In a centrally managed environment, while executing the report 'Enterprise Buffer Usage Monitor', a Guardium administrator gets an empty report. Why is the report empty?
A. Sniffers are not running on the Collectors.
B. The report is not executed with a remote source on the Collector.
C. The report is not executed with a remote source on the Aggregator.
D. Correct custom table upload is not scheduled on the Central Manager.
AGuardium environment is set up to send daily reports to users. The users are complaining that their report has not been delivered to their inbox for the past week. What is the first action the Guardium administrator should take in order to diagnose the problem?
A. Open a ticket with IBM Support.
B. Pause the User Portal Sync process.
C. Check in the Aggregation/Archive log.
D. Check in the Scheduled Job Exceptions.
During a Guardium deployment planning meeting, the team decides to deploy all S-TAP agents on all Unix/ Linux database systems. A Unix/Linux system administrator team manager asks a Guardium administrator if there are any differences between Guardium S- TAPs for AIX and Linux systems that the team should be aware of.
What should be the Guardium administrator's response?
A. A-TAP is required on all AIX DB Servers.
B. aserver reboot is required to capture shared memory traffic from all databases on AIX.
C. K-TAP is required on the AIX DB servers. The exact uname -a output is required to determine the correct K-TAP module for the server.
D. K-TAP is required on the Linux DB servers. The exact uname -a output is required to determine the correct K-TAP module for the server.
AGuardium administrator just finished installing the Guardium product to build a Collector. The administrator wants to make sure the Collector has the licenses needed to provide functionality for data activity monitoring, masking and blocking (terminate).
Which of the following lists the minimum licenses the administrator needs to install?
A. Base Collector license.
B. None, the licenses required are already installed automatically by the Guardium product installer.
C. Base Collector license plus IBM Security Guardium Standard Activity Monitor for Databases (DAM Standard).
D. Base Collector license plus IBM Security Guardium Advanced Activity Monitor for Databases (DAM Advanced).
AGuardium administrator is registering a new Collector to a Central Manager (CM). The registration failed. As part of the investigation, the administrator wants to identify if the firewall ports are open-How can the administrator do this?
A. Ask the company's network administrators.
B. Ask IBM technical support to login as root and verify.
C. Login as CLI and execute telnet
D. Login as CLI and execute support show port open
After a successful purge, a Guardium administrator observes that the full percentage of the Guardium internal database is not decreasing. The administrator uses support show db- top-tables all and finds the size of the largest tables has decreased significantly.
What should the administrator do?
A. Increase the retention period and rerun the purge.
B. Rebuild the appliance and restore from the backup.
C. Login to CLI and execute stop inspection-core.
D. Optimize the internal TURBINEdatabase using diag CLI command.
A Guardium administrator is preparing commands to install or upgrade an S-TAP using the command line method. Which operating system can use the ktap_allow_module_combos parameter for the installation and upgrade?
A. AIX
B. Linux
C. Solaris
D. HP-UX
A Guardium administrator needs to build new appliances with the latest version of Guardium. How should the administrator obtain the ISO image?
A. Contact IBM Support.
B. Download fromibm.com
C. Download from IBM Fix Central.
D. Download from IBM Passport Advantage.
The last Vulnerability Assessment tests performed in a company were run one year ago. The company wants to ensure the Vulnerability Assessment tests keep up with the latest database common vulnerabilities. The company wants to use the Guardium default tests instead of customer designed tests. What should the Guardium administrator do to update the tests that will be run?
A. install the latest patch on the Guardium appliance.
B. Install the latest released Database Activity Monitor Content.
C. Ask the database administrators to provide the default tests.
D. Ask the Company Security Provider to supply the default tests
The quard_tap.ini of a UNIX S-TAP is configured with the following parameters:
The administrator must create a policy that will terminate the session on the delete statement in the below scenario:
A session is started to the monitored database from client IP 9.9.8.7. In the session the user plans to perform a select statement and then a delete statement.
What actions should the administrator configure?
A. Rule 1 - S-GATE Attach Rule2 - S-GATE Detach
B. Rule 1 - S-GATE Detach Rule 2 - S-GATE Terminate
C. Rule 1 - S-GATE Attach Rule 2 - S-GATE Terminate
D. Rule1 - S-TAP Terminate Rule 2 - S-GATE Terminate