Which of the following protocols cannot be blocked or monitored by McAfee DLP 'Network Communication Protection Rules'?
A. Secure FTP (SFTP)
B. Secure Copy (SCP)
C. Server Message Block/NetBIOS (SMB)
D. Secure Shell (SSH)
How can remote users who are not connected to the corporate network be protected?
A. Enable online reactions within protection rules
B. Enable location-aware rules for offline users
C. Add local users to user assignment groups
D. Enable offline reactions within protection rules
An organization's call center uses shared computers for 24x7 operations. Shifts are staffed by employees and contractors. As part of established business processes employees are authorized to use removable storage devices while contractors are prohibited from using these types of devices. To create flexible Removable Storage Device Rules which type of policy assignment can the DLP Endpoint Administrator configure?
A. Computer Assignment Group policy
B. Local Users policy
C. User Assignment Group
D. Privileged Users policy
Which Corporate Security Policy affects the Evidence Share and ePO Database size and growth?
A. Acceptable Use Policy
B. Access Control Policy
C. Data Retention Policy
D. Risk Management Framework
What rule is used to monitor protected file transfer to network shares?
A. Network Communication Protection Rule
B. Network Share Protection Rule
C. File System Protection Rule
D. File System Discovery Rule
A manufacturing organization needs to protect the transfer of sensitive design documents by prohibiting write access to USB devices. They do not want to limit their employee's ability to read files from these devices. To meet the organization's requirement, which type of rule can be implemented?
A. Plug and Play Device Rule
B. Removable Storage Protection Rule
C. Removable Storage Device Rule (supports Mac)
D. Removable Storage File Access Rule
An executive sends merger documents to legal counsel. Policy dictates the documents should be encrypted, but they are being sent in plain text. What is the appropriate action to configure in such a case using DLPe protection rules?
A. Monitor the activity using a File System Protection Rule, store the evidence and notify the user.
B. Verify the violation and send an alert to the administrator.
C. An Email Protection Rule should be used to block the email unless the documents are encrypted.
D. Do nothing.
What result types are supported in a McAfee DLPe query?
A. Properties and Events
B. Roles and permissions
C. User data
D. Protection status
Which of the following is a potential indicator of an issue with the DLP Endpoint client?
A. Multiple FCAGTE processes are present in the Task Manager
B. Multiple FCAG processes are present in the Task Manager
C. FCAGSD process is present in the Task Manager
D. FCAGTE is running as a user instead of the System account in the Task Manager
There is a known virus spreading using removable media; What action should be taken to mitigate this risk?
A. Monitor all removable media devices
B. Enable McAfee endpoint encryption controls
C. Block all removable media devices
D. Make plug and play devices read only