IBM InfoSphere Guardium Technical Mastery Test v2 認定 P2090-739 試験問題:
1. Data is collected through a security policy using non-selective audit trail that only consists ofrules with alert action.
Which of the following cannot be viewed when reporting on these data?
A) Client IP
B) SQL construct
C) SOL timestamp
D) SQL values
2. A database known to contain the medical records of a foreign head of state is accessed at 1:30 AM.
No security mechanism is installed and so this highly sensitive information is leaked to the media.
Could this breach have been detected by running a Guardium vulnerability assessment without creating any custom assessment tests?
A) Yes, but only if the appliance includes Guardium's Database Protection Subscription service.
B) Yes, however this particular test is only available for IBM DB2 and Informix servers.
C) Yes,after hours login detection is one of the standard behavioral vulnerability tests included with Guardium.
D) No, this type of test is not included with Guardium.
3. What is the simplest definition of a Guardium domain?
A) A model of a Guardium system describing the different entities involved in the environment and their relationships.
B) A Guardium entity containing a series of attributes.
C) A simple identification label to indicate ownership or control of a Guardium resource.
D) Grouping of a set of tables and relationships between those tables providing a view of the data that Guardium stores.
4. How would a DBA or developer notify Guardium using the Application User API that anapplication user has taken or given up control of a data server connection?
A) By importing the GuardUtils library and issuing calls through it from the application.
B) By registering the application's connection pool with Guardium.
C) By using the GuardAppUser call in the form of a SQL SELECT statement to indicate that a new application user has taken control of the connection.
D) By creating a wrapper solution that sends HTTP requests to Guardium's service-oriented API whenever an event like this happens.
5. What is the purpose of Guardium's Application Events API?
A) The Application Events API is used to increase the speed at which Guardium processes statements.
B) Adding application event data, such as user ID, event type and number, to the SQL statements executed between an API no-op call and its release signal.
C) Being part of the pattern matching engine that evaluates statements for membership in a specific security policy.
D) Enabling non-supported database engines to be used with Guardium.
質問と回答:
| 質問 # 1 正解: D | 質問 # 2 正解: C | 質問 # 3 正解: D | 質問 # 4 正解: C | 質問 # 5 正解: B |














0 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
