Act now and download your IBM C2150-201 test today! Do not waste time for the worthless IBM C2150-201 tutorials. Download Rebirth IBM Fundamentals of Applying IBM Security Systems Identity and Access Assurance exam with real questions and answers and begin to learn IBM C2150-201 with a classic professional.


♥♥ 2021 NEW RECOMMEND ♥♥

Free VCE & PDF File for IBM C2150-201 Real Exam (Full Version!)

★ Pass on Your First TRY ★ 100% Money Back Guarantee ★ Realistic Practice Exam Questions

Free Instant Download NEW C2150-201 Exam Dumps (PDF & VCE):
Available on: http://www.surepassexam.com/C2150-201-exam-dumps.html

Q11. A customer has Security Identity Manager configured in the environment. The customer wants to customize the Security Directory Server (SDS) schema to add some custom attributes in the HR feed due to the requirement from Security team while adding a new user in the organization. 

What is the recommended approach? 

A. Create new LDAP attributes and add them to the inetOrgPersonobjectclass 

B. Create new LDAP attributes and add them to the base person class (erPersonItem) 

C. Create a new object class, add the new attributes to it and register it as a person entity in ISIM 

D. Map the new attributes to unused person attributes and edit the CustomLabels.properties file to reflect new names 

Answer:


Q12. A company has a full deployment of the IBM Security Identity and Access Assurance software bundle. 

IBM Security Access Manager for Web is configured to use IBM Directory Server as user repository. IBM Security Access Manager for Enterprise Single Sign-On is integrated with Microsoft Active Directory. IBM Security Access Manager for Web is also protecting access to the IBM Security Identity Manager Self-Service and Console web portals. IBM Security Identity Manager is using IBM Directory Server as directory store and IBM DB2 as database store. HR feed is configured through IBM Security Directory Integrator polling the HR system's database. 

Employees of this company, acting as Identity Provider in a circle of trust setup with the company as Service Provider, can no longer successfully access the B2B web portal of this company. 

Which knowledge would be required to troubleshoot this problem? 

A. Federation Administration, Windows Administration, Web Server fundamentals, and networking fundamentals 

B. Windows Administration, LDAP Administration, Web Server fundamentals, and knowledge of ISAM ACL policies 

C. Knowledge of ISAM ACL policies,Websphere fundamentals, Windows Administration, and Federation Administration 

D. Websphere fundamentals, Federation Administration, knowledge of ISAM ACL policies, and networking fundamentals 

Answer:


Q13. A company is using IBM Security Access Manager and wants to extend the functionality of the help desk users so that they can assist the end user in troubleshooting and diagnostics. 

Which WebSEAL functionality is used to allow help desk users to assume the identity of the user who is a member of the Security Access Manager Domain? 

A. Switch User function 

B. Switch Admin function 

C. Transfer User function 

D. Switch Application function 

Answer:


Q14. What is a pre-requisite when planning an IBM Security Access Manager for Enterprise Sign-On implementation? 

A. The customer environment should contain one or more AIX servers. 

B. Users must use only Windows desktops or laptops to access applications. 

C. IBM Security Identity Manager must already be deployed in the environment. 

D. Active Directory or a generic LDAP server must be available for user validation. 

Answer:


Q15. You are designing a network topology for IBM Security Web Gateway Appliance. The customer is using the appliance. 

Where do you place the appliance? 

A. Office LAN 

B. Demilitarized zone (DMZ) 

C. Dedicated security network 

D. General-purpose application network 

Answer:


Q16. A customer has a requirement which is currently unavailable in an out-of-the-box product. 

Who would be able to assist in troubleshooting the customer when developing a custom solution? 

A. IBM Sales 

B. IBM Support 

C. IBM LAB Services 

D. Raise an enhancement request with IBM 

Answer:


Q17. A company wants a high-performance system for collecting, analyzing, archiving and storing large volumes of security event logs. 

Which IBM product will satisfy this need? 

A. IBM Security Identity Manager 

B. IBM Security Directory Server 

C. IBM Security Access Manager 

D. IBM Security QRadar Log Manager 

Answer:


Q18. A company is looking for load distribution/failover option for LDAP authentication. 

Which product is recommended to satisfy the need? 

A. IBM Security Directory Server Proxy 

B. IBM Security Federated Identity Manager 

C. IBM Security Access Manager Proxy Policy Server 

D. IBM Security Access Manager for Enterprise Single Sign-On 

Answer:


Q19. In the customer's environment, a group of seven employees work within a room that has four PCs. The PCs have excellent hardware configurations, with considerable RAM and a fast CPU. 

The employees use these PCs only when they need to access an application, which is for a short duration of time. For the rest of the time, they work with their tools on their desks. 

Which IBM Security Access Manager for Enterprise Single Sign-On session management configuration would be used for three PCs for optimum performance? 

A. Citrix workstation 

B. Personal workstation 

C. Shared workstation, private desktop 

D. Shared workstation, shared desktop 

Answer:


Q20. A customer is using Microsoft Active Directory to manage access to all the applications in the organization. When an employee joins the organization, in order to set up his/her access to the applications through Active Directory, as a regular practice, the administrator would clone the Active Directory permissions from an existing employee in the same job role and assign it to the new employee. Over the years, employees have been changing their job roles within the organization. Whenever a job role change occurs, the same practice of cloning the access from an existing employee in the new job role is followed. As the AD permissions are cloned, the existing permissions for the employee changing the job role are not removed. 

What is the potential problem and solution for this customer? 

A. As the existing access is never cleaned up when an employee changes job roles and new access is assigned as per the new job role, many employees may be violating SoD policies. This problem can be identified and addressed by deploying IBM Security Access Manager and designing specific SoD policies. 

B. An annual revalidation of access will require a lot of manual effort in validating required access for an employee based on his/her job role. Also to maintain compliance, any access associated with the previous job role needs to be revoked. This problem can be addressed by deploying IBM Security Identity Manager to implement a Role Based Access Control (RBAC) model and automate role revalidation. 

C. An annual revalidation of access will require a lot of manual effort in validating required access for an employee based on his/her job role. Also to maintain compliance, any access associated with the previous job role needs to be revoked. This problem can be addressed by deploying IBM Security Access Manager to implement a Role Based Access Control (RBAC) model and automate role revalidation. 

D. An annual revalidation of access will require a lot of manual effort in validating required access for an employee based on his/her job role. Also to maintain compliance, any access associated with the previous job role needs to be revoked. This problem can be addressed by deploying IBM Security Access Manager to manage fine grained access on Active Directory, implement Single Sign-On and automate role revalidation. 

Answer: