HP Certified Professional
HP Certified Professional
HP Certified Professional
HP Certified Professional
HP Internet Security &
e-Commerce Solutions
exam #HP1-805
Exam Preparation Guide
Purpose of the Exam Preparation Guide
The intent of this guide is to set expectations about the content and the context of the exam and to help candidates prepare for the exam. In this guide, you will find recommended training courses, reference and study material to assist you in preparing for the exam.
Studies conducted by HP show that a combination of course attendance and self-study maximizes the likelihood of passing the exam on the first attempt.
Audience
This exam is for system administrators with at least two years of experience with HP ProLiant servers and knowledge of networking and website administration. Examples of job roles:
! Webmasters
! Systems Engineers
! System Administrators
! Customer IT staff
! HP partner presales technical systems engineers and consultants
! HP partner implementation engineers
General areas of content include: ProLiant server concepts and terminology, website planning and development, load-balancing solutions, website content and web server security, intrusion detection, firewalls, and virus protection.
Certification Requirements
This HP Internet Security and e-Commerce Solutions exam is the requirement to be certified as a Master Accredited Systems Engineer.
Exam Details
At the beginning of the exam, you will be asked to answer several survey
questions. The survey questions are designed to assist the exam development team in accurately profiling test results and to improve future exams.
The following are details about the exam:
! Number of items: 50
! Item types: Multiple choice
! Time commitment: 60 minutes
! Passing Score: 80%
! Reference Material: No on-line or hard copy reference material will be allowed at the testing site.
Exam Registration
! This exam is available at Prometric.
Comments on the Exam
After the exam has been completed, there is additional 15 minutes allotted for the participant to make specific comments about the test items (i.e., accuracy,
appropriateness to audience, etc). HP welcomes these comments as part of our continuous improvement process.
Exam Content
The following outline represents the specific areas of content covered in the exam. Use this outline to guide your study and to check your readiness for the exam. The exam measures your understanding of these areas. The approximate percentage of exam questions dedicated to each major content area is included in parenthesis. The higher the percentage listed for each topic, the more questions will be on the exam.
Because the exam content is not based solely on content in the HP Internet Security and e-Commerce Solutions course, please refer to the documentation resources described later in this document for additional study references. The general areas of content include:
! DISA Framework (11%)
! Website Planning (6%)
! Microsoft Commerce Server (8%)
! Microsoft Content Management Server (6%)
! Managing Website Implementations (13%)
! Implementing Load Balancing (8%)
! Planning Internet Security (14%)
! Intrusion Detection (11%)
! Implementing Firewall Security (17%)
Recommended Training and Study References
This section lists training courses and documents that can help you acquire a majority of the knowledge and skills needed to pass the exam. You must also gain the practical experience outlined in this guide
You are not required to take the courses listed in this section. However, HP
strongly recommends that you attend the classes, participate in class labs, and thoroughly review all course material and documents before taking the exam, even if you believe you have sufficient on-the-job experience.
Instructor-Led Training
Use the information in this guide and the practical experience you have gained to determine your need for the instructor-led training.
Title Course# Enrollment Instructions
HP Internet Security & e-Commerce Solutions
439 http://www.hp.com/go/training
Web-based Training
Self-paced training and technical documentation may provide appropriate learning alternatives to instructor-led training for more experienced candidates.
Note
At the time of the creation of this preparation guide, no WBT materials were available for exam preparation.
Documentation
The following documentation can help to further clarify systems management topics that may be covered on the exam.
Reference Guides
! Windows 2000 Advanced Server
! Commerce Server 2002 Product Documentation
! Content Management Server 2002 Product Documentation
! ISA Server Product Documentation
White Papers
! Overview of the HP Dynamic Internet Solutions Architecture (DISA)
! Scaling Up and Scaling Out with ProLiant Servers and Microsoft Windows
! Load Balancing Considerations for DISA Environments
! Microsoft's Network Load Balancing
! Web Database Connectivity, Capacity and Performance on HP Servers
! Installation Checklist for Microsoft Internet Information Services on ProLiant Servers
! Web Server Security Fundamentals in a Microsoft Web Environment
! HP Recommended Configurations for Microsoft Commerce Server 2002 Solutions
! Solution Guide for Microsoft® Commerce Server 2000 Storefront on HP ProLiant Servers
! Installation Checklist for Commerce Server 2000 on ProLiant Servers in a DISA Configuration
! Performance Characterization of Microsoft Commerce Server 2000 on ProLiant Servers for Storefronts
Sample Test Items
The sample test items give you a preview of what the actual test items will look like. It is important to note that these items WILL NOT be on the exam itself. However, they are representative of the actual items, and they should help you become familiar with the format and complexity of the test items. These sample test items are not a check for readiness.
1. Which is an example of a DISA global component? a. load-balancer
b. caching appliance c. database cluster
d. Remote Insight Lights-Out Edition II
2. How should load balancing be configured if a web application requires clients to establish and maintain a session on a single web server? a. disable cookies
b. enable affinity
c. retain user state information d. enable multicast support
3. Which Microsoft application can be used to develop a supplier website? a. Internet Information Server
b. SQL Server
c. Content Management Server d. Commerce Server
4. Which application is required to store website content, customer profiles, and product information for websites developed with Microsoft Content
Management Server?
a. Microsoft Database Engine b. Microsoft Exchange Server c. Microsoft SQL Server
5. Which Commerce Server component updates catalogs, targets content to users, profile users and organizations, and analyzes site usage and productivity?
a. Business Analytic System b. Business Desk
c. Business Processing Pipeline Systems d. Commerce Server Manager
6. Which type of Commerce Server cookie allows you to track authenticated users who visit your website?
a. nonpersistent b. persistent c. dynamic d. targeting
7. Which component is necessary to allow Microsoft Content Management Server to authenticate users for website development and access?
a. IIS
b. Active Directory c. Certificate Services d. SSL
8. Which Microsoft Content Management Server component enables content, templates, and users to be moved between servers to share information across enterprise applications?
a. Site Builder
b. Server Configuration Application c. Site Deployment Manager
9. Connections are being blocked or rejected on your website. What could be the problem?
a. processor bottleneck b. memory bottleneck c. cache flushing d. disk thrashing
10. Which DISA component makes extensive use of the disk system? a. load balancing
b. IIS c. firewall d. database
11. Which HP load balancing and availability solution does not require ProLiant network adapters to share features?
a. Network Fault Tolerance b. Transmit Load Balancing
c. Switch-Assisted Load Balancing d. Team Balancing
12. Your web server is running Windows 2000 Server. What is required to deploy Network Load Balancing (NLB)?
a. Add the component through Add/Remove Programs. b. Install the Administrative Pack.
c. Install NLB through Application Center. d. Upgrade to Service Pack 2.
13. What is the default configuration mode for NLB? a. multicast
b. unicast
c. mixed unicast/multicast d. multi-homed
14. Which attack causes a server to fail when a user sends more data than the target system can receive at one time?
a. buffer overflow b. hijacking c. IP spoofing d. SYN flood
15. What is the HP recommendation for the SNMP security vulnerability? a. Delete the SNMP Parameters key.
b. Filter ports 161 and 162 for SNMP communication only. c. Block ports 280 and 443.
d. Change the default community strings to unique values.
16. Which RealSecure component monitors different types of suspicious activity that indicate an attack?
a. packet filters b. event collectors c. daemons d. sensors
17. Which type of ISA Server iltering works by intercepting and evaluating packets before allowing passage through the firewall?
a. dynamic packet b. circuit level c. IP packet
d. application level
18. Which port does the SMTP filter intercept communication and inspects it to ensure the SMTP commands are authorized before passing the
communication to the destination server? a. 443
b. 25 c. 161 d. 280
19. Which order are incoming requests processed on ISA Server? a. 1. application filters, 2. protocol rules, 3. site and content rules
b. 1. protocol rules, 2. site and content rules, 3. routing rules and firewall chaining
c. 1. packet filters, 2.web publishing rules and server publishing rules, 3. routing rules
d. 1. web publishing rules and server publishing rules, 2. routing rules, 3. routing rules and firewall chaining
20. Which ServerProtect component is a communications hub for coordinating antivirus defense activities within its domains?
a. normal server b. information server c. management console d. WebProtect gateway
Conclusion
HP wishes you success in the HP Certified Professional Program and in passing the exam for which you are preparing.
Appendix A: Answers to Sample Exam Items
1. d 2. b 3. d 4. c 5. b 6. a 7. b 8. c 9. a 10. d 11. a 12. c 13. b 14. a 15. d 16. d 17. c 18. b 19. c 20. b