Exambible offers free demo for C2150-606 exam. "IBM Security Guardium V10.0 Administration", also known as C2150-606 exam, is a IBM Certification. This set of posts, Passing the IBM C2150-606 exam, will help you answer those questions. The C2150-606 Questions & Answers covers all the knowledge points of the real exam. 100% real IBM C2150-606 exams and revised by experts!
Also have C2150-606 free dumps questions for you:
NEW QUESTION 1
A Guardium policy has been configured with the following two rules:
A Guardium administrator is required to check for SQL statements from client IP 9.4.5.6 executed on object "TABLET.
What domain(s) can the administrator create a report in to see the SQL?
- A. Access
- B. Policy Violations
- C. Access and Access Policy
- D. Access and Policy Violations
Answer: A
NEW QUESTION 2
Simple Mail Transfer Protocol (SMTP) has recently been configured on a Guardium appliance. How can the administrator confirm the configuration is correct? (Select 2)
- A. Restart the Anomaly detection process
- B. Send a test email with CLI diag command
- C. From the GUI Alerter page, test the SMTP connection
- D. Create a query in access domain to see the sent messages
- E. Obtain the syslog file from fileserver and check for SMTP messages
Answer: BC
NEW QUESTION 3
During a Guardium deployment planning meeting, a database administrator indicated that the mission critical databases were clustered. How should the Guardium administrator handle S-TAP installation and configuration with respect to clustered databases?
- A. Install S-TAP agents on all active node
- B. Set ALL_CAN_CONTROL=l to failover the S-TAP process to the passive nodes when a database failover occurs.
- C. install S-TAP agents on all active nodes Set WAIT_FOR_DB_EXEC=-l to set the agent process to failover to the passive node when a database failover occurs.
- D. Install S-TAP agents on all active and passive node
- E. Set ALL_CAN_CONTROL=0 to disable all passive nodes until a database failover occurs.
- F. Install S-TAP agents on all active and passive nodes: Set WAIT_FOR_DB_EXEC>0 on all nodes to start S-TAP processes without waiting for a correct DB home.
Answer: A
NEW QUESTION 4
The quard_tap.ini of a UNIX S-TAP is configured with the following parameters:

The administrator must create a policy that will terminate the session on the delete statement in the below scenario: A session is started to the monitored database from client IP 9.9.8.7. In the session the user plans to perform a select statement and then a delete statement.
What actions should the administrator configure?
- A. Rule l - S-GATE Attach Rule 2 - S-GATE Detach
- B. Rule l - S-GATE Detach Rule 2 - S-GATE Terminate
- C. Rule l - S-GATE Attach Rule 2 - S-GATE Terminate
- D. Rule l - S-TAP Terminate Rule 2 - S-GATE Terminate
Answer: A
NEW QUESTION 5
AGuardium administrator needs to upgrade BUNDLE-STAP on a Linux server to the latest version using GIM. What parameter should the administrator set to ensure the upgrade will not require a reboot of the server?
- A. KTAP_ENABLED=l
- B. KTAP_NO_ROLLBACK=l
- C. KTAP_LIVE_UPDATE=Y
- D. KTAP_ALLOW_MODULE_COMBOS=Y
Answer: C
NEW QUESTION 6
A company is installing S-TAPS on new Database Clusters. The Guardium administrator was provided with the PVU load of each node. The clusters are in active/passive mode. The administrator is associating S-TAPs to Collectors using the PVU count.
How should the administrator treat the PVUs of passive nodes?
- A. include the PVU load of passive nodes.
- B. include half of the passive nodes PVU load.
- C. include a third of the passive nodes PVU load.
- D. Not include the PVU load of passive nodes.
Answer: D
NEW QUESTION 7
The Quick Search window does not show up on the GUI of a standalone Collector What technical feature should the Guardium administrator check first?
- A. That the Collector has at least 24 GB.
- B. That the Collector has at least 32 GB.
- C. That the Collector has at least 64 GB.
- D. Check the contract and verify whether that feature was purchased.
Answer: A
NEW QUESTION 8
During the initial phase of the Guardium deployment, the Guardium administrator wants to figure out an ideal time period to purge data from the appliance based on the data load.
Which predefined Guardium report(s) allows the administrator to determine the current database disk usage of the Guardium Appliance?
- A. Disk UtiI report
- B. Aggregation/Archive log
- C. DB Server throughput report
- D. Buff Usage Monitor and System Monitor reports
Answer: D
NEW QUESTION 9
An infrastructure manager is presented with a few new servers that are available to deploy as a Guardium Collector appliance as part of Guardium project expansion. The Guardium administrator is asked which server option is best for a Guardium Collector.
Which server option can the Guardium administrator use for the new Collector?
- A. ja64 Intel Processor with quad-core CPU, 32GB memory, 4 NICs, 2TB disk
- B. x86_64 Intel Processor with 8-core CPU, 32GB memory, 2 NICs, l TB disk
- C. x86_64 Intel Processor with dual-core CPU, 24GB memory, and 2 NICs, and 200GB disk
- D. Iinuxppc64 Power Processor with 8-core CPU, 24GB memory, and 4 NICs, and 4TB disk
Answer: B
NEW QUESTION 10
A Guardium administrator installed the BUNDLE-STAP module and is monitoring the state of the install. Which state requires a database server reboot to complete the installation process?
- A. Ip
- B. IP-PR
- C. FAILED
- D. PENDING-UPDATE
Answer: B
NEW QUESTION 11
A Guardium administrator needs to monitor an Oracle database on a production database server.
Which component does the administrator need to install on this database server that will monitor the traffic?
- A. S-TAP
- B. Guardium Collector
- C. Guardium Installation Manager (GIM)
- D. Configuration Auditing System (CAS)
Answer: D
NEW QUESTION 12
Which use cases are covered with the File Activity Monitoring feature? (Select two.)
- A. Classify sensitive files on mainframe systems.
- B. Encrypts database data files on file systems based on policies.
- C. Selectively redacts sensitive data patterns in files based on policies.
- D. Provides audit trail of access to files, alert and/or block when unauthorized users or processes attempt access.
- E. Identifies files containing Personally Identifiable Information (Pll) or proprietary confidential information on Linux Unix Windows (LUW) systems.
Answer: AE
NEW QUESTION 13
A Guardium administrator needs to use both CLI and GrdAPI functions to manage the system.
Which are the two commands that the administrator can use to search for the required commands and their syntax from within either CLI or GrdAPI?
- A. CLI: commands <search option> GrdApi: grdapi <search option> --help
- B. CLI: help <search option> GrdApi: grdapi --help <search option>
- C. CLI: commands <search option> GrdAPI: grdapi command <search option>
- D. CLI: <search option> -help GrdApi: grdapi <search option> -help=true
Answer: D
NEW QUESTION 14
An administrator manages a Guardium environment including 4 Collectors exporting data to an Aggregator. The Collectors export their data daily at 2, 3, 4 and 5 am Eastern Standard Time (EST) respectively. The Collectors receive traffic every day. The logs on all the Collectors confirm data is exported daily without errors, and all the exported files always have dat A Session report is run on the Aggregator at noon EST for data from the last day. Which of the following will ensure there is data in the report?
- A. Schedule Data Purge on the Aggregator to run every day after 5 am EST.
- B. Schedule Data Import on the Aggregator to run at any time of the day.
- C. Schedule Data Import in the Aggregator to run every day before 2 am EST.
- D. Schedule Data Import on the Aggregator to run every day at 6 am EST or later.
Answer: C
NEW QUESTION 15
Guardium reports are showing multiple records with client ip as 0.0.0.0. Users are unable to identify which client the connections came from. The Guardium administrator has identified that the databases are using encryption.
Which column can the administrator add that would help users to better identify the client?
- A. Client OS
- B. Client MAC
- C. Access ID
- D. Analyzed Client IP
Answer: B
NEW QUESTION 16
A Guardium administrator manages portal user synchronization by using a Central Manager.
When a change is made on the Central Manager such as, for example, adding a Guardium user to a Guardium group, how long should be allowed for the update to be synced with the managed units in a fully working environment?
- A. 0 minutes
- B. l5 minutes
- C. 30 minutes
- D. 60 minutes
Answer: D
NEW QUESTION 17
A company wants to deploy S-TAPs for 2 groups of database servers located in 2 different data centers. The current set of Collectors are fully utilized. The Aggregators and Central Manager can handle more load.
What should a Guardium administrator recommend?
- A. Deploy 2 new Collectors, l in each data center.
- B. Connect S-TAPs directly to Aggregators to avoid network latency.
- C. Connect S-TAPs directly to the Central Manager to avoid network latency.
- D. Deploy 2 new Collectors in the third data center located in between the 2 data centers.
Answer: A
NEW QUESTION 18
A Guardium administrator is planning to build an environment that contains an S-TAP with one primary Collector and one failover Collector. What must the administrator ensure when setting up this environment?
- A. Both Collectors are centrally managed.
- B. There is network connectivity between the S-TAP and both Collectors.
- C. Guardium Installation Manager (GIM) is installed on the Database Server.
- D. in the guard_tap.ini file of the S-TAP set participate_in_load_balancing=l
Answer: B
NEW QUESTION 19
A Guardium administrator is creating a policy to alert on actions by users that are stored on an LDAP server. How can the administrator populate a group to use in the policy?
- A. Schedule the LDAP user import into the group.
- B. Schedule the LDAP user import from accessmgr and run portal user sync.
- C. Schedule the LDAP user import from accessmgr and populate the group from a query.
- D. Populate the group from a query in access domain with a condition on the LDAP server as the Server IP.
Answer: C
NEW QUESTION 20
AGuardium administrator is registering a new Collector to a Central Manager (CM). The registration failed. As part of the investigation, the administrator wants to identify if the firewall ports are open-How can the administrator do this?
- A. Ask the company's network administrators.
- B. Ask IBM technical support to login as root and verify.
- C. Login as CLI and execute telnet <ip address> <port number>
- D. Login as CLI and execute support show port open <ip address> <port number>
Answer: D
NEW QUESTION 21
A Guardium administrator noticed that while the data activity monitoring is working fine, the Guardium appliance is slower than usual. The administrator wants to check the current CPU load of the Guardium appliance.
Which predefined Guardium report(s) allows the administrator to determine the current system CPU load of the Guardium Appliance?
- A. CPU Util report
- B. CPU Tracker report
- C. Unit summary and CPU Util report
- D. Buff Usage Monitor and System monitor report
Answer: D
NEW QUESTION 22
A Guardium administrator plans to use the Guardium Installation Manager (GIM) to install and upgrade agents. Where should the administrator manually install the GIM client for the first time?
- A. Collector
- B. Aggregator
- C. Database server
- D. Central Manager
Answer: C
NEW QUESTION 23
A Guardium administrator needs to check the traceroute information between one appliance and its Central Manager. Which CLI command should the administrator run?
- A. iptraf
- B. support show iptables
- C. show network routes operational
- D. support must_gather network_issues
Answer: D
NEW QUESTION 24
......
100% Valid and Newest Version C2150-606 Questions & Answers shared by Dumps-files.com, Get Full Dumps HERE: https://www.dumps-files.com/files/C2150-606/ (New 55 Q&As)