Massive Summer Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: netdisc

Riverbed 299-01 Riverbed Certified Solutions Professional - Network Performance Management Exam Practice Test

Demo: 36 questions
Total 245 questions

Riverbed Certified Solutions Professional - Network Performance Management Questions and Answers

Question 1

Technologies used for switching traffic between Virtual Machines under ESXi include:

Options:

A.

Traffic between Virtual machines is not switched; it is routed by the standard vRouter included with ESXi

B.

A standard or distributed vSwitch which comes with ESXi must be used, there is not 3rd party software available

C.

A 3rd party virtual switch is required such as the CISCO Nexus 1000v as no standard vSwitch exists with ESXi

D.

The included standard vSwitch of the CISCO Nexus 7000

E.

The included standard vSwitch or the CISCO Nexus 1000v

Question 2

What is a good way to know whether all internal IP addresses seen by the Cascade Profiler have been grouped in a particular group type?

Options:

A.

Run Automatic grouping for all group types.

B.

Configure an Undefined group type with definition 0.0.0.0/0; confirm there are no entries when you 'view members' of this 'Undefined' group'.

C.

There is no way to do this and successfully capture all the IP addresses.

D.

Configure an Undefined group type with definition 0.0.0.0/32.

E.

Run a report by hosts and look for undefined groups.

Question 3

What is a benefit that Cascade Profiler might provide to Security Operations? (Select 3)

Options:

A.

Ability to identify Scanners and Worm Propagations.

B.

Ability to provide information for a firewall rule when a user defined policy is violated.

C.

Ability to alert on security policy (e.g. an insecure policies, such as FTP, is in use).

D.

Ability to identify Worms by name.

Question 4

A SPAN port or Port Mirror differs from RSPAN technology in which way:

Options:

A.

A SPAN port captures traffic locally, an RSPAN captures traffic remotely

B.

A SPAN port captures traffic consistently, an RSPAN captures traffic randomly

C.

A SPAN port captures multiple ports while an RSPAN is "relational" and captures multiple VLANs (Relational LANs)

D.

They are both the same with different terms being used by different vendors

E.

A SPAN port is used on a Switch while a RSPAN is used on a Router

Question 5

On Cascade Profiler, in terms of retention of completed reports and reporting sources (one minute flow and rollup files), which of the following is true? (Select 4)

Options:

A.

One minute flow records are deleted from the file system FIFO (oldest first) once the appliance has filled the space that is allocated.

B.

There is a fixed amount of space on the filesystem for completed reports.

C.

A report template can be marked "keep until I delete it" so that any reports that are scheduled with this template are not automatically deleted from the filesystem.

D.

When the flows or rollup records have been deleted from the filesystem, any saved report that was generated from those flow sources is no longer available.

E.

Users have the ability to allocate additional space to the 1 min flow logs in order to increase retention. This is done at the expense of other rollup resolutions.

Question 6

How many SNMP recipients can receive a single event notification for Cascade Profiler?

Options:

A.

1

B.

2

C.

3

D.

4

E.

5

Question 7

How do I run a report on Cascade Profiler to show all hosts that have talked to server "192.168.1.100" on TCP port 25?

Options:

A.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Server" in the drop down, enter "tcp/25" in the Protocol field and select "Hosts" in the "report-by" pull down.

B.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Server" in the drop down, enter "tcp/25" in the Protocol field and select "Peers Hosts" in the "report-by" pull down.

C.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Client and Server" in the drop down, enter "tcp-25" in the Protocol field and select "Hosts" in the "report-by" pull down.

D.

Under the "Quick Reports" pull down from the dashboard page, select "Host" enter the IP Address and hit return.

Question 8

What does Cascade use as the flow key to identify a unique flow?

Options:

A.

sourceIP, destIP, protocol, sourcePort, destPort, QoS

B.

sourceIP, destIP, protocol, destPort

C.

sourceIP, destIP, protocol, sourcePort, destPort

D.

destIP, protocol, destPort

E.

sourceIP, destIP, protocol

Question 9

If unable to connect to the Cascade Shark Appliance from the Cascade Pilot console it could be becausE. (Select 2)

Options:

A.

The correct communication port(s) are NOT open on the firewall between Cascade Pilot and Cascade Shark.

B.

The Cascade Shark is placed in "passthru" mode so Cascade Pilot access is not available

C.

The Cascade Shark appliance has no capture jobs configured.

D.

You may be running Cascade Pilot-Personal-Edition (PE). You need the full version of Cascade Pilot to connect to Cascade Shark.

E.

Trend/Index data is disabled on the Cascade Shark Appliance.

Question 10

The Cascade Profiler authenticates users before logging them in. What are the possible choices for authentication? (Select 3)

Options:

A.

Cascade Profiler local database

B.

User account specifies authentication by RADIUS

C.

TACACS

D.

RADIUS server to authenticate the user

Question 11

Which of the following configuration changes can be used to reduce the number of alerts generated overall for a Service?

Options:

A.

Edit each Service policy to increase the Tolerance slider for Low and High alerts.

B.

Edit each Service policy and set a noise floor to specify the minimum amount of change that the policy can treat as deviation from normal behavior.

C.

Edit the Service and select fewer metrics to monitor for each segment that comprises the Service.

D.

Modify the location host group type used for monitoring end user traffic to use fewer groups (for example, Region instead of Site).

E.

A, B, C, and D.

F.

A and B only.

Question 12

A packet capture (pcap) file that is loaded into Cascade Pilot for the first time is indexed:

Options:

A.

When the file is opened in Cascade Pilot for analysis.

B.

When the file is imported into Cascade Pilot for analysis.

C.

When the first view is applied to the file.

D.

When "Add Trend Index" is selected from a right-click menu within Cascade Pilot.

E.

When the file is copied onto a Cascade Shark appliance.

Question 13

Cascade Performance analytic event detail reports include multiple tables that are ordered by:

Options:

A.

The client or server that has changed the most (for the table metric) from the baseline (for example, impact).

B.

The top talker (client) that has sent the most data.

C.

The top talker (server) that has sent the most data.

D.

Server Delay so that you can determine if it was a server problem.

E.

Links that are 95% utilized.

Question 14

In order to create an interactive view on Cascade Pilot:

Options:

A.

Select two views from the views panel using control-click then right click on one and select "Create Interactive View" from the drop-down menu.

B.

After a Drill-Down from one view to another, right click on the Drill-Down view in the sources panel and select "Create Interactive View" from the drop-down menu.

C.

Select any item (such as a host IP Address, Port or Protocol name) in the main workspace and right click on the item, then select "Create Interactive View" from the drop-down menu.

D.

Select any view in the views panel, right-click it and select "Create Interactive View" from the drop-down menu.

E.

Open the filters panel, apply an existing or new filter to the view then select "save as interactive view" from the home menu.

Question 15

Which fields are generally available for export using NetFlow technology?

Options:

A.

IP Addresses, Port Numbers, Protocol, TCP Flags, DSCP Marking, number of bits, number of packets, retransmitted bits

B.

IP Addresses, Port Numbers, Protocol, TCP Flags, DSCP Marking, number of bits, number of packets, inbound/outbound interface ID

C.

IP Addresses, MAC Addresses, Port Numbers, Protocol, DSCP Marking, number of bits, number of packets

D.

IP Addresses, Port Numbers, Protocol, Round Trip Time, DSCP Marking, number of bits, number of packets

E.

IP Addresses, Port Numbers, Protocol, Packet Latency, DSCP Marking, number of bits, number of packets

Question 16

What is the minimum number of physical appliances required when building Cascade solution that will collect and process 3.6 million unique (de-duplicated) flows/minute from NetFlow sources?

Options:

A.

11 for the Cascade Profiler, 3 Cascade Gateways

B.

10 for the Cascade Profiler, 3 Cascade Gateways

C.

11 for the Cascade Profiler, 5 Cascade Gateways

D.

10 for the Cascade Profiler, 5 Cascade Gateways

E.

12 for the Cascade Profiler, 4 Cascade Gateways

Question 17

Some common protocols which may be observed on a network with visibility tools are listed below. Match the protocol name with the most common port used.

1. HTTP a) TCP/25

2. HTTPS b) TCP/445

3. HTTPS through a proxy c) TCP/443

4. SMTP d) TCP/80

5. CIFS e) TCP/8080

Options:

A.

1-d; 2-b; 3-c; 4-a; 5-b

B.

1-e; 2-c; 3-d; 4-a; 5-b

C.

1-d; 2-c; 3-e; 4-b; 5-a

D.

1-d; 2-c; 3-e; 4-a; 5-b

E.

1-e; 2-d; 3-c ; 4-b; 5-a

Question 18

Within Cascade Profiler you can set the recipient for policy notifications under Advanced configuration to:

Options:

A.

Log Only, SNMP Only, Email Only, SNMP and Email

B.

Log Only, Default, Owner, or any defined recipient

C.

Log Only, Default, Owner or any User Account

D.

Log Only, Default, Owner or any User Name obtained via the Identity Integration

Question 19

How does Cascade Profiler track Resets?

Options:

A.

TCP Resets are tracked via reading the TCP header on the Sensor.

B.

TCP Resets are tracked by collecting the flag via NetFlow.

C.

Both A and B.

D.

Cascade does not track Resets.

Question 20

WAN optimization reports on Cascade Profiler require that the WAN interfaces for all Steelheads performing optimization are included in a WAN Interface group and are marked as Steelhead interfaces. Which of the following is true?

Options:

A.

If the Steelhead is running a RioS version older than 5.5.3, the Steelhead WAN interfaces need to be manually added, and marked as Steelhead interfaces.

B.

If the Steelhead is running a RioS version 5.5.3 or higher, the Steelhead WAN interfaces are automatically added to the WAN page, but the user must manually mark them as Steelhead interfaces.

C.

If the Steelhead is running a RioS version 6.0.1 or higher, the Steelhead WAN interfaces are automatically added to the WAN page and are also be marked as a Steelhead interface.

D.

All of the above are true.

E.

A and C only are true.

Question 21

A capture job definition on Cascade Shark may includE. (select 3)

Options:

A.

A BPF packet filter

B.

A disk space allocation

C.

Time-based display resolution

D.

Trend/Indexing parameters

E.

Access credential information

Question 22

What is one item for which the analytics license is required?

Options:

A.

The Analytics license is required to generate traffic report.

B.

The Analytics license is required to generate network operation dashboard.

C.

The Analytics license is required to connect CMDB system.

D.

The analytics license is required for the analytics defined as part of a service to begin the initialization process.

Question 23

Cascade is being used to detect application traffic using both Layer 7 fingerprinting technology and Layer 4 mappings. Which statement below best characterizes the priority of traffic being tagged?

Options:

A.

Layer 7 fingerprint matches always take priority over Layer 4 matches.

B.

Layer 4 mappings with a higher priority number take precedence over Layer 4 mappings with a lower priority number.

C.

Layer 4 mappings always take priority over Layer 7 fingerprint matches when the override is set to Unknown/Unclassified.

D.

Layer 4 mappings with a lower priority number take precedence over Layer 4 mappings with a higher priority number when the override is set to Always.

E.

C & D.

F.

A, B & C.

Question 24

Which example, assuming we want the 192.168.1 subnet shown as "Tokyo", shows the correct syntax for setting up this host group under a host group type on Cascade Profiler?

Options:

A.

"192.168.1.0/24 Tokyo"

B.

"Tokyo = 192.168.1.0/24"

C.

"192.168.1.0-192.168.1.255 Tokyo"

D.

"192.168.1.0;255.255.255.0 Tokyo"

Question 25

How many signatures can a Layer-7 Fingerprint have?

Options:

A.

1

B.

2

C.

5

D.

8

E.

10

Question 26

Layer 7 Fingerprints come from which of the following sources:

Options:

A.

Cascade, User Defined, Packeteer, NBAR

B.

Cascade, User Defined, Packeteer, NBAR, Steelhead appliance

C.

Cascade, Packeteer, NBAR, Steelhead Appliance

D.

Cascade, User Defined, Cisco, Netscreen, Steelhead appliance

Question 27

To assure the packet data in a trace clip is preserved from Cascade Pilot, you should:

Options:

A.

Lock the trace clip.

B.

Send the trace clip packets to file.

C.

Detach the trace clip from the capture job trace.

D.

A and B

E.

A, B, and C.

Question 28

Which DHCP Server Product(s) are supported with the Cascade DHCP integration?

Options:

A.

QIP

B.

ISC

C.

Infoblox

D.

Windows DHCP

E.

All of the above

F.

None of the above

Question 29

On Cascade Profiler, Which of the following behavioral analytic policy types are available in CascadE. (Select 3)

Options:

A.

Application performance

B.

Link performance

C.

Host performance

D.

Application availability

E.

Service level performance

F.

Conformance verification

G.

Link congestion

Question 30

What methodologies does the Cascade Profiler use to display MAC address information along with other host information?

Options:

A.

Import DHCP lease files or SNMP polling of switches.

B.

Manually enter MAC address information via the user interface.

C.

The Cascade Profiler cannot display MAC address information.

D.

This information is received via sFlow and/or NetFlow.

E.

MAC address information is stored as part of the information received from Cascade Sensors and Regional Gateways.

Question 31

How many Group Types Can you create on your Cascade Profiler?

Options:

A.

5

B.

20

C.

15

D.

10

E.

Unlimited

Question 32

A strip chart within Cascade Pilot shows data points:

Options:

A.

According to the Cascade Pilot time zone.

B.

According to the time zone of the Cascade Shark to which you are connected.

C.

According to Cascade Pilot time zone or optionally, to the Cascade Shark time zone as well.

D.

According to UTC.

Question 33

Which filter should be used to analyze a capture job within Cascade Pilot?

Options:

A.

Use a BPF filter to speed up the View.

B.

Apply a generic View and then define a filter by drilling-down through a more specific View.

C.

Use a Cascade Pilot filter first and then a BPF filter.

D.

Create a time filter and then apply a View with a Cascade Pilot filter.

Question 34

Cascade Shark can export flow data to a Cascade Profiler. When configuring Cascade Shark, flow export can be configured:

Options:

A.

Per each capture job

B.

Per each trace clip

C.

Per each capture port

D.

Per each capture board/aggregating port

E.

Per each Cascade Shark appliance

Question 35

Time Control within Cascade Pilot is used for:

Options:

A.

Controlling the portion of a packet capture (pcap) file analysed in the current view.

B.

Creating a trace clip from a Cascade Shark appliance Capture job.

C.

Controlling the size of a Capture Job created on a Cascade Shark appliance.

D.

A and B

E.

A, B, and C.

Question 36

What is the purpose of the snmp-server ifindex-persist command in regards to Riverbed Steelhead appliances and Cascade Profiler? (Select 2)

Options:

A.

Guarantees that the ifIndex values for various interfaces remain stable across Steelhead appliance reboots and reconfiguration.

B.

Guarantees that the ifIndex values for various interfaces remain stable across network disruptions preventing re-polling

C.

Guarantees that the ifdescription values for various interfaces remain correctly mapped across Steelhead appliance reboots and reconfiguration.

D.

Guarantees that the ifdescription values for various interfaces are remapped across Steelhead appliance service shutdowns.

Demo: 36 questions
Total 245 questions