified applications can run.
CDownload restrictions will be lifted.
DNo applications can be downloaded.
Explanation
Enabling this setting ensures that only applications with valid signatures are allowed to execute, thus enhancing security.
Q169
Which service is directly responsible for application control in VMware Carbon Black?
AApplication Control Service
BEndpoint Detection Service
CThreat Intelligence Service
DRemediation Manager
Explanation
The Application Control Service manages application whitelisting, while others focus on different tasks.
Q170
A company needs to restrict the installation of unauthorized applications on their endpoints. What feature would you recommend enabling?
ALockdown Mode
BSensor Service
CThreat Feed
DNew Policies
Explanation
Lockdown Mode prevents unauthorized application installations, unlike other features.