While looking at the S-TAP Status report on a Collector, a Guardium administrator notices that the status of the S-TAPs is changing every few minutes. The administrator suspects that the sniffer is restarting every few minutes and that is why the status change is happening.
How can the Guardium administrator confirm if the sniffer is restarting every few minutes?
A. Review the Audit Process Log for 'Sniffer stopped' message.
B. Review the Aggregation/Archive Log for 'Sniffer is restarting message.
C. Review the Scheduled Jobs Exceptions for 'Sniffer process failed' message.
D. Review the Buff Usage Monitor for the column TID to see if it changed every few minutes.
In a centrally managed environment, while executing the report 'Enterprise Buffer Usage Monitor', a Guardium administrator gets an empty report. Why is the report empty?
A. Sniffers are not running on the Collectors.
B. The report is not executed with a remote source on the Collector.
C. The report is not executed with a remote source on the Aggregator.
D. Correct custom table upload is not scheduled on the Central Manager.
An administrator just installed the Guardium product using the Guardium ISO image. Which step must the administrator perform as part of the initial set-up of the new appliance?
A. Generate the GUI certificate request.
B. Configure network settings on the appliance.
C. Restart the sniffer process from the CLI command prompt.
D. Obtain the passwords for the databases to be monitored by the appliance.
Auditors request a report of all unsuccessful login attempts to a database monitored by Guardium. How should a Guardium administrator create such a report?
A. Add a failed login rule to the policy.
B. Create a failed login query and report using access domain in Guardium.
C. Create a failed login query and report using exceptions domain in Guardium.
D. Create a failed login query and report using application data domain in Guardium.
A Guardium administrator has an issue with Guardium. The administrator has not seen this particular issue before and needs to get it fixed. To get this resolved, what should the administrator do?
A. Log a PMR and request an answer from IBM Support.
B. Log a PMR so IBM Support can contact the customer. Then, while waiting, do a search of the Guardium Knowledge Center and Technotes for known issues and resolutions.
C. Request IBM Support to initiate a remote session and collect what they need to resolve the issue.
D. Search Guardium Knowledge Center and Technotes for known issues and resolutions. Then, if still needed, collect must_gather information and full problem details required for a new PMR so that IBM Support can review the Problem before contacting the customer.
A Guardium administrator is setting up a Collector schedule to export data to an Aggregator and Archive its data to an Archive storage unit for additional data safety.
Given this scenario, which is true regarding the purge schedule?
A. The Archive and the Export have independent purge schedules but should not be run at the same time.
B. The Guardium unit would run the Export and Archive before any purge, so you would only see the last purge run each day.
C. it would not be possible to configure both on a Collector, the Aggregator should do the archiving and only export from the Collector.
D. Any time that Data Export and Data Archive are both configured, the purge age must be greater than both the ageat which to export and the ageat which to archive.
A Guardium policy has been configured with the following two rules:

AGuardium administrator is required to check for SQL statements from client IP 9.4.5.6 executed on object "TABLET. What domain(s) can the administrator create a report in to see the SQL?
A. Access
B. Policy Violations
C. Access and Access Policy
D. Access and Policy Violations
A Guardium administrator needs to build new appliances with the latest version of Guardium. How should the administrator obtain the ISO image?
A. Contact IBM Support.
B. Download fromibm.com
C. Download from IBM Fix Central.
D. Download from IBM Passport Advantage.
A Guardium administrator manages portal user synchronization by using a Central Manager.
When a change is made on the Central Manager such as, for example, adding a Guardium user to a Guardium group, how long should be allowed for the update to be synced with the managed units in a fully working environment?
A. 0minutes
B. 15 minutes
C. 30 minutes
D. 60 minutes
A Guardium administrator manages an environment containing four standalone Collectors. The administrator has been asked to provide a weekly report showing all Data Manipulation Language (DML) SQL statements performed by all database administrators on all databases. The administrator does not want to run the report on each Collector.
What should the administrator do to simplify this task and run the report in only one place every week?
A. Replace the 4 Collectors with one Aggregator.
B. Create an Enterprise Report on one Collector combining the data.
C. Add a Guardium Aggregator to the environment. Create and run the report on the Aggregator.
D. install a Configuration Auditing System (CAS) on each Database Server. Configure the CAS Client to send data to a Collector. Create and run the report on the Collector.