wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

Sonicwall SNSA OS 7

Total questions: 108

Worksheet time: 1hrs 8mins

Name
Class
Date
1.

Which of the following are included in the output of a network monitor?
(select all that apply)

a)

Probe Type

b)

Interface

c)

Probe Target

d)

IP Version

e)

Packet Type

2.

What type of Intermediate traffic is monitored by the packet monitor?
(Select all that apply)

a)

Multicast packets that are replicated

b)

Encrypted packets

c)

IP Helper-generated packets

d)

Exported packets

e)

Expired Packets

3.

What export formats are available for a snapshot of the Packet Monitor?
(Select all that apply_

a)

Excel Chart

b)

XML

c)

HTML

d)

Plain Text

e)

Pcap

4.

Which Packet Status types are indicated by the Packet Monitor?
(Select all that apply)

a)

Imported

b)

Dropped

c)

Exported

d)

Forwarded

e)

Consumed

5.

SonicWall Capture Client is a unified client platform that delivers multiple endpoint protection capabilities.

a)

Ture

b)

False

6.

Capture Client facilitates multi-tenant management

a)

True

b)

False

7.

Which feature of Endpoint Security protects against both file-based and file-less malware and delivers a 360-degree attack view with actionable intelligence relevant for investigations?

a)

Content Filtering

b)

Application Vulnerability Intelligence

c)

Rollback

d)

Continuous Behavioural Monitoring

8.

Which of the following are available in with the BASIC Capture Client license?
(Select all that apply)

a)

Rollback capability

b)

Windows Server Support

c)

Integration with Capture ATP

d)

Integration with Capture Security Center

e)

Role-based access control

9.

Application Vulnerability Intelligence helps catalog every application on each protected endpoint.

a)

True

b)

False

10.

Policy inheritance refers to the ability of a policy at child scope to be automatically inherited from the policy of the parent scope.

a)

True

b)

False

11.

Which Feature is used to ensure the firewall licenses are the same as in the respective Mysonicwall.com account?

a)

Generate Security Services summary

b)

Manual Upgrade

c)

Enter Keyset

d)

Synchronize

12.

What options are used to pre-empt an administrator logged into the firewall?
(Select all that apply)

a)

Both administrators can manage simultaneously

b)

Log out

c)

Drop into Non-Config mode

d)

Change to read-only a-ccess

13.

What are some of the key features of SonicWall Next-Gen firewalls?
(Select all that apply)

a)

Network segmentation

b)

Application intelligence and control

c)

single-layer security system

d)

Flexible deployment

e)

Operational complexity

14.

What are some of the key features of SonicOS 7 architecture?
(Select all that apply)

a)

Simplified intergration

b)

Operational Complexity

c)

Easy, Zero touch deployment

d)

Advanced protection against encrypted threats

e)

TLS 1.3

15.

Select two best practices that should be implemented before updating the firewall firmware.

a)

Download a settings file lcoally

b)

Import a settings file

c)

Use the create backup option built into the firewall

d)

Disable the could backup option

16.

The Public Server guide assigns the server automatically to the zone to which its IP address belongs

a)

Ture

b)

False

17.

When configuring a Site-to-Site policy, the Local Network option must match the Destination Network on the other side of the tunnel, in order to avoid tunnel negotiation errors or even a total failure

a)

Ture

b)

False

18.

Which of the following is the default public server type?

a)

Terminal Services Server

b)

Mail Server

c)

FTP Server

d)

Web Server

19.

What type of mapping does ARP enable?

a)

IP Addresses to MAC Addresses

b)

Does not enable any mapping

c)

MAC Addresses to Domain Names

d)

IP Addresses to Domain Names

20.

Which firewall network setting allows the current state of the DHCP leases in the network to be periodically written to Flash?

a)

Enable DHCP Server Persistence

b)

Enable DHCP Conflict Detection

21.

Which advanced network interface setting on the SonicWall NSv firewall allows initial packets or response packets to pass through other interfaces?

a)

Enable Asymmetric Route Support

b)

Enable Flow Reporting

c)

Enable Multicast Support

22.

Which of the following DDNS Providers are supported in SonicOS?
(Select all that apply)

a)

dyn.com

b)

freedns.afriad.org

c)

np-ip.com

d)

dns.he.net

23.

The SonicOS NSv scheme of interface addressing working in conjunction with address objects, service objects, and network zones.

a)

True

b)

False

24.

Who among the following can manage Guest Accounts and Sessions?

a)

SSL-VPN Administrators

b)

Zone Administrators

c)

Content Filter Administrators

d)

Guest Administrators

25.

Which of the following are the default user groups to which a new user is automatically added in a SonicWall firewall?
(Select all that apply)

a)

Everyone

b)

Guest Services

c)

All Users

d)

Trusted Users

26.

Which user authentication methods are available in a SonicWall NSv?
(Select all that apply)

a)

Local User

b)

TACACS

c)

LDAP

d)

CHAP

e)

RADIUS

27.

The Default Guest Profile cannot be deleted.

a)

Ture

b)

False

28.

Static routes, by default, take precedence over VPN traffic

a)

True

b)

False

29.

TOS routing applies to packets as they exit from the firewall.

a)

True

b)

False

30.

Advanced Routing is enabled by default.

a)

True

b)

False

31.

Which of the following variables are used to configure static routes to forward traffic?
(Select all that apply)

a)

Zones

b)

Interfaces

c)

Services

d)

Encryption Polices

32.

Which protocols are supported by the Advanced Routing mode of SonicWall Nsv?
(Select all that apply)

a)

EIGRP

b)

RIP

c)

OSPFv3

d)

IS-IS

33.

As a general practice, all inbound connections should be logged

a)

True

b)

False

34.

Setting the Event Priority level lower than the Logging Level will cause those event to be filtered out from Event Logs.

a)

True

b)

False

35.

If the Logging level filter is defined as Error, which of the following alert messages will also be displayed in the results?
(select all that apply)

a)

Alert

b)

Critical

c)

Notice

d)

Emergency

e)

Warning

36.

Which Log Settings option is used to create a predefined email notification with a defined subject in firewall log management?

a)

Email Log Automation

b)

Base Setup

c)

Syslog

d)

Name Resolution

37.

The connection Count monitor periodically updates the outgoing and incoming connection rates for each interface?

a)

True

b)

False

38.

What type of information is displayed on the Protocol Monitor?
(select all that apply)

a)

TCP Rate

b)

HTTPS Connection

c)

IPv4 Rate

d)

ARP Rate

e)

Packet Rate

39.

The real-time monitoring features of the NSv firewall rely on the flow-collection mechanisms to collect and display data.

a)

True

b)

False

40.

What is the default timeout for a administrator

a)

5 mins

b)

10 mins

c)

15 mins

d)

20 mins

41.

what is the default username and password for a SonicWall.

a)

admin // password

b)

admin // admin

c)

Admin // Password

d)

Admin // Admin

42.

What are the default zones?

a)

LAN, WAN, DMZ, VPN, SSLVPN, MULTICAST

b)

LAN, WAN, DMZ, SSLVPN

c)

LAN, WAN, VPN, MULTICAST

d)

LAN, WAN, DMZ, SSLVPN

43.

Select all types of trusted zones

a)

Trused

b)

Public

c)

SSL VPN

d)

Untrusted

44.

Please select all interface types

a)

Virtual

b)

VPN

c)

4to6

d)

Physical

45.

What are the Management options on a interface?

a)

HTTPS

b)

PING

c)

SNMP

d)

SSH

e)

HTTP

46.

You can manage a SonicWall via HTTP by default

a)

Ture

b)

False

47.

Select all modes for WAN

a)

DHCP

b)

PPPOE

c)

PPTP

d)

DSL

48.

Select all modes for WAN

a)

L2TP

b)

Tap

c)

Wire

d)

VDSL

49.

Select all modes for LAN

a)

Static

b)

Tap

c)

Wire

d)

DHCP

e)

Mirror

50.

Please Select all Address Object Types

a)

Host

b)

Range

c)

Network

d)

FQDN

e)

MAC

51.

Select All service object Types

a)

ICMP

b)

IGMP

c)

TCP

d)

UDP

e)

HTTPS

52.

Select All service object Types

a)

6over4

b)

GRE

c)

ESP

d)

AH

e)

Host

53.

Select all NAT Policy Types

a)

Inbound

b)

Outbound

c)

Loopback

d)

4to6

e)

6to4

54.

Select all types of NAT policy's you can create in a SonicWall

a)

IPv4

b)

IPv6

c)

64

d)

6over4

55.

Access rules happen before NAT

a)

True

b)

False

56.

By the SonicWall creates a inbound deny rule

a)

True

b)

False

57.

Select all BWM Violation Options

a)

Deny

b)

Drop

c)

Ignore

d)

Consume

58.

From the setup wizard select the Wizards you are prompted with

a)

Public server

b)

VPN

c)

SDWAN

d)

NAT Policy

e)

GC VPN

59.

Ingress refers to incoming data

a)

True

b)

False

60.

Egress refers to outgoing data

a)

True

b)

False

61.

Where can you apply Bandwidth management?

a)

Access Rule

b)

Application Rule

c)

Content Filter

d)

Service Object

e)

Interfaces

62.

Select the protocols Gateway AV can protect from

a)

HTTP

b)

FTP

c)

SMTP

d)

POP3

e)

TOR

63.

Select the protocols Gateway AV can protect from

a)

NetBIOS

b)

TCP

c)

BitTorrent

64.

Select the recommended IPS settings

a)

Detect ALL

b)

Prevent All

c)

Prevent High and Medium

d)

Detect High and Medium

e)

Prevent High

65.

Select the recommended Anti-Spyware settings

a)

Detect ALL

b)

Prevent All

c)

Prevent High and Medium

d)

Detect High and Medium

e)

Prevent High

66.

What are the security services offered by a SonicWALL Firewall

a)

GAV

b)

IPS

c)

Anti-Spyware

d)

App Control

e)

Geo-IP

67.

Security services are enabled on new Zones by default

a)

True

b)

False

68.

Select all Capture ATP Server Locations

a)

Amsterdam

b)

Franfurt

c)

Miami

d)

San Jose

e)

Tokyo

69.

Select file types accepted by capture ATP

a)

Executables

b)

PDF

c)

Office 97-2003

d)

Office

e)

Archives

70.

Select the maximum file size for capture ATP

a)

10MB

b)

20MB

c)

50MB

d)

100MB

e)

30MB

71.

Recommend GEO-IP settings

a)

Block all unknown contires

b)

Block Proxy traffic

c)

Block European traffic

d)

Block African Traffic

e)

Block Russian Traffic

72.

Select All VPN types supported on a SonicWall

a)

Gateway-to-Gateway // Site-to-Site

b)

Host-to-Gateway

c)

Host-to-Host

d)

Peer-to-Peer

73.

Select the VPN Policy types on a sonic wall

a)

Site-to-Site

b)

Tunnel Interface

c)

Peer-to-Peer

74.

Select all VPN Authentication Methods

a)

Manual Key

b)

IKE Using Preshared Secret

c)

IKE using 3rd Party Certificates

d)

Auto Provisioning Server

e)

Auto Provisioning Client

75.

Select all VPN Exchange Types

a)

Main Mode

b)

Aggressive Mode

c)

IKEv2 Mode

d)

TOR

e)

P2P

76.

Select all available VPN IPSEC Phase 2 Protocol Types

a)

ESP

b)

AH

c)

EPS

d)

HA

e)

None

77.

Select the VPN Defaults

a)

Exchange - IKEv2, DH - Group 2, Encryption - AES-128, Auth SHA1

b)

Exchange - IKEv2, DH - Group 3, Encryption - AES-128, Auth SHA1

c)

Exchange - IKEv2, DH - Group 2, Encryption - AES-256, Auth SHA1

d)

Exchange - IKEv2, DH - Group 2, Encryption - AES-128, Auth SHA128

e)

Exchange - IKEv2, DH - Group 3, Encryption - AES-128, Auth SHA1

78.

Select the standard VPN Routes

a)

Auto Added Access Rule, Default metric: 20, Hops: Standard Route, Multi-Path Route, SD-WAN Rule

b)

Auto Added Access Rule, Default metric: 20, Hops: Standard Route, Multi-Path Route

c)

Auto Added Access Rule, Default metric: 20, Hops: Standard Route, SD-WAN Rule

d)

Auto Added Access Rule, Default metric: 10, Hops: Standard Route, Multi-Path Route, SD-WAN Rule

e)

Auto Added Access Rule, Default metric: 20, Hops: Multi-Path Route, SD-WAN Rule

79.

Select the best authentication method for over 1000 users

a)

RDIUS

b)

LDAP

c)

TACACS+

d)

Local users

80.

Select the best authentication method for over AAA (Authentication, Authorization and Accounting)

a)

RDIUS

b)

LDAP

c)

TACACS+

d)

Local users

81.

Select the required ports for LDAP

a)

389

b)

636

c)

3268

d)

3269

e)

4433

82.

Select the available Schema Types

a)

Microsoft AD

b)

User Defined

c)

Samba SMB

d)

OpenDirectory

83.

Select the available Schema Types

a)

Microsoft AD

b)

Novell eDirectory

c)

RFC2307 Network Information Service

d)

OpenDirectory

e)

RFC2798 InetOrgPerson

84.

What is the SSL VPN Port

a)

4433

b)

4443

c)

443

d)

4333

e)

4345

85.

Select Virtual Office bookmark types

a)

RDP (HTML5)

b)

SSHv2

c)

TELNET

d)

VNC

e)

SSH

86.

Where should the DPI-SSL certificate be imported to

a)

Trusted Root certification authorities

b)

Enterprise Trust

c)

Trusted Publishers

d)

Personal

e)

Local NonRemovable Certificates

87.

Where do you enable DPI SSL

a)

Globally

b)

Zone

c)

Policy

d)

NAT Rules

e)

Interface

88.

Select the correct list of CFS actions

a)

Allow, BWM, Block, Confirm, Passphrase

b)

Allow, BWM, Confirm, Passphrase

c)

Allow, Block, Confirm, Passphrase

d)

Allow, BWM, Block, Confirm

e)

Allow, BWM, Block, Passphrase

89.

The Content filtering service works from the top of the policy list to the bottom

a)

True

b)

False

90.

Select the items required to create a CFS policy

a)

Profile Object

b)

Action Object

c)

Zone

d)

Address Object

e)

Interface

91.

What port is used by the SonicWall SSO agent

a)

2258

b)

2259

c)

2257

d)

2256

92.

What port is used by the SonicWall SSO Terminal service agent agent

a)

2258

b)

2259

c)

2257

d)

2256

93.

What is the passphrase requirements for the SSO Agent?

a)

Hexadecimal, 8 Character minimum and an even number of characters

b)

Hexadecimal, 8 Character minimum

c)

8 Character minimum and an even number of characters

d)

Hexadecimal and an even number of characters

94.

In descending order the SonicWALL log priories are Emergency, Alert, Critical, Error, Warning, Notice, Inform, Debug

a)

Ture

b)

False

95.

What are the Default App Rule Actions

a)

Block SMTP W-Mail Without Reply

b)

Bypass Capture ATP

c)

Bypass DPI

d)

Bypass GAV

e)

Ignore

96.

What are the Default App Rule Actions

a)

Bypass IPS

b)

Bypass ANIT-SPYWARE

c)

No Action

d)

Packet Monitor

e)

Reset/Drop

97.

App Control takes precedence over App Rule

a)

True

b)

False

98.

Types of Failover/Load Balancing Types

a)

Basic Failover

b)

Round Robin

c)

Spill-Over

d)

Ratio

e)

Active / Active

99.

What are the Failover Probe settings

a)

Physical Monitoring only

b)

Logical/Probe Monitoring Enabled

c)

Physical Monitoring and Logical/Probe Monitoring Enabled

d)

None Listed

100.

What are the Failover Probe Setting criteria available

a)

Probe succeeds when EITHER Main

b)

Alternate target responds

c)

Prove Succeeds when BOTH Main or Alternate target responds

d)

Probe Succeeds when main target responds or Succeeds Always

101.

What are the Failover probe types?

a)

TCP

b)

ICMP

c)

UDP

102.

What are the SDWAN probe types?

a)

TCP

b)

ICMP

c)

UDP

103.

What is the Default probe address

a)

Responder.global.sonicwall.com

b)

Google.com

c)

8.8.8.8

d)

1.1.1.1

e)

MySonicWall.com

104.

What are the SDWAN SLA Class Object settings?

a)

Lowest Latency

b)

Lowest Jitter

c)

Lowest Packet Loss

d)

Highest thoughput

105.

To enable HA both SonicWALL's must be the exact same model

a)

Ture

b)

False

106.

To enable HA both firewalls must have the matching firmware

a)

Ture

b)

False

107.

When HA is enabled the Control Link is used for Heartbeat and Interface Changes

a)

Ture

b)

False

108.

How many cloud backups can you keep per firmware version

a)

1

b)

2

c)

3

d)

4

e)

5