Reliable Symantec Certified Specialist 250-587 Dumps PDF Jul 22, 2026 Recently Updated Questions [Q13-Q31]

Share

Reliable Symantec Certified Specialist 250-587 Dumps PDF Jul 22, 2026 Recently Updated Questions

Pass Your Symantec 250-587 Exam with Correct 110 Questions and Answers

NEW QUESTION # 13
Which version of Oracle does Symantec Data Loss Prevention version 12.0 require for new installations or upgrading from 11.x to 12.0?

  • A. 10.2.0.1
  • B. 10.2.0.4
  • C. 11.2.0.3
  • D. 11.2.0.2

Answer: C


NEW QUESTION # 14
A DLP administrator needs to decide if using Symantec Management Console (SMC) will provide additional functionality over the built-in Agent Actions that can be performed via Agents > Overview > Summary Reports.
What are two of the Agent Actions that can be performed with SMC that are unable to be used with the built-in Agent Actions? (Select two.)

  • A. Gather Endpoint detection server logs
  • B. Get Agent Configuration
  • C. Set Log Level
  • D. Set Under Investigation
  • E. Toggle Print Screen

Answer: B,E


NEW QUESTION # 15
You administer storage for multiple hosts supporting a large OLTP application. Host Mkt operates both within the secure intranet, and host Store operates in a DMZ environment. Store stages detailed transaction logs on a volume named s_detail in a disk group named s_dat a. You need to deliver large batches of transaction data history from host Store to host Mkt for market analysis, and to receive the results of that analysis, as part of a weekly routine. To deliver sales history to the marketing host, what sequence of actions must you carry out? Place the following actions in order. 1. Use vxdg to deport the snapshot volume's disk group from host Store. 2. Use vxdg to import the snapshot volume into host Mkt. 3. Use vxsnap to create a snapshot of s_detail on s_data. 4. Use the vxsnap command to enable FastResync on s_detail. 5. Use vxdg to split the snapshot volume away from s_data, into a separate disk group.

  • A. 5,4,1,2,3
  • B. 5,2,4,1,3
  • C. 4,2,5,3,1
  • D. 4,5,2,1,3

Answer: D


NEW QUESTION # 16
Which incidents appear in the Network Incident List report when the Network Prevent Action filterz is set to Modified?

  • A. incidents in which confidential attachments were removed from an SMTP email
  • B. incidents in which digital rights were applied to SMTP email attachments containing confidential information
  • C. incidents in which an SMTP email was changed to include one or more SMTP headers
  • D. incidents in which confidential content was removed from the body of an SMTP email

Answer: C


NEW QUESTION # 17
You have designed a tiered storage environment using ISP volumes, created the disk group that will be used to hold the tiered volumes, and created the storage pool in the disk group. You are now ready to install the template definition file in the ISP configuration database that you have created. What should you do next?

  • A. Use the vxvset command to install your template definition file in the ISP configuration database.
  • B. Use the vxtemplate command to install your template definition file in the ISP configuration database.
  • C. Use the vxassist command to install your template definition file in the ISP configuration database.
  • D. Use the vxdisk command to install your template definition file in the ISP configuration database.

Answer: B


NEW QUESTION # 18
Which tool must a DLP administrator run to certify the database prior to upgrading DLP?

  • A. Upgrade Readiness Tool
  • B. EnforceMigrationUtility
  • C. SymDiag
  • D. Lob_Tablespace Reclamation Tool

Answer: A

Explanation:
References:


NEW QUESTION # 19
What is the Symantec recommended order for stopping Symantec DLP services on a Windows Enforce server?

  • A. Vontu Update, Vontu Notifier, Vontu Manager, Vontu Incident Persister, Vontu Monitor Controller
  • B. Vontu Monitor Controller, Vontu Incident Persister, Vontu Manager, Vontu Notifier, Vontu Update.
  • C. Vontu Notifier, Vontu Incident Persister, Vontu Update, Vontu Manager, Vontu Monitor Controller
  • D. Vontu Incident Persister, Vontu Update, Vontu Notifier, Vontu Monitor Controller, Vontu Manager.

Answer: B


NEW QUESTION # 20
A DLP administrator has determined that a Network Discover server is unable to scan a remote file server. Which action should the administrator take to successfully scan the remote file server?

  • A. use the fully qualified name (FQDN) of the server
  • B. restart the discover scan
  • C. verify that the file server has .NET services running
  • D. verify that the target file server is a Windows 2008 server

Answer: A


NEW QUESTION # 21
When attempting to log in as administrator to the UI, the administrator receives a login error:
Invalid Username/Password or Disabled Account
The DBA verifies the account is enabled. The information provided for the environment only includes the DLP protect database username and password as well as a username and password called Sys Admin\Admin.
How should the administrator change the built-in 'Administrator' password?

  • A. log in to the Enforce UI as the Sys Admin account and go to System > Login Management > DLP Users and reset the administrator password
  • B. extract the administrator password from the DatabasePassword.properties file
  • C. update the PasswordEnforcement.properties file with a new administrator password
  • D. use the AdminPasswordReset utility to update the password

Answer: D


NEW QUESTION # 22
ou have gathered file I/O performance data from an Oracle Enterprise database. The database is using one filesystem on a striped volume. You want to use the performance data to adjust the system configuration to ensure efficient use of system resources. Which specific activity should you should perform to adjust the system configuration?

  • A. File I/O activity
  • B. Volume I/O activity
  • C. All I/O activity
  • D. Raw disk I/O activity

Answer: A


NEW QUESTION # 23
In the context of Network Discover scanning of Exchange servers, what is the Exchange Autodiscover service?

  • A. It is a service on the Enforce server that you enable to resolve custom attributes in Network Discover incidents for Exchange servers.
  • B. It is a service on the Discover server that you enable to retrieve files from the Exchange server for detection analysis against your DLP policies.
  • C. It is a service on the Exchange server that you enable to fetch Exchange server and mailbox information from Active Directory.
  • D. It is a service on the Exchange server that you enable to send files from the Exchange server for detection analysis against your DLP policies.

Answer: C

Explanation:
Exchange Autodiscover is an Exchange-side service that provides configuration information about Exchange servers and mailboxes by using Active Directory. During a Network Discover scan of Microsoft Exchange, Symantec DLP relies on this service to identify the Exchange environment and obtain the mailbox information needed to configure and execute the scan target. It is not a file-retrieval engine installed on the Discover server, nor is it an Enforce-side custom-attribute resolver. The actual collection and policy inspection of Exchange content are performed by the DLP discovery components after the Exchange topology and mailbox information have been identified. Therefore, option B correctly identifies both the location of the Autodiscover service and its administrative function within the Exchange discovery workflow.


NEW QUESTION # 24
A DLP administrator is attempting to add a new Network Discover detection server from the Enforce management console. However, the only available options are Network Monitor and Endpoint servers.
What should the administrator do to make the Network Discover option available?

  • A. Restart the Vontu Monitor Service
  • B. Restart the Symantec DLP Controller service
  • C. Apply a new software license file from the Enforce console
  • D. Install a new Network Discover detection server

Answer: D


NEW QUESTION # 25
Which two locations can the administrator verify a newly created policy was loaded on a detection server? (Select two.)

  • A. Manage > Policies > Policy List
  • B. System > Servers > Events
  • C. System > Servers > Server Detail
  • D. System > Servers > Overview
  • E. System > Servers > Overview > Configure Server

Answer: B,C


NEW QUESTION # 26
A volume called datavol in the disk group named datadg has two plexes. The plexes are named P1 and P2. Due to a series of failures, the P1 plex ends up in DISABLED/RECOVER state, and the P2 plex ends up in DISABLED/STALE state. As the administrator, you are aware of the series of failures, and you know that the data on the P1 plex is still valid and has the most recent copy of your dat a. You want to recover the plexes. Which command will you execute to recover the plexes?

  • A. vxmend -g datadg fix clean P1 vxrecover -s datavol
  • B. vxmend -g datadg fix clean P1 vxmend -g datadg fix clean P2 vxvol -g datadg start datavol
  • C. vxmend -g datadg off P2 vxrecover -ns vxvol -g datadg start datavol
  • D. vxmend -g datadg fix stale P1 vxmend -g datadg fix clean P1 vxrecover -s datavol

Answer: B


NEW QUESTION # 27
What is one difference between Exact Data Matching (EDM) and Exact Match Data Identifiers (EMDI)?

  • A. EDM is better at detecting non-standard delimiters (in ID numbers) than EMDI.
  • B. EDM is its own detection rule type and EMDI is a Data Identifier validation check.
  • C. EDM rules can be evaluated by the DLP Agent and EMDI rules cannot.
  • D. EDM requires an index and EMDI does not.

Answer: B


NEW QUESTION # 28
A DLP administrator is preparing to install Symantec DLP and has been asked to use an Oracle database provided by the Database Administration team.
Which SQL *Plus command should the administrator utilize to determine if the database is using a supported version of Oracle?

  • A. select database version from < database name > ;
  • B. select * from v$version;
  • C. select * from db$version;
  • D. select db$ver from < database name > ;

Answer: B

Explanation:
References:


NEW QUESTION # 29
Which detection server is available from Symantec as a hardware appliance?

  • A. Network Prevent for Web
  • B. Network Discover
  • C. Network Monitor
  • D. Network Prevent for Email

Answer: A

Explanation:
References:


NEW QUESTION # 30
You are responsible for administering a server with mirrored volume layouts. You noticed that the last time the server was down, the server took longer than usual to resynchronize the mirrors. You want to make configuration changes on the server to reduce resynchronization time. Which actions will you perform?

  • A. Run the vxse_redundancy rule and plan configuration changes to eliminate any rule violations it reports.
  • B. Run the vxse_rootmir rule and plan configuration changes to eliminate any rule violations it reports.
  • C. Run the vxprint command, inspect the storage configuration manually, and write a plan to place dirty region logs on the three biggest volumes.
  • D. Run the vxse_drl1 rule and plan configuration changes to eliminate any rule violations it reports.

Answer: D


NEW QUESTION # 31
......

Latest 2026 Realistic Verified 250-587 Dumps: https://actualtests.real4prep.com/250-587-exam.html