Sophos Firewall v19.5 Exam Prep Questions and Answers (100% Pass)
Lateral movement protection is made possible by which of the following? -
✔️✔️Synchronized Security
Which 2 of these are features of the Xstream achitecture? - ✔️✔️TLS 1.3 Decryption und
Deep packet inspection
Which feature of the Sophjos Firewall helps prevent a computer infected by a trojan from
transmitting personal information out of theri network? - ✔️✔️Advanced Threat Protection
Which feature of the Sophos firewall identifies unknown applications? - ✔️✔️Synchronized
App Controll
What cloud platfroms is Sophos Firewall supported on? - ✔️✔️AWS, Azure und Nutanix
How many radios do the wireless XGS series models have? - ✔️✔️1
True or False: The number of ports can be expanded using additional modules. - ✔️✔️True
You have received a new hardware Sophos Firewall. What is the default IP addres and port
that is used to access the device? - ✔️✔️172.16.16.16:4444
You are preparing a Sophos Firewall for installation on a remote site. The order for the
license hat not yet been processed. Which device registration oprion do you select in the
Initial Suetup wizard? - ✔️✔️I do not want to register now.
Servic objects can be created for which of the following? - ✔️✔️TCP/UDP Ports, IP Protocol
Number, ICMP Type and Code
In which of these zones is an interface conffigured with a gateway? - ✔️✔️WAN
How many gateways can you include in an SD-WAN profile? - ✔️✔️8
Place the route types in the correct default order of precedence - ✔️✔️1. Static; 2. SD-WAN; 3.
VPN; 4. Default
How many servers does Sophos Firewall suport for static DNS? - ✔️✔️3
You have an existing DHCP server. What configuration allows Sophos firewall to forward
lease requests to this? - ✔️✔️Relay
Which of these are defined as Admin services in Device access? - ✔️✔️HTTPS and SSH
You want a certificate to be signed by a third-party company. which option should you
choose? - ✔️✔️Generate CSR
What are the different types of traffic shaping policy you can create? - ✔️✔️Users, Web
categories, Rules, Applications
What do you need to configure before you can start using traffic shaping? - ✔️✔️Total WAN
bandwidth
True of False: NAT rules are processed in order from top to bottom - ✔️✔️True
True or False: All firewall rules are evaluated and the best match is used. - ✔️✔️false
Which 3 of the following are matching criteria Sophos Firewall uses to automatically assign
firewall rules to groups? - ✔️✔️Destination ZONE, Source ZONE, Rule type
complete the sentence below:
When creating a firewall rule for DNAT, you select the ________ destination zone. - ✔️✔️Post
NAT
Where would you exclude a website from TLS inspection? - ✔️✔️WEB -> URL Groups
Where would you configure which chiper algorithms to block? - ✔️✔️Decryption profile
What 2 things do you need to do to use IPS policies - ✔️✔️Select an IPS policy in a firewall
rule; Enable IPS using the switch
Spoof Protection - ✔️✔️Drops traffic that is trying to pretend to come from a different MAC
of IP address to bypass protection
DoS Protection - ✔️✔️Drops traffic that is maliciously trying to prevent legitimate traffic from
being able to accsess services.
IPS Policies - ✔️✔️Protectes against exploits and malfromed traffic.
Which 2 actions can ATP be configured to perform when it detects traffic to a command-and-
control server? - ✔️✔️Log; Log and Drop
You want to configure Security Heartbeat, what is the first thing you need to do? -
✔️✔️Register your Sophos Firewall with you Sophos Central account
What information deas Sophos Firewall share about devices with a RED health status to
prevent lateral movement protection? - ✔️✔️MAC Adress
2
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller OliviaWest. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $12.49. You're not tied to anything after your purchase.