Question: 21

The McAfee Enterprise Log Manager (ELM) offers three levels of compression (Low, Medium, and High). By default, the ELM compression level is set to Low. Which of compression (Low, Medium, and High). By default, the ELM compression level is set to Low. Which of the following is the compression ratio for the Medium level?

A. 17:1
B. 20:1
C. 10:1
D. 14:1

Answer: A

Question: 22

Which of the following is the default port used to communicate between McAfee SIEM devices?

A. 22
B. 222
C. 21
D. 211

Answer: A

Question: 23

The McAfee Advanced Correlation Engine (ACE) can t>e deployed in one of two modes which are.?

A. Threshold and Anomaly.
B. Prevention and Detection.
C. Stateful and Stateless.
D. Historical and Real-Time.

Answer: D

Question: 24

The Database Event Monitor (DEM) appliance prevents disclosure of Personally Identifiable Information (Pll) by employing which of the following features to those types of information?

A. Obfuscation masks
B. Pll filter masks
C. Sensitive data masks
D. Filter masks

Answer: C

Question: 25

One or more storage allocations, which together specify a total amount of storage, coupled with a data retention time that specifies the maximum number of days a log is to be stored, is known as a

A. Storage Volume.
B. Storage Pool.
C. Storage Device.
D. Storage Area Network (SAN).

Answer: B

Question: 26

Which of the following security technologies sits inline on the network and prevents attacks based on signatures and behavioral analysis that can be configured as a data source within the SIEM?

A. Firewall
B. Email Gateway
C. Host Intrusion Prevention System
D. Network Intrusion Prevention System

Answer: D

