What happens when a user attempts to run an application not authorized in the Carbon Black policy?
AThe application runs without restrictions
BThe application gets reported only
CThe application is blocked from execution
DThe application is logged as safe
Explanation
Unauthorized applications are blocked from execution to ensure security.
Q22
Which service in VMware Carbon Black focuses on application visibility?
AApplication Control
BThreat Detection
CIncident Response
DData Analytics
Explanation
Application Control specifically monitors and provides insights on application usage, while others focus on security threats or data analysis.
Q23
A company needs to ensure only approved applications run on its endpoints. What VLAN approach is most appropriate?
AIsolated VLAN for unmanaged applications
BMonitoring VLAN for all traffic
CApproval VLAN for approved applications
DPublic VLAN for all users
Explanation
An Approval VLAN would enforce running only permitted applications, while the others do not ensure application compliance.
Q24
You are configuring file integrity monitoring in Carbon Black. What happens when a monitored file is altered?
ANo alert is generated
BAn alert is triggered
CThe file is automatically restored
DUser access is denied
Explanation
Altering a monitored file generates an alert to notify of potential unauthorized changes, whereas others incorrectly imply inaction or user restrictions.
Q25
Which service in VMware Carbon Black monitors file integrity?
AFile Integrity Monitoring
BThreat Intelligence
CEndpoint Detection
DApplication Whitelisting
Explanation
File Integrity Monitoring tracks changes to files, while the others focus on different security aspects.
Q26
A company needs to prevent unauthorized software execution. What Carbon Black feature should they use?
AApplication Control policies
BThreat Hunting
CLog indexing
DIncident Response
Explanation
Application Control policies enforce rules on software execution to prevent unauthorized applications.
Q27
You are configuring a policy in Carbon Black. What happens if a file is not explicitly listed in a whitelisting policy?
AThe file is allowed to run.
BThe file is blocked.
CThe file prompts for permission.
DThe file is quarantined automatically.
Explanation
In whitelisting, any file not explicitly allowed is automatically blocked for execution.
Q28
Which service is responsible for defining policies in VMware Carbon Black Application Control?
APolicy management service
BDatabase service
CEvent processing service
DUser management service
Explanation
Policy management service defines application control policies, while the others pertain to different functions.
Q29
A company needs to enforce application whitelisting. What is the first step?
AInstall the whitelisting tool
BCreate a secure policy
CIdentify approved applications
DDeploy agents on endpoints
Explanation
Identifying approved applications is essential before creating a policy.
Q30
You are configuring the integration settings in VMware Carbon Black Application Control. What happens when you enable 'email notifications'?
AUsers receive log reports
BAdmin gets alerts for policy changes
CSystem updates are notified
DAlerts for application block events
Explanation
Enabling email notifications sends alerts for application blocks, not the other options.