Watchguard Essentials Free Sample Questions

12 free sample questions75 in the full practice test

Try simulator

Essentials Sample Questions

  1. Question 1

    Which tool can add an IP address for the Firebox to permanently block?

    Answer and explanation

    Correct answer: A

    Explanation:
    Block a site permanently The Successful Company network administrator has been driven to distraction recently by a script kiddy using addresses in the 192.136.15.0/24 network to run probes of the Successful network. In this exercise, we permanently block all connections from that network. 1. From Policy Manager, select Setup > Default Threat Protection > Blocked Sites.
    The Stocked Sites Configuration dialog box opens. 2. Onttie Blocked Sites tab, click Add. 3. The Add Site dialog box opens. 3. Use the Choose Type drop-down list to select Network IP. In the Value text box, type 192.136.15.0/ 24. 4. Click OK.
    The entry appears in the Blocked Sites list. With this configuration, the Firebox blocks all packets to and from the 192.136.15.0/24 network range.
    Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181

  2. Question 2

    After you enable Gateway AntiVirus, IPS, or Application control, how can you make sure the services protect your network from the latest known threats? (Select one.)

    Answer and explanation

    Correct answer: C

    C

  3. Question 3

    Match each type of NAT with the correct description: Conserves IP addresses and hides the internal topology of your network. (Choose one)

    Answer and explanation

    Correct answer: B

    Explanation:
    Dynamic NAT is also known as IP masquerading. With dynamic NAT many computers can connect to the Internet from one public IP address. Dynamic NAT gives more security for internal hosts that use
    Reference: http://www.watchguard.com/help/docs/wsm/xtm 11/en-US/index.html#en-US/nat/nat dynamic use c.html%3FTocPath%3DNetwork%2520Address%2520Translation%2520(NAT)%7CAbout(?

  4. Question 4

    Match the monitoring tool to the correct task.
    Which is not a Fireware monitoring tool? (Select one)

    Answer and explanation

    Correct answer: B

    Explanation:
    The Fireware monitor and configuration tools are: Edge Web Manager, Firebox System Manager, HostWatch, and Ping.
    Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181

  5. Question 5

    Match each WatchGuard Subscription Service with its function.
    Uses signatures to provide real-time protection against network attacks. (Choose one).

    Answer and explanation

    Correct answer: C

    Explanation:
    Intrusion Prevention Service (IPS) -- As with the other IPS offers, the IPS module is intended to detect and in real time mitigate intrusions coming into a network. This includes a large signature data base that monitors for spyware, SQL injections, cross-site scripting (XSS), and buffer overflows.
    Reference: http://www.tomsitpro.com/articles/network-security-solutions-guide. 2-866-6.html

  6. Question 6

    Match the monitoring tool to the correct task.
    Which tool can learn the status of your IPS signature database? (Select one)

    Answer and explanation

    Correct answer: D

    Explanation:
    To look up information about an IPS signature: • Open Firebox System Manager. • ect the Subscription Services tab. • In the Intrusion Prevention section, click Show.
    Reference: Fireware Basics, Courseware: WatchGuard System Manager 10, pages 15, 34, 59, 181