Black Friday Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: buysanta

Exact2Pass Menu

Question # 4

If a Steelhead appliance is configured for logical in-path mode:

A.

The Primary interface cannot be on the same subnet

B.

The LAN In-path interface will be disabled

C.

The WAN In-path interface will be disabled

D.

The Steelhead appliance listens for the Interceptor on TCP port 7860

Full Access
Question # 5

In a serial cluster deployment of Interceptor appliances, which interfaces are connected from one Interceptor appliance to another Interceptor appliance assuming they are connected back to back?

A.

LAN0_0 to LAN0_1

B.

WAN0_0 to WAN0_0

C.

WAN0_0 to LAN0_0

D.

LAN0_0 to LAN0_0

Full Access
Question # 6

A customer's network consists of a data center with an Interceptor appliance and a Steelhead appliance cluster and several remote sites each with Steelhead appliances.

You would like to pass-through an application unoptimized due to a suspected problem and are provided the following information:

The application uses a static TCP port, 15000.

The application is initiated from the remote site machines.

The same servers which host the application host several other applications as well.

Based on the information provided which option will allow the application to pass-through:

A.

Configure in-path rules on the Interceptor appliance to pass-through destination TCP port 15000

B.

Configure in-path rules on the data center Steelhead appliances to pass-through the server IP addresses

C.

Configure a peering rule on the Interceptor appliance to pass-through destination TCP port 15000

D.

Configure a load-balancing rule on the Interceptor appliance to pass-through destination TCP port 15000

E.

Stop the Interceptor appliance service

Full Access
Question # 7

Company X has many offshore oil rigs they want to bring optimization to. The only available connection is through a satellite that has frequent bursts of packet loss. There are very few users per rig and HTTPS-based SharePoint performance is so poor they often time out pulling down even a small file. CIFS often does not work at all. They are considering the Steelhead Mobile solution to solve this problem. You suggest they deploy a Steelhead in-path at the data center and:

A.

Steelhead Mobile with FEC turned on to help with lossy links

B.

Steelhead Mobile with HS-TCP configuration

C.

Steelhead Mobile running MX-TCP to deal with the loss

D.

Deploy Steelhead appliances with MX-TCP to deal with the loss

E.

Deploy Steelhead appliances with HS-TCP, Window Scaling, fixed-target rules, and TCP New Reno to overcome the loss

Full Access
Question # 8

On the Steelhead Mobile Controller, what is the default setting of Reorder Intermediate Drivers?

A.

Enabled

B.

Disabled

C.

Offline

D.

Online

E.

Checked

Full Access
Question # 9

What is the default In-path rule on an Interceptor appliance?

A.

Optimize All

B.

Pass-through All

C.

Auto All

D.

Redirect All

Full Access
Question # 10

When deploying a Virtual Steelhead appliance, how much extra memory should be allocated for the extra VMware overhead?

A.

3%

B.

4%

C.

5%

D.

10%

E.

2%

Full Access
Question # 11

What are two types of Load Balancing rules on an Interceptor appliance?

A.

Auto, Drop

B.

Redirect, Pass-through

C.

Allow, Deny

D.

Auto-Balance, Auto-Terminate

Full Access
Question # 12

How is peer affinity reset in the CLI for an Interceptor appliance cluster?

A.

“peer affinity reset” on all Interceptors

B.

“neighbor reset” on all Steelheads

C.

“service restart” on all Interceptors

D.

“neighbor reset” on all Interceptors

Full Access
Question # 13

Regarding the registering of Steelhead appliances,

A.

Local appliances (on the same IP subnet) are automatically registered every time because their 10-byte probe is intercepted by the CMC appliance

B.

Remote appliances are registered when a fixed-target rule is applied to the appliance directing it to the CMC appliance

C.

Remote appliances are registered by proxy via the server-side Steelhead appliance

D.

Remote appliances are registered manually when they have not auto-registered with the CMC appliance

E.

Local appliances can only be registered manually, since fixed-target rules may only be applied to remote Steelhead appliances

Full Access
Question # 14

A SteelHead is deployed in a VLAN bridge. Which VLAN ID should be configured on the in-path interface to support this environment?

A.

1

B.

100

C.

200

D.

No configuration is necessary as LAN and WAN interfaces are on access ports

E.

It will require an in-path interface for each VLAN

Full Access
Question # 15

When troubleshooting a datastore wrapping alarm with 1 day wrapping notification configured, which of the following should be examined? (Select 2)

A.

If the unit was mis-sized

B.

If stream based encrypted traffic is being sent across the link as optimized

C.

If your fixed-target rules are pointing to the correct Steelhead appliance

D.

If Connection Forwarding was properly configured

Full Access
Question # 16

After a new physical in-path installation, all applications appear to be slower. Adding a pass-through rule does not seem to fix the problem. Which of the following is the most likely cause of the problem?

A.

Duplex mismatch

B.

Firewall blocking auto-discovery probes

C.

No fixed-target rules installed

D.

A and C

E.

A, B, and C

Full Access
Question # 17

A server-side logical in-path deployment is shown in the exhibit. Additionally, SH12 is configured with a fixed-target rule pointing to SH11. The client behind SH12 will not be able to establish a connection to SERVER1 as a logical loop will occur when the number of optimized connections in SH11 has reached the maximum system limit.

What is the best way to resolve this issue?

A.

Use the largest Steelhead appliance model

B.

Enter the “in-path loopguard enable” command

C.

Use more than one Steelhead appliance

D.

Limit the number of TCP connections to be optimized

E.

Put SERVER1 in a different subnet from SH11

Full Access
Question # 18

What is the default trap severity for system messages?

A.

Debugging

B.

Informational

C.

Notice

D.

Warning

Full Access
Question # 19

In the Interceptor appliance version 3.0 and later the command to enable cluster failover is:

A.

failover-peer enable.

B.

Interceptor appliance communication allow-failure enable.

C.

Interceptor appliance failover enable.

D.

Enable interceptor appliance peer failover.

Full Access
Question # 20

The IP address for which neighbor interface should be configured for Connection Forwarding?

1) lan0_0

2) inpath0_0

3) Primary

4) AUX

5) inpath7_7

A.

1

B.

2

C.

1, 5

D.

2, 3, 4, 5

E.

1, 2, 3, 4, 5

Full Access
Question # 21

When upgrading from Steelhead EX v1.0 to Steelhead EX v2.0, what happens to existing VM slots on the appliance?

A.

The VM slots are immediately available as enabled VMs.

B.

The VM slots need to be manually added by managing VSP using the VMware vSphere client.

C.

The VM slots need to be manually added by using the VNC console access provided within Steelhead EX v2.0.

D.

The VM slots need to be manually converted to the new format using the tools available in the Steelhead EX Web UI.

Full Access
Question # 22

A customer wants to optimize traffic from remote VPN sites to DMZ servers in the data center shown in the accompanying exhibit.

The customer would also like to deploy their data center Steelhead appliance in a way that would allow them to keep transparency to the LAN servers, and allow the LAN servers to initiate optimized connections to remote sites. The current network architecture can satisfy these requirements by using which following deployment method?

A.

In-path

B.

Out-of-path

C.

WCCP/PBR

D.

Hybrid Mode

E.

C and D

Full Access
Question # 23

Which of the following methods can be used to reduce the load on a router configured to use outbound interface WCCP redirection? (Select 3)

A.

Using inbound interface redirection instead

B.

Use fixed-target rules and remove WCCP on the WAN facing interfaces

C.

Use Redirect lists to control what traffic gets redirected

D.

Use the router command “load interval 30” to restrict WCCP to use 30% of the CPU

E.

Use Event Element Manager (EEM) to load balance between a clustered Steelhead appliance deployment

Full Access
Question # 24

Place the following commands to upgrade a Steelhead appliance from the CLI in the correct order. (NotE. include only the necessary steps)

1) SH (config) image install image.img 2

2) SH (config) image fetch http://server/path/image.img

3) SH (config) boot system 2

4) SH (config) restart clean

5) SH (config) reload

6) SH (config) write memory

A.

1, 2, 3, 4, 5, 6

B.

2, 3, 5, 1, 6

C.

1, 2, 5, 4

D.

2, 1, 3, 6, 5

E.

1, 2, 3, 6, 5

Full Access
Question # 25

In an implementation using a 4-port card, which interface could be used as the Connection Forwarding neighbor? (Select 2)

A.

Primary

B.

AUX

C.

inpath0_0

D.

inpath0_1

Full Access
Question # 26

Refer to the exhibit.

In order to achieve optimization using auto-discovery for traffic coming from site C and destined to site A in the exhibit, which configuration below would be required?

A.

In-path fixed-target rule on site B Steelhead appliance pointing to Site A Steelhead appliance

B.

Peering rule on site B Steelhead appliance passing through probes from site C

C.

Peering rule on site B Steelhead appliance passing through probe responses from site A

D.

Both A and C

E.

Both B and C

Full Access
Question # 27

When using Correct Addressing, without Enhanced Auto-discovery (EAD), what is the size of the probe response in the return SYN/ACK packet from the server-side Steelhead appliance?

A.

4 bytes

B.

10 bytes

C.

14 bytes

D.

18 bytes

E.

32 bytes

Full Access
Question # 28

What is the process for dropping the connection of an individual user that is currently being optimized? As an example, consider an HTTP connection being optimized with a local address of 192.168.5.10 and remote address of 192.168.5.90. (Select 2)

A.

From the GUI, under Connections, select the connection and click on the Reset button

B.

From the GUI, under Connections, select the connection and click on the Drop button

C.

From the CLI: tcp connection send reset local-only local-addr 192.168.5.10:9999 remote-addr 192.168.5.90:80

D.

From the CLI: tcp connection send reset remote-only local-addr 192.168.5.10 local-port 7800 remote-addr 192.168.5.90 remote-port 80

E.

From CLI: tcp reset user 192.168.5.10

Full Access
Question # 29

How do you clear the peer affinity information from an Interceptor?

A.

Issue the clear affinity command

B.

Restart the service

C.

Clear the fair peering flag

D.

Pause the Interceptor

Full Access
Question # 30

On the Interceptor appliance, the Networking > Steelheads page displays which of the following?

A.

Optimized connections, Admission Control connection count.

B.

Optimized connections, Pass-through connections count.

C.

Current Connections per Second (CPS), Admission Control count.

D.

Packets per Second, Connections per Second, Optimized connections count.

Full Access
Question # 31

To prevent possible denial of service attack, such as TCP SYN flooding, which of the following features could be used?

A.

No TCP SYN Flooding

B.

Connection limit per source IP

C.

Limit UDP traffic

D.

Run Deep Packet Inspection on all traffic

E.

Run Deep Packet Inspection on TCP traffic only

Full Access
Question # 32

The default setting for “allow failure” in the Interceptor appliance version 2.0 is: (Select 2)

A.

Is configurable

B.

Is not configurable

C.

Enabled by default

D.

Disabled by default

Full Access
Question # 33

In the exhibit,

Client41 and Client42 have full access to the HTTP and FTP services provided by Server31 and Server32 respectively. They continue to have access to these servers after SH3 and SH4 are deployed. A quick check on SH3 and SH4 registers the connections from Client41 and Client 42 as pass-through traffic. Note that SH3 and SH4 are in auto-discovery mode. What are the likely causes? (Select 2)

A.

Pass-through rules are specified in the Steelhead appliances to bypass TCP traffic from Client41 and Client42

B.

Deny rules are specified in the Steelhead appliances to bypass IP traffic from Client41 and Client42

C.

There is a firewall inside the WAN cloud which strips the TCP options field

D.

There is a firewall inside the WAN cloud which strips the IP options field

Full Access
Question # 34

Refer to the exhibit.

Traffic going from Corp-A-DC-2 towards Corp-B will always use Link-1. Traffic from Corp-B back to Corp-A-DC-1 may traverse Corp-A-DC-1, over the GigaMAN before it reaches Corp-A-DC-2. No TCP connections are initiated from Corp-B to either Corp-A-DC-1 or Corp-A-DC-2. Unfortunately, the customer does not have any money to purchase any additional Steelheads. What are some possible fixes to ensure optimization occurs while Link-1 is operational? (If Link-1 ceases to function, optimization is not possible.) (Select 2)

A.

Configure a fixed-target rule on the Corp-A-DC-2 Steelhead pointing to the Corp-B Steelhead on port 7800

B.

On the Corp-B Steelhead, enable “in-path probe direct”

C.

On the Corp-A-DC-2 Steelhead, enable “in-path probe direct”

D.

Configure the Corp-A-DC-2 Steelhead to inject a route into the network

E.

Enable Full Transparency

Full Access
Question # 35

Which two of the following attributes are required to be added to a TACACS+ server to enable monitor and admin logon access to the CMC appliance via TACACS: (Select 2)

A.

service = rbt-exec {local-user-name = "monitor"}

B.

service = wan-accel {local-user-name = "monitor"}

C.

service = rbt-exec {local-user-name = "admin"}

D.

service = wan-accel {local-user-name = "admin"}

E.

service = rbt-exec {local-user-name = "su"}

Full Access
Question # 36

What types of operations can be observed under the Manage > Operation History page in the CMC Management Console? (Select 2)

A.

push

B.

link

C.

abort

D.

fetch

Full Access
Question # 37

To increase the high availability of a site at a remote office, you decided to install a second Steelhead appliance as an active/active serial cluster. However, after installing the second Steelhead appliance at the remote site, users started complaining about slow access to the data center. You have verified that this is not a duplex issue. At the data center location all users access the Internet which pass-through the Steelhead appliances. What is the most likely problem?

A.

SMB Signing

B.

Oplock issue

C.

The serial cluster Steelhead appliances are peering to each other

D.

Simplified routing was enabled on the secondary Steelhead appliance

E.

The datastore on the Steelhead appliances are wrapping

Full Access
Question # 38

While looking at the Current Connections page on a client-side Steelhead, you noticed that there is more CIFS traffic on the WAN than on the LAN for some connections. What may be the problem?

1) The source data is compressed or encrypted

2) File server not located on the same subnet as the server-side Steelhead

3) The Steelhead is counting both CIFS optimized and unoptimized traffic

4) CIFS read-ahead

5) CIFS write-behind

A.

1, 4

B.

4, 5

C.

1, 2, 3

D.

1, 2, 5

E.

3, 5

Full Access
Question # 39

The port used by the Steelhead appliance for datastore synchronizations is:

A.

7801

B.

7810

C.

7744

D.

7850

Full Access
Question # 40

What can be monitored via the CMC appliance? (Select 2)

A.

Currently logged in users to Steelhead appliances or the CMC appliance

B.

Command history per CMC appliance user

C.

Rogue Steelhead appliances on the network

D.

Current connections for an individual Steelhead appliance

Full Access
Question # 41

What is the default CMC appliance name resolved by the Steelhead appliance for initial configuration?

A.

cmc-riverbed

B.

riverbed-cmc

C.

cmc.riverbed.nbttech

D.

riverbed.cmc

E.

riverbedcmc

Full Access
Question # 42

Refer to the exhibit.

In the accompanying exhibit, SH3 and SH4 are able to optimize FTP and HTTP sessions between Client41 and the respective application hosts Server31 and Server32. However, optimization does not happen for Client42 and these application hosts. A quick check on SH3 and SH4 registers neither optimized nor pass-through traffic from Client42. Client42 is able to ping Client41 and the in-path address of SH4. Note that SH3 and SH4 are in auto-discovery mode. What is the likely cause?

A.

The default gateway of Client41 is configured wrong

B.

The default gateway of Client42 is configured wrong

C.

The default gateway of SH3 is configured wrong

D.

The default gateway of SH4 is configured wrong

E.

The routing protocol between R3 and R4 is configured wrong

Full Access
Question # 43

Which of the following is NOT supported in Alarm Settings?

A.

Raise alarm when network interface duplex errors are detected

B.

Raise alarm when network interface link errors are detected

C.

Raise alarm when the number of optimized connections exceeds user specified limit

D.

Raise alarm if a software version mismatch is detected in the network

E.

Raise alarm when asymmetric routes are detected

Full Access
Question # 44

A version 9 SteelCentral Controller for SteelHead (SCC) connects to managed appliances using which protocols?

A.

SNMP

B.

SSH and HTTPS

C.

SSH and API access

D.

SSH only

E.

SNMP and SSH

Full Access
Question # 45

You see errors such as the following in the SteelHead messages log “error=SMB_SHUTDOWN_ERR_SEC_SIG_ENABLED”. What do these indicate?

A.

SMB signing has been detected on SMB sessions which the SteelHead attempted to optimize, but SMB signing is not configured on the SteelHeads.

B.

The SteelHeads are configured to carry secure traffic over SSI and the inner channel failed to establish.

C.

The optimization service encountered an error, and the SMB blade has been shut down.

D.

The SteelHead encountered a kernel error and was forced to shut down.

E.

The server send a secure signal to terminate an optimized SMB session.

Full Access
Question # 46

What is the purpose of ‘Peer Affinity’ on the Interceptor?

A.

To keep similarly sized SteelHead models peering with each other.

B.

To ensure load is distributed evenly throughout the cluster.

C.

To maximize the benefits of SDR by maintaining SteelHead peering relationships.

D.

To ensure asymmetrically routed connections are optimized.

E.

To make sure cluster SteelHeads remain connected to the same Interceptor.

Full Access
Question # 47

-- Exhibit –

-- Exhibit --

Refer to the exhibit. A Steelhead administrator has recently decided to implement two Interceptor appliances and one Steelhead appliance on his data center. After configuring the Interceptor, he noticed they are not forwarding traffic to the Steelhead. Why? (Select 2)

A.

The Steelhead appliance was not added into the Interceptor appliance configuration.

B.

The Interceptor appliance was not added into the Steelhead appliance "add an IC" option on the Steelhead appliance config.

C.

The Interceptor appliance was not added as a connection forwarding neighbor on the Steelhead appliance.

D.

The Steelhead appliance is down.

Full Access
Question # 48

A customer has recently implemented data store synchronization. The SteelHeads are reporting “Duplicate data store id.” What is the probable cause?

A.

The SteelHeads are in a serial deployment with no peering rules set in order to avoid peering with each other.

B.

The data store sync has been configured without restarting the services.

C.

The SteelHeads are in a parallel deployment and have not bad connection forwarding enabled.

D.

SteelHead Mobile has been implemented without increasing the peer table on the Server Steelhead.

E.

The SteelHeads syncing their data stores are running different versions of RiOS.

Full Access
Question # 49

-- Exhibit –

-- Exhibit --

Refer to the exhibit. According to the packet capture, what statements are true? (Select 2)

A.

This Steelhead appliance is configured with enhanced auto-discovery.

B.

This Steelhead appliance is configured with enhanced peering discovery.

C.

The SYN packet coming from 172.16.12.99 with a destination to 172.16.11.88 carries a probe of 10 bytes.

D.

The SYN packet coming from 172.16.12.99 with a destination to 172.16.11.88 carries a probe of 10 bytes + a 4 bytes notification message.

Full Access
Question # 50

Which option below best describes the WCCP redirection supported by a SteelHead?

A.

Ports Mode

B.

GRE only

C.

PBR

D.

GRE or L2

E.

L2 only

Full Access
Question # 51

When configuring encrypted Lotus Notes optimization and the standard port is configured to require encryption, which of the following is true?

A.

An alternate unencrypted port must be open on the server, and a copy of the server ID file must be imported to the server side SteelHead.

B.

An alternate unencrypted port must be open on the server, and a proxy server ID file must be created on the server-side SteelHead.

C.

An encrypted port must be open on the server, and a proxy server ID file must be created on the server-side SteelHead.

D.

An encrypted port must be open on the server, and a copy of the server ID file must be imported to the server-side SteelHead.

Full Access
Question # 52

Examine the diagram below. The customer needs to optimize data center servers and also servers within the DMZ but wants to keep the SteelHead behind the firewall. Which optimization mode would support this environment?

A.

Hybrid mode

B.

Virtual In-path mode

C.

WCCP or Interceptor mode

D.

Out-of-path mode

E.

In-path mode

Full Access
Question # 53

A user downloads a Microsoft Excel document from a server over an optimized connection. The transfer is very fast. The user makes some changes to the spreadsheet and then saves the document. The transfer is very slow. The user edited a Word document shortly before but that downloaded and saved at the same fast speeds. What happened to the Excel document?

A.

Microsoft Excel compresses and encrypts the data by default when saving Microsoft Excel data does not perform well for LZ compression and will always be slow.

B.

Microsoft Excel compresses the data by default when saving.

C.

Microsoft Excel reorders the entire data stream when it saves so it is now new (cold) data to the SteelHead.

D.

Microsoft Excel encrypts data by default when saving.

Full Access
Question # 54

The SteelCentral Controller for SteelHead Mobile is rebooted or becomes unreachable from the end user mobile client. What happens to their network connections?

A.

The end user’s existing and new connections continue to be optimized as per policy.

B.

SSL trusts will fail and SSL will be passed through, all other traffic is unaffected.

C.

The end user’s optimized connections continue but new connections are passed through.

D.

The end user’s network connections terminate and they must wait for the controller to come back online.

E.

The end user’s optimized connections are reset and restart in pass-through mode.

Full Access
Question # 55

-- Exhibit –

-- Exhibit --

Refer to the exhibit. When USER1 tried to map shares to Server 1 and Server 2, he got the results shown. What does the report represent? (Select 2)

A.

The connection to Server 2 is optimized. The performance should be good.

B.

The connection to Server 2 is optimized, with errors, the performance should be poor.

C.

The connection to Server 1 is optimized. The performance should be good.

D.

The connection to Server 1 is optimized, with errors, the performance should be poor.

E.

The connection to Server 1 is not being optimized.

Full Access
Question # 56

At the data center, two SteelHeads are deployed in parallel, configured with connection forwarding. They are both actively optimizing connections via inpath0_0 and the customer requires that optimization continues in the event of an appliance failure. Which features should be configured to provide the customer with optimization if an appliance fails? (Choose two.)

A.

no interface inpath0_0 fail-to-bypass enable

B.

interface inpath0_0 fail-to-bypass enable w-failure

C.

No in-path neighbor allow-failure

D.

In-path neighbor allow-failure

E.

no asymmetric-route-detect enable

Full Access
Question # 57

You plan to downgrade a SteelHead from RiOS v9.0.1 (Apr 17 2015) to 8.6.3 (Aug 7 2015). The appliance was previously running v8.6.3 but was factory reset after the upgrade. Will this be successful?

A.

No, there is no longer a configuration file for v8.6.3

B.

Yes, the current v9.0.1 configuration file will be migrated

C.

Yes, the old configuration file from v8.6.3 will be loaded

D.

No, it is not possible to downgrade RiOS

Full Access
Question # 58

Which of the following deployments is incompatible with the Branch Warming feature?

A.

In-path

B.

Virtual in-path

C.

Out-of-path

D.

WCCP

E.

PBR

Full Access
Question # 59

Refer to the exhibit.

If Server A is an FTP server, which setting will enable active FTP optimization on Steelhead Mobile Client R?

A.

Steelhead A. in-path auto srcport 20

B.

Steelhead A. in-path auto dstport 20

C.

Client R: in-path auto dstport 20

D.

Default auto-discovery rules will work

E.

None of the above

Full Access
Question # 60

How can you provide updates to multiple Steelhead Mobile clients at the same time? (Select 2)

A.

Using profiles

B.

Using multiple Steelhead Mobile Controllers

C.

Using Group IDs

D.

Using policies

Full Access