Which assumption does CA SiteMinder make about a user directory by default?
A. A user will be audited against the same directory.
B. A user will be authorized against the same directory.
C. A user will be authenticated against the same directory.
D. A user will be authenticated AND authorized against the same directory.
Which benefits do agent groups provide? (Choose two)
A. Defining by multiple sets of policy objects
B. Verifying tasks in the Web Agent installation more easily
C. Saving time by defining only one policy for all Web Agents
D. Providing resource access to a larger user base by duplicating the resource on many web servers and Web Agents
Two important reasons why password policies are necessary are to:
A. Maintain use of valid passwords and disable user accounts.
B. Increase administrative involvement and disable user accounts.
C. Disable user accounts and minimize administrative involvement.
D. Prevent access when passwords have expired and ensure users cannot create week passwords.
Two benefits of password services are that they:
A. Provide an additional layer of security, and provide administrators with access to user passwords.
B. Prevent users from selecting their own passwords, and provide administrators with access to user passwords.
C. Provide an additional layer of security, and prevent unauthorized access to resources by disabling accounts that exceed permitted authentication attempts.
D. Prevent users from selecting their own passwords, and prevent unauthorized access to resources by disabling accounts that exceed permitted authentication attempts.
One of the three cryptographic operating modes for securing CA SiteMinder data is Federal Information Processing Standards (RPS)-compatibility. This mode:
A. Only uses FIPS 140-2 algorithms.
B. Is only used for CA SiteMinder rl2.
C. Uses classic CA SiteMinder 6.x cryptography.
D. Is used where version 6.x and rl2 of CA SiteMinder co-exist.
Where are named expressions stored?
A. In cookies
B. In user classes
C. In the policy store
D. In the Administrator Group
In CA SiteMinder, a Web Agent interaction determines whether an authenticated user has access to a requested resource. The decision is based on a security policy defined in the policy store or entitlement store.
This Web Agent interaction is called:
A. isProtected
B. isAuthorized
C. isRequested
D. isAuthenticated
When you install a CA SiteMinder Policy Server, you need to configure two service accounts.
Which service account has privileges to create, read, modify, and delete objects in the LDAP tree underneath the policy store root object?
A. smHOST
B. DN System
C. Administrative DN
D. Database Administrative Account
Named expressions enable you to:
A. Examine core components.
B. Define reusable expressions.
C. Define the permissions on reports.
D. Define ODBC user directory attributes.
Which statement about the CA SiteMinder Extensible Policy Store (XPS) is TRUE?
A. It exports to .dtd files.
B. It cannot co-exist with legacy policy stores.
C. New applications can be added without altering the schema.
D. It uses the new CA SiteMinder Data Interchange Format (SMDIF).