This Architecture Assessment Trivia Quiz focuses on practical scenarios involving Sophos XG Firewall configurations. It assesses skills in network security, firewall rule management, and system troubleshooting, catering to professionals seeking to enhance their technical expertise in firewall administration.
WEP
WPA
WPA2
Rate this question:
Boot into SF Loader and reset the admin password to default
The device will need to be RMA'd to Sophos
Reset the password from the Sophos website
Reset the password from the MyUTM portal
Sophos can remotely reset the admin password
Use the 'Forgot password' link on the WebAdmin login page
Yes
No
Rate this question:
Set advanced-firewall sys-traffic-nat add destination 0.0.0.0 netmask 0.0.0.0 snatip 10.1.1.45
Set advanced-firewall sys-traffic-nat add destination * snatip 10.1.1.45
Set advanced-firewall sys-traffic-nat add snatip 10.1.1.45
Rate this question:
There was no firewall rule to allow traffic from the LAN zone to another port in the LAN zone
Routing had not been enabled for the bridge pair
ICMP had not been enabled for the LAN zone
Rate this question:
User
Client ID
MAC Address
IP Address
Hostname
Live lookup to Sophos Central
Rate this question:
System dos-config show dos-rules
Show dos-config rules
Dos-config show dos-policies
System show dos-rules
Rate this question:
The WAN interface must have a static IP address
If you lose the unlock code the RED cannot ever be connected to another Sophos XG Firewall
The USB key must never be unplugged from the RED
Rate this question:
Add the IP address of the XG firewall to the split networks
Add the IP address of the access point to the split networks
Add 1.2.3.4 to the remote network list
Configure a split DNS server address
Rate this question:
By reviewing the reverseproxy.log
By performing a packet capture
Enable debug logging and generate a CTR
Using trial and error
Rate this question:
RED notification emails will be sent to this address
You will be sent a confirmation email and have to click a link to complete the process
The unlock codes for REDs will be sent to this email address
Rate this question:
Start a specific service
List all of the services and their current state
Show the state of a specific service
Stop a specific service
Rate this question:
Use SCP to copy the file from the XG Firewall
Send the logs via email
Download them from the WebAdmin
Upload them to an FTP server from the XG Firewall
Rate this question:
YES
NO
Rate this question:
Upload the CTR to the MyUTM site and use the web-based viewer
Use the viewer in the WebAdmin
Use the standalone tool from the Sophos Website
It is encrypted and can only be read by Sophos
Policy Routing Rule
BGP Route
Business Application Rule
Static Route
Rate this question:
Find the SSH key in dropbear.log
This information cannot be found
Check the audit.log
Search in the Log Viewer
Rate this question:
1
2
3
4
5
6
7
Rate this question:
EIGRP
RIP
OSPF
IS-IS
IGRP
BGP
PIM-SM
Rate this question:
Add another NIC to the server and configure Gateway mode with Multi port L3 bridge
Connect another XG Firewall Port to the switch and configure Active-Backup LAG
Connect another XG Firewall Port to the switch and configure 802.3ad LAG
Add another NIC to the server and make L3 bridge with multiple ports
Rate this question:
Turn off Tunnel Compression on all of the RED tunnels between the Host and the remote locations
Add a second virtual XG firewall to the virtual host and move half of the RED connections to it
Disable IPS on any policies not using HTTP
12%
10%
5%
15%
7%
Rate this question:
Enable Path-specific routing and select 'Hot-standby mode'
Web Server Protection cannot do this, you need to use a load-balancing Business Application Rule
Enable 'Sticky Sessions'
Create two separate Business Application Rules, the top one will be the primary
NAT Overlap
NAT Traversal
Route Precedence
VPN Failover
Rate this question:
Use the "system ha active-active off" command
Disable HA and create a new cluster
Change the cluster mode on the primary device
Rate this question:
TCP:443
TCP:3400
TCP:3410
UDP:500
UDP:3400
UDP:3410
Rate this question:
The Zone the access point is in
The country selected when the access point was accepted on the XG Firewall
The number of radios the access point can use at one time
The letter designation after the access point model number
Rate this question:
Disable IPS for the LAN zone to the SERVERS zone
Configure the Local NAT Policy on the firewall
Change the FastPath threshold value
Configure a more appropriate IPS policy for the LAN zone to the SERVERS zone
Adjust the size of the connection tracking database
Turn off Strict Policy on the firewall
Rate this question:
Tcpdump "host 172.16.16.78 and port 6060"
Tcpdump "host 172.16.16.50 and port 5566"
Tcpdump "host 172.16.16.78 and port 6677"
Tcpdump "host 172.16.16.43 and port 6677"
Tcpdump "host 172.16.16.43 and port 5566"
Tcpdump "host 172.16.16.16 and port 6677"
Tcpdump "host 172.16.16.16 and port 6060"
Rate this question:
Malware has not been cleaned up
Malicious traffic to a known C&C server has been detected
Active malware has been detected
The Endpoint Agent is not running
Inactive malware has been detected
A PUA (Potentially Unwanted Application) has been detected
Communications to a known bad host has been detected
Rate this question:
414 UDP
2712 TCP
415 UDP
3148 UDP
443 TCP
Rate this question:
ECDSA
DSA
RSA
SHA2556
DES
AES256
Rate this question:
1
2
3
4
6
8
10
Rate this question:
Configure the heartbeat IP address as a permitted network resource in the VPN profile
Configure the DNS server for the computer to be the XG Firewall
Enable VPN support for the firewall in Sophos Central
Add the WAN port to the permitted network resources for the VPN
Add 'cloud.sophos.com' to the VPN permitted network resourced
Rate this question:
Configure a Local NAT policy
Create a firewall rule and enable 'Rewrite source address'
Enable the 'Default Interface' tab in the ports settings
Create a firewall rule and select the required gateway
Rate this question:
5
6
3
4
1
2
Rate this question:
Authentication Type
Action on VPN Restart
Remote IP Address
Connection Type
Policy
Standard/Split
Transparent/Split
Standard/Unified
Rate this question:
Primary
Auxiliary
Standalone
Rate this question:
True
False
Rate this question:
The agent may not be configured with the collector IP address
The collector may not be configured with the IP address of the branch office XG Firewall and vice versa
The XG Firewall in the branch office may not be configured to allow the Collector in the VPN zone
Rate this question:
The traffic would not have matched a policy route on the LOCAL XG Firewall
The traffic would not have matched a firewall rule on the REMOTE XG Firewall
The traffic would not have matched a policy route on the REMOTE XG Firewall
The traffic would not have matched a firewall rule on the LOCAL XG Firewall
Rate this question:
In the Authentication Template
In the Web Server Protection Policy
In the Path-specific routing
In the firewall authentication methods
In the Web Server Authentication Policy
In the Business Application Rule
In the Authentication Server
Rate this question:
RED 50 Uplink 2 to XG Firewall Hostname 2
RED 50 Uplink 1 to XG Firewall Hostname 2
RED 50 Uplink 2 to XG Firewall Hostname 1
RED 50 Uplink 1 to XG Firewall Hostname 1
Rate this question:
With the command "ipset -D lusers "
Flush the cache for the Authentication Server
Restart the Authentication service in the WebAdmin
Reinstall the STAS software
Rate this question:
Create an antivirus exception for the URL /MEWebMail/Mondo/lang/sys/login.aspx
Enable accept unhardened form data for the URL /MEWebMail/Mondo/lang/sys/login.aspx
Add ID 9 to the filter rule skip list
Add ID 981003 to the filter rule skip list
Create a form hardening exception for the URL /MEWebMail/Mondo/lang/sys/login.aspx
Add ID 981200 to the filter rule skip list
Rate this question:
VPN traffic
ICMP traffic
SNAT TCP traffic
UDP traffic
TCP traffic
VLAN traffic
Rate this question:
The configuration is created on Sophos XG Firewall
The RED can load the configuration from a USB drive
The RED can download the configuration from the provisioning servers
The RED sends a discovery packet to the IP address 1.2.3.4
The RED can be configured using its own web interface
Rate this question:
Quiz Review Timeline (Updated): Aug 5, 2024 +
Our quizzes are rigorously reviewed, monitored and continuously updated by our expert board to maintain accuracy, relevance, and timeliness.
Wait!
Here's an interesting quiz for you.