Free C2150-609 Exam Braindumps (page: 6)

Page 5 of 19

The customer currently maintains all its users in Active Directory. As part of its new IBM Security Access Manager (ISAM) V9.0 deployment, the customer understands it will have to implement the ISAM "Global Sign-on (GSO)" to achieve SSO with certain backend applications which do their own authentication and cannot be modified.
Which federated repositories configuration will address the customer requirements?

  1. Use an external ISDS LDAP as the ISAM Primary LDAP, federate with the AD and import all AD users into the ISAM TDS
  2. Configure the AD as the ISAM Primary LDAP, which will create the necessary secauthority=default suffix. Import all users into the ISAM AD
  3. Use the ISAM embedded LDAP as the Primary LDAP, federate with the AD and configure "basic user", and specify "basic-user-principal-attribute = samAccountName"
  4. Use an external ISDS LDAP as the Primary LDAP, federate with the AD, configure "basic user", specify "basic-user-principal-attribute = samAccountName" and "basic-user-search-suffix = secauthority=default"

Answer(s): B



A customer has three LDAP servers: A master (ds1.example.com), another master (ds2.example.com) and a read-only replica (ds3.example.com) used for IBM Security Access Manager (ISAM) V9.0. The deployment professional has configured the ISAM runtime using ds1.example.com as the registration server.
Which configuration will provide load balancing for LDAP read across all three servers and failover to ds2.example.com for LDAP write?

  1. replica = ds2.example.com,389,readonly,5
    replica = ds3.example.com,389,readonly,5
    replica = ds2.example,com,389,readwrite,6
  2. replica = ds1.example.com.389,readonly,6
    replica = ds2.example.com,389,readonly,6
    replica = ds3.example.com,389.readonly,6
    replica = ds2.example.com,389,readwrite,4
  3. replica = ds1.example.com,389,readonly,4
    replica = ds2.exomple.com,389,readonly,4
    replica = ds3.example.com.389,readonty,4
    replica = ds2.example com,389,readwrite,6
  4. replica = ds1.example.com,389,readonly,1
    replica = ds2.example.com,389,readonly,2
    replica = ds3.example.com,389,readonly,3
    replica = ds2.exomple.com,389,readwrrte,4

Answer(s): A



Which web resource should be used to keep up to date on support flashes, fixpack announcements, and other product related issues?

  1. The IBM Support Portal
  2. The IBM Security twitter account
  3. The LinkedIn IBM Security Access Manager V9.0 Group
  4. The IBM devWorks IBM Security Access Manager V9.0 Forum

Answer(s): D



A customer has deployed an IBM Security Access Manager V9.0 solution to protect web applications. After the initial authentication between the client and WebSEAL, WebSEAL can build a new Basic Authentication header and use the --b option to provide the authenticated Security Access Manager user name (client's original identity) together with a predefined static password across the junction to the back-end server.
Which configuration option will accomplish this?

  1. ­b gso
  2. ­b filter
  3. ­b ignore
  4. ­b supply

Answer(s): C






Post your Comments and Discuss IBM C2150-609 exam with other Community members:

C2150-609 Exam Discussions & Posts