A customer has configured the IBM Security Access Manager V9.0 appliance authentication to an external LDAP server. The customer wants to allow support staff with LDAP accounts that are members of the HelpDesk group to view appliance and audit logs.
Where should the deployment professional configure a new role and map it to the HelpDesk LDAP group for the support staff?
A. Manage System Settings -> Management Delegation
B. Manage System Settings -> Administrator Settings
C. Manage System Settings -> Management Authorization
D. Manage System Settings -> Management Authentication
Answer: A
Question No : 2
A deployment professional has a requirement to configure an OpenIDConnect federation which does not allow the Relying Party to access the token endpoint.Which grant type must be enabled when creating the federation?
A. Implicit
B. Refresh Token
C. Client Credentials
D. Authorization code
Answer: D
Preparing Tips For IBM C2150-609
Final Exam - C2150-609 Dumps PDF Dumps4download
In an organization's testing environment, the IBM Security Access Manager V9.0 deployment professional is required to deploy the virtual appliance on Amazon EC2 with a single reverse proxy instance with a single network interface.How should the deployment professional configure the reverse proxy so thatend-users can access the reverse proxy without specifying a non-standard port (other than 80 and 443)?
Question No : 3
The IBM Security Access Manager (ISAM) V9.0LMI SSL certificate is auto-generated by default.When the LMI certificate is due to expire, how is it renewed?
A. The ISAM Appliance will renew LMI certificate automatically
B. The ISAM deployment professional must issue reset_lmi_cert using command line interface
C. The ISAM deployment professional must re-generate it using LMI Manage System Settings -> SSL panels.
D. The ISAM deployment professional must create a new self sign certificate using LMI Manage System Settings -> SSL panels.
Answer: C
Question No : 4
A deployment professional has configured Federated Single Sign-On using IBM Security Access Manager V9.0 with WebSEAL as point of contact.Which two things need to be configured to achieve Single Log Out (SLO) in the SAML 2.0
Federation?(Choose two.)
A. The page displayed after pkmslogout is called (logout.html)
B. The creation of user session ID's ([session] user-session-ids = yes)
C. The passing of session cookies tojunctioned servers (-k option in the junction creation)
D. The URIs that receive a single signoff request ([acnt-mgt] single-signoff-uri =/applications/sign off)
E. The appropriate extended attribute to the Federation junction (HTTP-Tag-Value user_session_id=user_session_id)
Answer: C,D
Pass C2150-609 Exam In First
Attempt - IBM C2150-609 Real Exam Questions
Question No : 5
A. Use port forwarding to map non-standard port to a standard port on appliance using LMI
B. Use port forwarding to map non-standard port to a standard port on appliance using CLI
C. Configure appliance management port to listen on non-standard port and set reverse proxy port to listen on standard port using LMI
D. Configure appliance management port to listen on non-standard port and set reverse proxy port to listen on standard port using CLI
Answer: A
Question No : 6
An IBM Security Access Manager (ISAM) V9.0 deployment professional has downloaded the ISAM V9.0 installation files from the IBM Passport Advantage site. XenServer 6.2 will be the hypervisor technology used for a new ISAM Virtual Appliance installation.What is the installation media file type needed to deploy the new ISAM appliance on XenServer?
A. pkg file
B. img file
C. vhd file
D. ova file
Answer: D
Question No: 7
A risk officer of an organization discovered that a site protected by the IBM Security Access Manager V9.0 solution might be vulnerable to common attacks like cross-site scripting (XSS) and SQL injection. Which optional component should be configured to protect against these attacks?
A. Federation
B. Secure Web Settings
C. Advanced Access Control
D. Web Application Firewall
Answer: D
Question No : 8
A company has deployed an IBM Security Access Manager V9.0 solution to protect web resources and now wants to secure access to enterprise resources from mobile devices. The security deployment professional needs to run a utility to configure theexisting
WebSEAL with the instance of the appliance that provides the authorization server for Advanced Access Control.
Which utility tool will perform this configuration?
A. isamcfg
B. pdadmin
C. Web Administration Tool (WAT)
D. Middleware Configuration Utility
Answer: A
Get Real C2150-609 Exam Questions -C2150-609 Question Answers
Dumps4download
Question No : 9
A deployment professional wants to ensure traffic from a Reverse Proxy toa junction backend applicationserver goes out over a specific interface.How can this be accomplished?
A. Create a new management interface.
B. Create a new application interface.
C. Create a static route to the backend server.
D. Create a new interface in the reverse proxy configuration file.
Answer: A
Question No : 10
How should the disk space occupied by the several large support files be reduced?
A. Configure automatic roll over of support files using the LMI
B. Download the support files and delete them from the appliance
C. Download the support files which will also delete them from the appliance
D. Configure support file retention policy using the LMI to restrict, such that files older than a certain date are purged
Answer: A
IBM C2150-609 Exam 100% Passing
Guarantee - IBM C2150-609 Study Tips Dumps4Download.us
No comments:
Post a Comment