Your organization's disaster recovery plan needs an update to the backup and restore section to reap the
new distributed R76 installation benefits. Your plan must meet the following required and desired
objectives:
Required ObjectivE. The Security Policy repository must be backed up no less frequently than every 24
hours.
Desired ObjectivE. The R76 components that enforce the Security Policies should be backed up at least
once a week.
Desired ObjectivE. Back up R76 logs at least once a week.
Your disaster recovery plan is as follows:
- Use the cron utility to run the command upgrade_export each night on the Security Management Servers.
- Configure the organization's routine back up software to back up the files created by the command
upgrade_export.
- Configure the GAiA back up utility to back up the Security Gateways every Saturday night.
- Use the cron utility to run the command upgrade_export each Saturday night on the log servers.
- Configure an automatic, nightly logswitch.
- Configure the organization's routine back up software to back up the switched logs every night.
Upon evaluation, your plan:
Suppose the Security Gateway hard drive fails and you are forced to rebuild it. You have a snapshot file
stored to a TFTP server and backups of your Security Management Server. What is the correct procedure
for rebuilding the Gateway quickly?
As a Security Administrator, you must refresh the Client Authentication authorization time-out every time a
new user connection is authorized. How do you do this? Enable the Refreshable Timeout setting:
The technical-support department has a requirement to access an intranet server. When configuring a User
Authentication rule to achieve this, which of the following should you remember?
You cannot use SmartDashboard's User Directory features to connect to the LDAP server. What should
you investigate?
1) Verify you have read-only permissions as administrator for the operating system.
2) Verify there are no restrictions blocking SmartDashboard's User Manager from connecting to the LDAP
server.
3) Check that the login Distinguished Name configured has root permission (or at least write permission
Administrative access) in the LDAP Server's access control configuration.
Your company's Security Policy forces users to authenticate to the Gateway explicitly, before they can use
any services. The Gateway does not allow the Telnet service to itself from any location. How would you
configure authentication on the Gateway? With a: