March Sale Special - Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: top65certs

Riverbed 299-01 Dumps

Page: 1 / 9
Total 245 questions

Riverbed Certified Solutions Professional - Network Performance Management Questions and Answers

Question 1

An interactive view within Cascade Pilot is useful for:

Options:

A.

Applying a very complex filter statement.

B.

Creating a non-sequential time index.

C.

Creating a trace clip file with trend index data.

D.

Interactively connecting charts from 2 or more views.

E.

Creating a PDF report of a view that can be interactively updated.

Question 2

If you use overlapping IP address ranges (for example 10.0.0.0/8, 10.1.2/16, and 10.2.3/24) in a host group definition on Cascade Profiler which of the following is true?:

Options:

A.

The Profiler assigns a host to all overlapping custom groups.

B.

The Profiler assigns a host to the custom group whose definitions has the shortest matching prefix.

C.

The Profiler assigns a host to the custom group whose definitions has the longest matching prefix.

D.

An error message is generated.

Question 3

A report on Cascade Profiler for "Top talkers" can be generated for which of the following? (Select 3)

Options:

A.

Hosts

B.

Peers Group

C.

Host Group Pairs

D.

Peer Group with Ports

E.

Host Pairs

Question 4

What are possible explanations for no Server Delay measurement being reported for a particular flow? (Select 4)

Options:

A.

The flow includes the UDP protocol.

B.

The traffic was not reported by a Cascade Sensor or Cascade Shark appliance.

C.

The traffic was not reported by a Steelhead appliance's CascadeFlow

D.

The start time for the connection was prior to the timeframe selected for the traffic query.

E.

The packets involved in the initial setup of the TCP connection were not seen by a Cascade Sensor or Cascade Shark appliance.

Question 5

What is the chart granularity possible through the Cascade Pilot UI? (Select 2)

Options:

A.

1 second on a local System, 10 milliseconds on Cascade Sharks.

B.

1 millisecond for any View.

C.

1 millisecond for specific Views.

D.

Generally minimum 1 second, maximum 1 day.

Question 6

What is one way Cascade obtains information about retransmissions in the network?

Options:

A.

It obtains L2 retransmissions from switches and routers via SNMP.

B.

It obtains TCP retransmissions by tracking TCP sessions via the Cascade Sensor.

C.

Cascade does not track retransmissions.

D.

Cascade obtains retransmissions from NetFlow and/or sFlow marked with the TCP push flag.

Question 7

To install Cascade Shark, the best practice to initially configure the IP Address to be used on the network is:

Options:

A.

Connect a cross-over cable from your laptop to the Ethernet management port and connect through the Web browser to the default IP Address of 192.168.1.10.

B.

Connect a cross-over cable from your laptop to the Auxiliary Ethernet port and connect through the Web browser to the default IP Address of 192.168.1.10.

C.

Connect by KVM or Serial Console and run the command line tool, sa_wizard, to perform the initial configuration.

D.

Connect to the appliance using the Riverbed Central Management Console (CMC) on its default IP Address and perform the initial configuration.

Question 8

Where is one place Cascade Profiler can obtain Identity (user) information for use in reporting user activity on a network?

Options:

A.

Through Radius Server(s)

B.

From Domain Controller(s)

C.

Through LDAP queries

D.

Via SNMP queries

Question 9

The Cascade Shark de-duplication mode should be used:

Options:

A.

To de-duplicate duplicate flows sent to the Cascade Profiler appliance caused by the way different Cascade Shark ports may see the same UDP/TCP sessions.

B.

To de-duplicate duplicate flows sent to the Cascade Profiler appliance caused by use of the Aggregating Port seeing the same UDP/TCP sessions.

C.

To de-duplicate duplicate packets that may be collected by the Cascade Shark caused by the way Port Mirroring is configured on a switch.

D.

To de-duplicate duplicate packets that may be collected by the Cascade Shark caused by the way filtering is used on a capture job.

E.

All of the above

Question 10

Cascade Shark can export flow data to a Cascade Profiler. When configuring Cascade Shark, flow export can be configured:

Options:

A.

Per each capture job

B.

Per each trace clip

C.

Per each capture port

D.

Per each capture board/aggregating port

E.

Per each Cascade Shark appliance

Question 11

What is the Active Timeout requirement on flow sources sending NetFlow to Cascade?

Options:

A.

Any active timeout can be used; Cascade will calculate the statistics accordingly and update the dashboard accordingly.

B.

60 Seconds.

C.

60 Milliseconds.

D.

15 Minutes.

Question 12

What is the maximum number of Cascade Profilers that can be configured in the Cascade Shark appliance as receivers of flows?

Options:

A.

1

B.

2

C.

3

D.

4

E.

Unlimited

Question 13

Within Cascade Pilot, a tool tip is available to provide additional information about items such as views. To access the tool tip for a view you must:

Options:

A.

Hover your mouse over the name of the view.

B.

Hover your mouse over the icon in front of the view name.

C.

Open context-sensitive help with the view displayed.

D.

Right-click within the main workspace and select "show view tool tip" from the right hand menu.

Question 14

In Cascade Profiler, which of the following is available as a Dashboard content block? (Select 3)

Options:

A.

Top Hosts

B.

Top URLs

C.

Watched Interfaces

D.

Current Events

Question 15

Considerations for enabling Cisco NetFlow includE. (Select 3)

Options:

A.

Active time-out setting for flows should be set to 600 seconds.

B.

Inactive time-out setting should be set to 15 seconds.

C.

NTP should be configured on the device.

D.

Active time-out setting for flows should be set to 60 seconds.

Question 16

Within Cascade Pilot, when packet capture (pcap) files have associated trending/indexing data the following are true (select 2)

Options:

A.

They appear in the my-views main directory.

B.

Views that take advantage of the trending/indexing data load faster.

C.

The file icon includes a colored-lightning bolt.

D.

The file loads faster into Wireshark.

E.

Additional pre-defined filters and watches are available.

Question 17

Which is a true statement regarding choosing between a 2U and a 3U Cascade Shark base appliancE. (Select 2)

Options:

A.

You must consider how many capture cards are required.

B.

You must consider how much disk space is required.

C.

You must consider the write-to-disk speed required.

D.

You must consider how many Cascade Pilot consoles will be connecting.

E.

You must consider how many Cascade Profilers the appliance will export to.

Question 18

What conditions might prevent successful SNMP polling of a flow source? (Select 2)

Options:

A.

An ACL might exist on the flow source (router) and the Cascade Standard Profiler IP address is not in it.

B.

SNMP is not enabled.

C.

The correct IP address of the flow source was not entered into the GUI.

D.

The SNMP read string provided and entered might not be correct.

E.

The flow source is not using the same NTP source as the Cascade Gateway.

Question 19

When links in a network are using WAN optimization, it is best if the Cascade Profiler or Express receives data from a _________or _________ monitoring traffic on the LAN side of the Steelhead that is located on the server side of the optimized connection. This is necessary in order to determine server delay.

(Select 2)

Options:

A.

Cascade Shark

B.

Router

C.

Layer 3 switch

D.

Steelhead appliance

E.

Cascade Sensor

Question 20

Which of the following is a valid group definition on Cascade Profiler? (Select 4)

Options:

A.

10.0.0.0/23 United_States

B.

0.0.0.0/0.0.0.0 Worldwide

C.

24.32.8.43/32 CEO_Printer

D.

192.168.0.5/255.0.255.0 Printers

E.

10.38.14.1/255.255.255.255 My Computer

Question 21

What is the minimum number of physical appliances required when building Cascade solution that will collect and process 3.6 million unique (de-duplicated) flows/minute from NetFlow sources?

Options:

A.

11 for the Cascade Profiler, 3 Cascade Gateways

B.

10 for the Cascade Profiler, 3 Cascade Gateways

C.

11 for the Cascade Profiler, 5 Cascade Gateways

D.

10 for the Cascade Profiler, 5 Cascade Gateways

E.

12 for the Cascade Profiler, 4 Cascade Gateways

Question 22

How many Host Group Types can be tracked on the Dashboard within the Cascade Profiler GUI?

Options:

A.

Unlimited

B.

Ten

C.

Four

D.

Twenty

Question 23

Technologies used for switching traffic between Virtual Machines under ESXi include:

Options:

A.

Traffic between Virtual machines is not switched; it is routed by the standard vRouter included with ESXi

B.

A standard or distributed vSwitch which comes with ESXi must be used, there is not 3rd party software available

C.

A 3rd party virtual switch is required such as the CISCO Nexus 1000v as no standard vSwitch exists with ESXi

D.

The included standard vSwitch of the CISCO Nexus 7000

E.

The included standard vSwitch or the CISCO Nexus 1000v

Question 24

On Cascade Profiler, what does "tunneled" indicate when used as a keyword for an Application?

Options:

A.

When the traffic flow matches more than one Application signature. This indicates that the one Application may have been tunneled over the other.

B.

When an Application runs over a non-standard port (such as TELNET traffic on Port 80).

C.

When a "port definition" is non-standard (e.g. when you change tcp/80's definition from http to telnet).

D.

When a Layer-4 Application Mapping is defined.

Question 25

Which version of SNMP traps can the Cascade Profiler and Cascade Express send?

Options:

A.

SNMPv1 Only

B.

SNMPv2 Only

C.

SNMPv1 and SNMPv2

D.

SNMPv1 and SNMPv3

Question 26

Cascade Profiler's Switch Integration feature uses SNMP and adds the capability for Cascade to report on which of the followinG. (Select 2)

Options:

A.

User name

B.

Host IP address

C.

Host MAC address

D.

The physical switch port a specific host is connected to

E.

Switch port traffic levels

F.

Switch port status

G.

SNMP traps from the switch

Question 27

How do I run a report on Cascade Profiler to show all hosts that have talked to server "192.168.1.100" on TCP port 25?

Options:

A.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Server" in the drop down, enter "tcp/25" in the Protocol field and select "Hosts" in the "report-by" pull down.

B.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Server" in the drop down, enter "tcp/25" in the Protocol field and select "Peers Hosts" in the "report-by" pull down.

C.

Under the traffic reports Advanced Tab, place "192.168.1.100" in the Host field – select "Acting as Client and Server" in the drop down, enter "tcp-25" in the Protocol field and select "Hosts" in the "report-by" pull down.

D.

Under the "Quick Reports" pull down from the dashboard page, select "Host" enter the IP Address and hit return.

Question 28

How do Cascade Performance Analytics assist with Performance Monitoring?

Options:

A.

By setting intelligent static thresholds for Application metrics and Interface metrics, tolerance can be determined. Cascade will use these thresholds and tolerances to report on deviations indicative of performance problems.

B.

The Customer only needs to identify their critical hosts, interfaces and/or applications, and Cascade will automatically baseline their behavior and report on deviations indicative of performance problems.

C.

The Performance Analytics use knowledge of hosts, interfaces, and/or applications are able to detect security threats such as host scans and worms.

D.

After baselining is completed, Cascade can re-route congested traffic to avoid congested application delivery paths.

Question 29

In order to analyze data captured by a Cascade Shark appliancE. (Select 3)

Options:

A.

You can connect directly to the Cascade Shark with Cascade Pilot to begin analysis.

B.

You can connect directly to the Cascade Shark with Cascade Gateway to begin analysis.

C.

You can start analysis on the Cascade Profiler based upon flow data that has been sent from Cascade Shark to Cascade Profiler.

D.

You can export data from a capture job directly to a packet capture (pcap) file and open in any tool that accepts pcap format.

E.

You can start by loading views of the data from the Cascade Shark Appliance Web GUI before export to Wireshark.

Question 30

Some common protocols which may be observed on a network with visibility tools are listed below. Match the protocol name with the most common port used.

1. HTTP a) TCP/25

2. HTTPS b) TCP/445

3. HTTPS through a proxy c) TCP/443

4. SMTP d) TCP/80

5. CIFS e) TCP/8080

Options:

A.

1-d; 2-b; 3-c; 4-a; 5-b

B.

1-e; 2-c; 3-d; 4-a; 5-b

C.

1-d; 2-c; 3-e; 4-b; 5-a

D.

1-d; 2-c; 3-e; 4-a; 5-b

E.

1-e; 2-d; 3-c ; 4-b; 5-a

Question 31

To better analyze live traffic on Cascade Shark from Cascade Pilot you should:

Options:

A.

Apply a View on the live interface and then start a Capture Job on the capture port to analyze traffic later.

B.

Start a Capture Job on the capture port with a BPF filter and apply a View on the live interface for the same capture job.

C.

Start a Capture Job on the capture port, apply a View on the live interface and create a trace clip for the time window of interest.

D.

Never create a Capture Job to prevent packet drops.

Question 32

Trace clips that no longer have data because their packet data and trend data is no longer available in the parent capture job trace:

Options:

A.

Appear with a red lightning bolt icon within Cascade Pilot.

B.

Appear with a lock icon within Cascade Pilot.

C.

Appear with a grey lightning bolt icon within Cascade Pilot.

D.

Appear with a yellow lightning bolt icon within Cascade Pilot.

E.

Appear with the trace clip name in red text within Cascade Pilot.

Question 33

Which of the following metrics can Cascade Profiler create dependency (Connection Graphs) for? (Select 3)

Options:

A.

Average drops

B.

Average retransmits

C.

Average response time

D.

Average utilization

E.

Total bandwidth bits

Question 34

When changing the priority for a Layer 4 mapping on Cascade Profiler best practices indicate that Application Mappings should be given higher priorities based on:

Options:

A.

Longest Match

B.

Shortest Match

C.

IP & Port

D.

IP

Question 35

How many items can be displayed in a single watched list in a Profiler Dashboard Content Block?

Options:

A.

Unlimited

B.

Ten

C.

Four

D.

Twenty

Question 36

Filtering in Cascade Pilot: (Select 2)

Options:

A.

Is either a BPF or Wireshark Display filter only.

B.

Can be created from a chart.

C.

Can be changed after applying a View.

D.

Is the equivalent of the Wireshark "display filter input".

Page: 1 / 9
Total 245 questions