1. Which of the following task types pertain to KasperskyEndpoint Security for Windows (11.1.0)?El número máximo derespuestas ha sido seleccionadoFind vulnerabilities and required updatesUninstall application remotelyIntegrity checkChange application componentsInstall application remotely2. Which of the following database servers does KasperskySecurity Center 11 support?El número máximo de res
...[Show More]
1. Which of the following task types pertain to Kaspersky
Endpoint Security for Windows (11.1.0)?El número máximo de
respuestas ha sido seleccionado
Find vulnerabilities and required updates
Uninstall application remotely
Integrity check
Change application components
Install application remotely
2. Which of the following database servers does Kaspersky
Security Center 11 support?El número máximo de respuestas ha sido
seleccionado
Microsoft SQL Server 2005
Microsoft SQL Server 2008 R2
Microsoft SQL Server 2012
Microsoft SQL Server 2014
Microsoft SQL Server 2016
Microsoft SQL Server 2017
3. What can you download from the "Current application
versions" page of the MMC console?
Distributions of all applications by Kaspersky Lab
Patches for Kaspersky Security Center components
Distributions of new versions of Kaspersky Security Center
Management plugins for the programs
Distributions of managed applications, such as Kaspersky Endpoint Security
4. How to create a new installation package for Kaspersky
Endpoint Security in the Kaspersky Security Center ММС
console?
Open the list of current application versions in Kaspersky Security Center
Administration Console, select the necessary version of Kaspersky Endpoint Security,
and click the button "Download and create installation package"
Start the package creation wizard and specify the self-extracting installer of
Kaspersky Endpoint Security, which can be downloaded from the Kaspersky Lab
website
Start the package creation wizard and specify the folder that contains Kaspersky
Endpoint Security installation files, which must include the description file with the
".kud" extension
Open the folder with installation packages and make a copy of the directory that
contains a Kaspersky Endpoint Security package
5. How would you make this change?
During the installation of Kaspersky Security Center, the DNS name of
the Administration Server was specified for its connection address.
Before deploying Kaspersky Network Agents, the administrator decides
that the Server’s IP address should be used for connections.
Modify the Administration Server address in the properties of the Network Agent
installation package
Modify the address in the Network Agent policy
Modify the address in the Administration Server policy
Run the Quick Start wizard again
6. Select the correct statement:
If a computer is included in several groups, a policy is not applied to it
A computer cannot be included in several groups
If a computer is included in several groups, the policy that is higher in the Policies
node is applied to it
If a computer is included in several groups, the policy of the group that is higher in
the list is applied
7. Which of the following Administration Server parameters
cannot be modified without reinstalling Kaspersky Security
Center?
Shared folder location
SQL server address
Administration Server account
Administration Server communication ports
8. How can the administrator enable editing for all settings of
the subgroup's policy? Select all applicable solutions.
A policy of Kaspersky Endpoint Security 11.1 for Windows is configured
for group A. Group A has subgroup B, which contains another policy of
Kaspersky Endpoint Security 11.1 for Windows. The administrator has
noticed that some of the settings cannot be changed in the policy of
subgroup B.
In the policy of group A, exclude subgroup B from the policy scope
Make the group A policy inactive
Clear the "Force inheritance of settings in child policies" check box in the group A
policy
Clear the "Inherit settings from upper-level policy" check box in the group B policy
9. The administrator has deleted a computer account from
Active Directory. When will its record disappear from the "Active
Directory" page of the Administration Console, provided the
computers are discovered with the default settings?
In 60 days
In 7 days
After the next full Windows network poll
After the next Active Directory poll
10. Which components of Kaspersky Endpoint Security for
Windows (11.1.0) can NOT be installed on a server operating
system?
Adaptive Anomaly Control
Behavior Detection
Application Control
Device Control
AMSI Protection provider
Host Intrusion Prevention
11. An administrator of ABC Inc. needs to remotely install
Network Agent and Kaspersky Endpoint Security on five
notebooks, which have different local administrator accounts
and are not on the domain. What would you advise?
Create a single remote installation task and run it five times; change the target
computer and the administrator account every time
Create a single remote installation task and specify accounts of all administrators
there
Create an individual remote installation task for each notebook
12. Which components are NOT available in Kaspersky Endpoint
Security 11.1 for Windows?
BitLocker Management
Web Control
IM Anti-Virus
Windows Integrity Check
Host Intrusion Prevention
13. Which of the following operating systems does Kaspersky
Endpoint Security for Windows (11.1.0) support?
Microsoft Windows XP
Microsoft Windows Vista
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows 10
14. On which editions of Windows Server 2012 can Kaspersky
Security Center 11 Administration Server be installed?
Foundation
Essentials
Standard
Datacenter
None of the above
15. Which of the following operating systems does Kaspersky
Endpoint Security for Windows (11.1.0) support?El número
máximo de respuestas ha sido seleccionado
Microsoft Windows Server 2012 R2 Foundation
Microsoft Windows Server 2012 R2 Essentials
Microsoft Windows Server 2012 R2 Standard
Microsoft Windows Server 2012 R2 Enterprise
Microsoft Windows Server 2012 R2 Datacenter
16. In which cases does the Administration Server update
databases in the installation packages of Kaspersky Endpoint
Security
When the package is created
Daily, after databases are updated in the repository
Every time after databases are updated in the repository
When the administrator clicks the button "Update databases" in the package
properties
17. The administrator has installed Network Agent and
Kaspersky Endpoint Security on a workstation, but has not
moved it to the Managed devices group. What will happen in
that case?
Events will NOT be delivered from the workstation to Kaspersky Security Center,
policies and tasks will NOT be enforced either
Events will NOT be delivered from the workstation to Kaspersky Security Center,
but policies and tasks will be enforced on it
Events will be delivered from the workstation to Kaspersky Security Center, but
policies and tasks will NOT be enforced on it
18. Select the correct statements about tasks in Kaspersky
Security Center:
To make task settings enforced on the computers, the respective locks must be
closed
By default, subgroups’ tasks inherit settings of the parent group’s tasks (as far as
tasks of the same type are concerned)
The administrator can exclude a subgroup from a task’s scope
The administrator can create a task for a set of computers belonging to different
groups
There may not be more than one task for the same application in a group
There are active and inactive tasks
19. Which group tasks and policies does the Quick Start wizard
create on the Administration Server when started from the Web
console?
A policy for Kaspersky Security Center Network Agent
A policy for Kaspersky Endpoint Security for Windows
An out-of-office policy for Kaspersky Endpoint Security for Windows
An Update task for Kaspersky Endpoint Security for Windows
A Rollback task for Kaspersky Endpoint Security for Windows
A ‘Find vulnerabilities and required updates’ task for Network Agent
A Virus Scan task for Kaspersky Endpoint Security for Windows
20. Which of the following operating systems does Kaspersky
Security Center 11 NOT support?
Microsoft Windows XP Pro SP2
Microsoft Windows Vista
Microsoft Windows 7 Ultimate SP1
Microsoft Windows 8 Pro
Microsoft Windows 10 Enterprise
21. Which of the following operating systems does Kaspersky
Endpoint Security for Windows (11.1.0) support?
Microsoft Windows 10 Home
Microsoft Windows 10 Pro
Microsoft Windows 10 Education
Microsoft Windows 10 Enterprise
All of the above
22. How many policies can you create in a single group of
managed devices for Kaspersky Endpoint Security?
1 2
5 at most
One per every version of Kaspersky Endpoint Security
As many as you want
23. Which program types does Kaspersky Endpoint Security
installer consider to be incompatible and try to delete?
Third-party remote management tools (such as TeamViewer, VNC, RemoteAdmin,
etc.)
Third-party backup tools
Third-party firewalls
Third-party antiviruses
24. Which parameters do you need to disable in the policy to
stop Kaspersky Endpoint Security from sending extended
statistical information and files or their parts to the KSN cloud?
Kaspersky Security Network
Use of KSN Proxy
Cloud mode
Extended KSN mode
25. How can you disable the Background scan task on the client
computers?
Clear the "Scan when the computer is idling" checkbox in the policy of Kaspersky
Endpoint Security for Windows, in "Application Settings | Local tasks | Background
scan"
Delete the Background scan task from the list of tasks in the computer’s properties
Delete the Background scan task from the list of tasks in Kaspersky Security Center
26. Which permission is to be given to a trusted process in
Trusted zone of Kaspersky Endpoint Security to make File Threat
Protection NOT scan files that the process accesses?
Special permissions are not necessary, File Threat Protection does not scan any
files accessed by trusted processes
Do not block interaction with the application interface
Do not monitor application activity
Do not scan opened files
27. Consider Kaspersky Endpoint Security 11.1 for Windows.
Which of the following actions can be limited with the help of
password protection configured in the policy?
Delete the key
Uninstall Kaspersky Endpoint Security
Disable the Control components
Stop Kaspersky Endpoint Security service
Exit Kaspersky Endpoint Security
28. Kaspersky Endpoint Security 11.1 for Windows is installed
with the default settings. In which of the following networks are
programs belonging to the "Low restricted" group allowed to
exchange packets?
Trusted networks
Local networks
Public networks
None of the above
29. How will Web Threat Protection scan https traffic under the
default settings if a website uses an EV certificate?
At the first connection, the certificate will be substituted, https traffic will be
scanned. At subsequent connections, the certificate will NOT be substituted, https
traffic will NOT be scanned
The certificate will be substituted, https traffic will be scanned
The certificate will NOT be substituted, https traffic will NOT be scanned
30. Which compound objects does File Threat Protection scan
under the default settings?
Archives
Installation packages
Office files
None
31. Where can you find the list of computers blocked by the
Network Threat Protection component?
In Kaspersky Security Center Administration Console, in the properties of the
attacked computer, in the statistics window of the Kaspersky Endpoint Security for
Windows application
In the local interface of Kaspersky Endpoint Security, in the "Network
Monitor" window that you can open from the "Protection Components" window
In the local interface of Kaspersky Endpoint Security, in the "Network Monitor"
window that you can open via the shortcut menu of the Network Threat Protection
component
32. How does Kaspersky Endpoint Security 11.1 for Windows
protect against ransomware that encrypts files?
It backs up documents and if a document gets encrypted by malware, it restores it
from a backup copy
It automatically brute-forces the key and decrypts the encrypted documents
It heuristically detects encryption attempts and blocks malware
It generates bitcoin cryptocurrency for the ransom in the background
33. Which component of Kaspersky Endpoint Security 11.1 for
Windows except "Web Threat Protection" takes part in
protection against phishing?
File Threat Protection
Mail Threat Protection
Web Control
None of the above
34. Select the correct statements about Web Threat Protection
of Kaspersky Endpoint Security:
It scans data in secure connections (SSL/TLS)
It scans HTTP and FTP protocols
It scans data in inbound connections established from outside
It scans data in outbound connections
35. Which of the following can File Threat Protection of
Kaspersky Endpoint Security 11.1 for Windows do?
Control access to the registry
Scan any files, regardless of the source and interception method
Scan files on drives on demand
Scan files on drives on access
36. What happens when the cloud mode is enabled for the
protection components?
When the cloud mode is enabled for the protection components, Kaspersky
Endpoint Security can send executable and non-executable files or their parts to the
KSN cloud
When the cloud mode is enabled for the protection components, Kaspersky
Endpoint Security sends extended statistical information to the KSN cloud and uses the
full version of anti-virus databases
When the cloud mode is enabled for the protection components, Kaspersky
Endpoint Security uses a lite version of anti-virus databases, but sends more requests
to the KSN cloud
37. Which of the following components of Kaspersky Endpoint
Security 11.1 for Windows does not use the KSN technology?
Network Threat Protection
Web Threat Protection
Exploit Prevention
Virus Scan tasks
File Threat Protection
38. Which component of Kaspersky Endpoint Security 11.1 for
Windows divides applications into 4 groups: "Trusted", "Low
Restricted", "High Restricted", and "Untrusted"?
Exploit Prevention
Behavior Detection
Host Intrusion Prevention
Application Control
39. The administrator of the АВС company needs to prohibit
starting several programs in the network. What is the best way
to achieve this?
In Application Control, select the "White list" mode and create block rules for the
applications whose start is to be prohibited
In Application Control, select the "White list" mode and create allow rules for the
applications whose start is to be prohibited
In Application Control, select the "Black list" mode and create block rules for the
applications whose start is to be prohibited
In Application Control, select the "Black list" mode and create allow rules for the
applications whose start is to be prohibited
40. Consider Kaspersky Endpoint Security 11.1 and Kaspersky
Security Center 11. How can you tell which "KL category" a
particular executable file belongs to?
Consult the "Executable files" repository in the ММС Administration Console
Consult the "Application categories" node in the ММС Administration Console
Consult the Application Activity Monitor in the local interface of Kaspersky Endpoint
Security 11.1
None of the above
41. Which actions can be specified in the Web Control rules of
Kaspersky Endpoint Security 11.1 for Windows?
Test
Warn
Block
Allow
42. Which removable drive access operations can Device Control
allow or block in Kaspersky Endpoint Security 11.1 for Windows?
Device Control cannot block specific removable drive access operations
Delete
Write
Execute
Read
43. Which of the following components of Kaspersky Endpoint
Security 11.1 for Windows can block executable file start?
Adaptive Anomaly Control
Device Control
Host Intrusion Prevention
Application Control
Behavior Detection
44. Which of the following is a known limitation of the Web
Control component in Kaspersky Endpoint Security 11.1 for
Windows?
It can’t block content by data type over an https connection
It can’t block any website accessed over an https connection
It works only with the mainstream web browsers, such as Internet Explorer, Mozilla
Firefox, Google Chrome
None of the above
45. Which parameters of the new Administration Server must be
the same as those of the old one for the clients to be able to
connect successfully?
The computer where Kaspersky Security Center 11 Administration Server
is installed has broken down. The administrator connects another
computer to the network, deploys the Administration Server on it, and
restores data from a backup.
MAC address and default gateway
DNS server address
IP address, NetBIOS name, or DNS name—depending on the connection settings
configured on the clients
None of the above
46. The databases are regularly updated in the repository, but
the group task starts on the client computers only after a
planned synchronization rather than immediately. Why?
Consider a network protected with Kaspersky Endpoint Security 11.1 and
managed through Kaspersky Security Center 11.
There is a group update task scheduled to start "When new updates are
downloaded to the repository".
This schedule is expected to work in this manner by design
A Distribution Point is not assigned to the group
UDP port 15000 is inaccessible on the Administration Server (for example, blocked
by the firewall)
UDP port 15000 is inaccessible on the client computer (for example, blocked by the
firewall)
47. Kaspersky Security Center 11 uses a remote database. To
make a backup copy of all data stored in the database, the
administrator needs to:
Just run the "Backup of Administration Server data" task, everything will be done
automatically
Run the "klbackup.exe" utility on the computer where the database is located
Run the "klbackup.exe" utility on the Administration Server, but with the "–path"
switch
None of the above
48. Consider Kaspersky Security Center 11. Which of the
following conditions can make the backup copying task return
an error on the Administration Server?
The drive where the backup directory is located lacks free space
The "Download updates to the repository" task is running on the server (backup
copying cannot begin until the updating completes)
The database server account has no "Write" permissions for the backup target
directory
The Administration Server account has no "Write" permissions for the backup target
directory
49. How can the administrator start the recovery procedure?
On a computer where Administration Server is installed, the hard drive
has failed and the data has been lost. Fortunately, the administrator has
a backup copy of the Administration Server configuration and data,
which was created by standard tools of Kaspersky Security Center 11.
Use a special utility for backup and restore
Run the “Restore from backup” task in the Administration Console
Use the recovery mode in the Quick Start wizard of the Administration Server
Use the recovery mode in the installation wizard of the Administration Server
50. Which ports must be opened on the server for the client
computers to be able to update successfully?
Consider Kaspersky Security Center 11 and Kaspersky Endpoint Security
11.1 for Windows. The Administration Server is installed with the default
settings and is specified as the update source in group tasks.
TCP port 13000
TCP ports 8060 and 8061
UDP ports 137 and 138, TCP ports 139 and 445
HTTP por
A policy for Kaspersky Security Center Network Agent
A policy for Kaspersky Endpoint Security for Windows
An out-of-office policy for Kaspersky Endpoint Security for Windows
An Update task for Kaspersky Endpoint Security for Windows
A Rollback task for Kaspersky Endpoint Security for Windows
A ‘Find vulnerabilities and required updates’ task for Network Agent
A Virus Scan task for Kaspersky Endpoint Security for Windows
[Show Less]