Browse all practice questions for the Blue Coat Proxy Practice Exam. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Blue Coat Proxy Practice Exam course image
More practice questions

These questions are part of the practice quiz. Start practicing

  • In a transparent ProxySG deployment, what value is included in the TCP packet's destination IP address?
  • Which CPL component tests one aspect of a request against a Boolean expression of values?
  • Which type of proxy connection requires the end-user to manually configure their browser settings?
  • When setting up an LDAP realm, which aspect is not necessary to configure?
  • A ProxySG has its Explicit HTTP proxy service set to Intercept. What is the first response code the client receives when connecting for the first time?
  • Which tool can be used to perform advanced troubleshooting on a policy configuration?
  • When a ProxySG processes an SSL transaction between a client and a content server, does the ProxySG function as an SSL client or as an SSL server?
  • Which product is best for managing a large number of ProxySG devices?
  • During the SSL handshake, when does the server send the server certificate and the public key?
  • Which SGOS edition is specifically designed for Secure Web Gateway deployment?
  • Which of the following are always included in both the request and response headers?
  • What are the four types of VPM trigger objects?
  • Which detection method would not detect a mismatch between the file name and its content type?
  • What instructs the ProxySG to skip processing requests sent from specific clients to specific servers?
  • What does the ELFF string c-ip represent?
  • How many server workers are associated with each client worker when SGOS processes a client HTTP request?
  • In the VPM, a URL category such as "Travel" or "Hacking" represents which type of trigger?
  • What method does the ProxySG use to improve the efficiency of web object retrieval?
  • What is the role of the Management Console with regards to HTTP headers in ProxySG?
  • What does IWA stand for in networking terms?
  • When a Web Access layer is on the left edge and a Web Authentication layer to its right, which one is evaluated first?
  • What would happen if the ProxySG did not use surrogate credentials to authenticate users who use transparent proxy connections?
  • Which VPM layer can be most commonly used to control decryption of SSL traffic by authenticated username?
  • What type of data typically has the highest priority for decryption within ProxySG?
  • What is the role of a layer in a ProxySG configuration?
  • When is an authentication server most likely involved in the ProxySG's operations?
  • Which two aspects does each proxy service specify?
  • When will a policy trace report a rule processing result of "N/A"?
  • What is the biggest load on CPU resources for a ProxySG?
  • Where is the WebFilter database stored?
  • Which section of management would contain statistics on intercepted sessions?
  • What does it mean if a URL is categorized by WebFilter as "Pending"?
  • What type of operating system does SGOS refer to?
  • Which metric is generally not helpful in troubleshooting performance issues?
  • In HTTP, which status code indicates that a request was successful?
  • What type of storage does SGOS utilize?
  • What method is recommended to improve CPU performance on ProxySG?
  • If authentication is not enabled on the ProxySG, can policies still be written to control client access to web content?
  • By default, how often does a ProxySG send a heartbeat?
  • Is it true that the Blue Coat Management Center cannot be used to configure a ProxySG until an IP address has been assigned to it?
  • How does the ProxySG locate an object in its cache?
  • What is an effect of using emulated certificates?
  • Where does the ProxySG log SSL traffic that is not intercepted?
  • In the context of ProxySG, what does SSL interception achieve?
  • What is the default TCP port for HTTP?
  • Which type of authentication realm does not require any communication with an external authentication server?
  • By default, which keyring is used to authenticate a ProxySG to other devices?
  • What is the main advantage of using Kerberos over NTLM regarding network security?
  • To detect the apparent data type of a downloaded file, which tool can be used?
  • Can multiple Web Access layers be active simultaneously in the VPM?
  • If you use the VPM to create policy, can you also write your own CPL outside the VPM to create additional policy?
  • How can you determine the serial number of the ProxySG in the Management Console?
  • True or false: An HTTP request made by a server to a client uses a GET request method.
  • What does Schannel primarily handle in the ProxySG environment?
  • What policy tasks require using the VPM and cannot be performed in CPL?
  • What action does the Notify User object typically perform in VPM?
  • What type of user input is unnecessary for creating a built-in exception?
  • Which Blue Coat product integrates well for overall network security analysis?
  • SGOS is based on which other operating system?
  • Which approach should be used for URLs with no prior categorization?
  • Which policy file can be automatically updated when ProxySG detects changes to an external source?
  • When the disk space on a ProxySG is full, which features become unavailable?
  • From where does the ProxySG obtain the client certificate during transaction processing when required?
  • Which feature allows administrative control over user access to the internet through ProxySG?
  • For how long are LDAP user credentials cached on the ProxySG?
  • What is the main restriction regarding the SSL trust package configuration on ProxySG?
  • What are the three main tabs found in the Management Console?
  • Which caching technique emphasizes the cost associated with server bandwidth in the ProxySG?
  • What type of traffic can the ProxySG SSL Intercept handle?
  • Is SGOS a 32-bit or 64-bit operating system?
  • If the VPM has two Web Access layers, which is evaluated first?
  • How are cache deletion priorities determined in ProxySG's object caching?
  • Which service setting determines whether traffic is passed to the SSL proxy or the HTTP proxy?
  • What are three methods of client configuration in an explicit ProxySG deployment?
  • What is the purpose of sending an LDAP ping from the ProxySG?
  • What type of content does the ProxySG typically filter?
  • How does the ProxySG interface with traffic that does not match any defined rules?
  • What role does 'authentication support' play within the services offered by the ProxySG?
  • Where can you find a log of all configuration changes in ProxySG?
  • Why is authentication using Basic credentials typically used over HTTPS?
  • By default, to which log facility is HTTP traffic logged?
  • How does the ProxySG obtain its IP address when configured as part of an IPv6 network?
  • When the ProxySG processes installed policy, how does it handle a rule that contains a syntax error?
  • Which of the following services are provided by the ProxySG?
  • What is a key feature of user-defined exceptions in ProxySG?
  • How can a new built-in exception be created on the ProxySG?
  • Which of the following actions would help optimize the performance of ProxySG?
  • Which of the following best describes the role of a proxy server?
  • What information is stored in a policy trace for a proxy service that is set to bypass?
  • In ProxySG, which caching optimization technique opens multiple connections for simultaneous requests?
  • What function does load balancing serve in a ProxySG deployment?
  • What occurs when a disk is removed from a ProxySG while it is operational?
  • Which threat risk level would likely be assigned to an unproven URL without an established history of normal behavior?
  • True or False: Blue Coat maintains a YouTube channel where informational videos are posted.
  • When does the ProxySG establish an Schannel connection?
  • In the event of an exception, how does the SSL proxy handle HTTPS traffic?
  • True or False: For the ProxySG to decrypt SSL traffic, the traffic needs to be intercepted by a proxy service?
  • True or False: The on-box WebFilter database is checked only if the off-box database returns a category of "None".
  • How should CPL components such as layers and rules be organized in policy?
  • What stops further rule processing in a layer?
  • When must BCAAA be utilized by the ProxySG?
  • If continuous uploading of access logs is configured and the ProxySG cannot reach the upload destination, what happens to the log entries?
  • In the VPM, what type of object is a Notify User object?
  • What is the main advantage of performing a packet capture on ProxySG?
  • What happens if no available disk space is left on ProxySG?
  • When uploading access logs, which type of upload uses the least disk space on the ProxySG?
  • Which component of the ProxySG evaluates user requests for policy compliance?
  • Can more than one authentication realm be active simultaneously on the ProxySG?
  • What is one drawback to using apparent data type to detect the file type?
  • True or False: The object store uses a directory structure so that objects in the cache can be accessed quickly.
  • In which type of physical deployment is a ProxySG out-of-path but still has potential visibility to all traffic?
  • When a server receives a GET request method, how does it know where to retrieve the requested information?
  • Which built-in tool is used for monitoring the status of external resources in ProxySG?
  • When the CLI command restore-defaults factory-defaults is issued, does the ProxySG retain its configured IP address?
  • What are the three types of ProxySG surrogates?
  • What does the ‘BCAAA’ acronym represent in ProxySG context?
  • Which client-side technology does the Management Console utilize?
  • What component is responsible for detecting incoming traffic that matches specific IP addresses or subnets?
  • How can you prevent passwords from being sent in plaintext between the ProxySG and an LDAP server?
  • Which type of action modifies the transactions performed by the ProxySG?
  • Which Blue Coat product can help identify the root cause of a network infection?
  • What is the purpose of the conditional GET request?
  • In which client connection type are user agents aware that a proxy has been deployed?
  • Which of the following are common elements of a GET request?
  • Is the statement true or false: A policy trace flags malfunctioning policy?
  • How does the ProxySG primarily differentiate between file types?
  • True or False: A local database can be used as an alternative to either an on-box or off-box WebFilter database.
  • Which five aspects of ProxySG behavior does policy control?
  • What does the authentication mode specify?
  • If an access log file has no header, how does Blue Coat Reporter process the file?
  • True or False: Objects with similar URLs are usually located next to each other so that accessing related objects in a sequence is faster.
  • The HTTP request header Pragma: no-cache performs the same function as which other header?
  • In a ProxySG, what is the function of a defined action?
  • Which policy file is processed first?
  • Which of the following is NOT a method used by the ProxySG to detect the type of a file?
  • A global policy trace can be invoked from which two sources?
  • In a typical client HTTP request, what is the correct order of the four principal policy checkpoints?
  • In a transparent ProxySG deployment, what value does the TCP packet sent to the origin content server have as the source IP address?
  • Which of the following describes the security feature of the ProxySG regarding user credentials?
  • Where does the ProxySG get the text of the exception page it sends to a client?
  • Which configuration is primarily associated with the 'virtual inline' deployment?
  • When SGOS processes a client HTTP request, how is a client worker started?
  • What are the five components of a log facility?
  • When does a client utilize a TGT?
  • What is the primary purpose of using caching in HTTP?
  • Under what conditions does a policy-based trace generate a trace?
  • What causes evaluation to stop in a VPM layer?
  • In an HTTP transaction, what does the response header contain?
  • Objects that require more server-side bandwidth and response time are likely to be deleted from the cache. This statement best describes which ProxySG caching technique?
  • Which categories of traffic are typically not decrypted?
  • When a browser is configured to use an explicit proxy connection to the ProxySG, incoming HTTPS traffic from that browser is intercepted by which proxy service?
  • True or False: Policy can still be applied to bypassed traffic depending on the deployment mode.
  • What are the two types of ProxySG exceptions?
  • When the ProxySG uses a virtual URL for user authentication, what must the virtual URL point to?
  • What log format is associated with the main log facility by default?
  • After receiving a splash page from the ProxySG, how often may a user receive a subsequent splash page?
  • What is the purpose of the VPM-XML file?
  • Which log format allows for detailed reporting in ProxySG?
  • Which HTTP protocol header controls the cache behavior of retrieved objects?
  • When monitoring network traffic, which aspect is fully visible from a ProxySG packet capture?
  • How are VPM rules organized?
  • What must be selected for the Explicit HTTP service to handle SSL traffic?
  • Can a ProxySG automatically obtain its own IPv4 address during initial configuration?
  • If you lose the password to the setup console, which of the following methods can be used to regain access?
  • How can you instruct the ProxySG to disregard the HTTP request header Pragma: no-cache?
  • How does the Management Console execute commands on the ProxySG?
  • Historically, how many Schannel connections have been allowed concurrently?
  • What are the two main client connection methods for the ProxySG?
  • When specifying a search user for an LDAP authentication realm, what administrative permissions are required on the search user account?
  • What challenge does using a transparent proxy connection typically present for user authentication?
  • How can the log facilities be monitored?
  • When creating policy in the VPM, where can you instruct the ProxySG to enable or disable pipelining of referenced objects?
  • In a CPL context, what purposes do transactions serve?
  • What is the outcome when a user connects to the ProxySG and authorization fails?
  • True or False: A policy trace can be enabled for any layer type.
  • Which aspect of ProxySG can be improved by reducing emulated certificates?
  • When categorizing a URL, what does "off-box" refer to?
  • If you click Revert three times in the Management Console, what will occur?
  • What occurs when dynamic categorization is disabled?
  • Which Blue Coat product is specifically designed for scanning network traffic to detect viruses?
  • An HTTP request containing which header instructs the content server to return whether the requested object has been modified since the last visit?
  • True or False: The Content Analysis System can send suspicious files only to the Blue Coat Malware Analysis Appliance.
  • Which of the following best describes the role of the ProxySG in network deployments?
  • In the VPM, access logging is controlled by which type of objects?
  • What is the function of WebFilter in the context of URL categorization?
  • Where can you find all sessions intercepted by the services framework of the ProxySG?
  • What type of data does SGOS primarily manage?
  • True or False: A policy trace does not show a request being evaluated against a rule that follows in the same layer as the rule that the request triggered.
  • Which of the following is NOT a component of a proxy service listener?
  • When the ProxySG performs LDAP authentication, how often does it send a bind request with the search user DN?
  • Where does ProxySG object caching generally result in the most bandwidth savings?
  • What happens when multiple administrators change the time zone of the ProxySG?
  • Which method is the most accurate for the ProxySG to detect the type of a file?
  • What method does a client typically use to request data from a server?
  • What is the role of a ProxySG when configured as an SSL server?
  • What functionality does Blue Coat's Advanced Threat Protection Lifecycle provide?
  • In a ProxySG deployment, where does the challenge to the user typically originate?
  • Which CA certificate list is typically used by the ProxySG for client-server SSL transactions?
  • What does the exception exception.user-defined.all inherit its properties from?
  • How does ProxySG handle a disk removal event during operation?
  • If a downloaded file is named file.jpg but is a Windows executable, how will the ProxySG handle this file?
  • What type of help can you expect to receive after clicking the help button in the Management Console?
  • Why is it necessary for the ProxySG to act as an SSL client during SSL transactions?
  • Why is Kerberos performance generally considered superior to NTLM?
  • Which of the following is NOT a key feature of the Advanced Threat Protection Lifecycle?
  • In which of the following ways does a POST request method differ from a GET request?
  • What is one potential outcome of configuring the ProxySG incorrectly?
  • What purpose do policy checkpoints serve in the ProxySG?
  • What is the primary benefit of using IWA authentication realms?
  • The ProxySG simultaneously opens multiple server connections to retrieve objects referenced on a web page before the client actually issues the requests for those objects. This statement best describes which ProxySG caching technique?
  • Which algorithm is used for key exchange in secure communications?
  • What are the three principal physical deployment methods for the ProxySG?
  • What is used in network management systems to monitor network devices for health or status conditions requiring administrative attention?
  • Is it true that with IWA direct, client requests must be directed to the DNS name for the ProxySG's Active Directory machine account?
  • True or false: Access logging is disabled by default, requiring configuration to log intercepted protocols on the ProxySG.
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy