A company needs to monitor SSL-encrypted traffic from users accessing external websites. What should they implement?
ASSL Visibility Appliance
BvSphere Web Client
CVMware Horizon
DNSX Load Balancer
Explanation
The SSL Visibility Appliance is intended for monitoring SSL-encrypted traffic, unlike the other options.
Q162
You are configuring certificate validation in SSL Visibility. What happens when a certificate is untrusted?
ADecryption fails silently
BTraffic is blocked until resolved
CDecryption proceeds with warnings
DNo actions are taken
Explanation
When a certificate is untrusted, decryption may proceed with warnings rather than blocking all traffic, provided settings allow it.
Q163
Which service in Symantec SSL Visibility enables decryption and re-encryption of SSL traffic?
ASSL Interception Service
BNetwork Performance Monitor
CCloud Storage Service
DTraffic Optimization Service
Explanation
The SSL Interception Service decrypts and re-encrypts SSL traffic, while the other services do not focus on SSL operations.
Q164
A company needs to ensure that sensitive data is never transmitted unencrypted. What feature should they configure?
ASSL Policy Enforcement
BTraffic Compression
CSession Caching
DPacket Logging
Explanation
Configuring SSL Policy Enforcement ensures data encryption, while other options do not prevent unencrypted transmission.
Q165
What happens when SSL Visibility devices are out of sync with time?
ADecryption still occurs normally
BLogs may have incorrect timestamps
CSSL certificates are automatically renewed
DTraffic filtering stops working
Explanation
Incorrect time synchronization leads to logs with incorrect timestamps; other options do not accurately describe the consequences.
Q166
Which service provides SSL/TLS decryption in Symantec SSL Visibility?
ASSL Visibility Appliance
BWeb Application Firewall
CIntrusion Detection System
DNetwork Firewall
Explanation
The SSL Visibility Appliance specifically handles SSL/TLS decryption, while others serve different security functions.
Q167
A company needs to inspect encrypted traffic without impacting network performance. What feature should they focus on?
ADecryption policies
BHigh availability configuration
CTraffic shaping
DLoad balancing
Explanation
Decryption policies enable inspection of encrypted traffic efficiently without slowing down the network, while the others are performance-related features.
Q168
You are configuring session timeout for the SSL Visibility appliance. What is the result of setting it too low?
AIncreased resource consumption
BFrequent user logouts
CEnhanced security posture
DFaster decryption processes
Explanation
Setting a low session timeout leads to frequent logouts as sessions expire quickly, while others do not directly result from this setting.
Q169
Which service is essential for SSL visibility in VMware environments?
ASSL/VPN Tunneling Service
BVMware Secure Sockets Layer Service
CVMware NSX-T Service
DBandwidth Management Service
Explanation
VMware Secure Sockets Layer Service provides SSL visibility, while others do not focus on SSL analysis.
Q170
A company needs to inspect encrypted traffic without compromising performance. What is the best approach?
AImplement SSL decryption proxies
BUse HTTP/2 protocol exclusively
CDisable all encryption
DLimit traffic to non-encrypted only
Explanation
SSL decryption proxies allow inspection while maintaining performance; other options either kill encryption, reduce traffic, or compromise security.