Checkpoint 156-215.77 Exam Practice Questions (P. 2)
- Full Access (388 questions)
- Six months of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #11
The customer has a small Check Point installation which includes one Windows 7 workstation as the SmartConsole, one GAiA device working as Security
Management Server, and a third server running SecurePlatform as Security Gateway. This is an example of a(n):
Management Server, and a third server running SecurePlatform as Security Gateway. This is an example of a(n):
- AHybrid Installation
- BUnsupported configuration
- CStand-Alone Installation
- DDistributed Installation
Correct Answer:
D
D
send
light_mode
delete
Question #12
The customer has a small Check Point installation which includes one Windows 2008 server as SmartConsole and Security Management Server with a second server running GAiA as Security Gateway. This is an example of a(n):
- AStand-Alone Installation.
- BDistributed Installation.
- CUnsupported configuration.
- DHybrid Installation.
Correct Answer:
B
B
send
light_mode
delete
Question #13
When doing a Stand-Alone Installation, you would install the Security Management Server with which other Check Point architecture component?
- ANone, Security Management Server would be installed by itself.
- BSmartConsole
- CSecureClient
- DSecurity Gateway
Correct Answer:
D
D
send
light_mode
delete
Question #14
Tom has been tasked to install Check Point R77 in a distributed deployment. Before Tom installs the systems this way, how many machines will he need if he does NOT include a SmartConsole machine in his calculations?
- AThree machines
- BOne machine
- CTwo machines
- DOne machine, but it needs to be installed using SecurePlatform for compatibility purposes
Correct Answer:
C
C
send
light_mode
delete
Question #15
Which command allows Security Policy name and install date verification on a Security Gateway?
send
light_mode
delete
Question #16
You have two rules, ten users, and two user groups in a Security Policy. You create database version 1 for this configuration. You then delete two existing users and add a new user group. You modify one rule and add two new rules to the Rule Base. You save the Security Policy and create database version 2. After awhile, you decide to roll back to version 1 to use the Rule Base, but you want to keep your user database. How can you do this?
- ARun fwm dbexport -l filename. Restore the database. Then, run fwm dbimport -l filename to import the users.
- BRun fwm_dbexport to export the user database. Select restore the entire database in the Database Revision screen. Then, run fwm_dbimport.
- CRestore the entire database, except the user database, and then create the new user and user group.
- DRestore the entire database, except the user database.
Correct Answer:
D
D
send
light_mode
delete
Question #17
Which feature or command provides the easiest path for Security Administrators to revert to earlier versions of the same Security Policy and objects configuration?
- ADatabase Revision Control
- BPolicy Package management
- Cdbexport/dbimport
- Dupgrade_export/upgrade_import
Correct Answer:
A
A
send
light_mode
delete
Question #18
Your Security Management Server fails and does not reboot. One of your remote Security Gateways managed by the Security Management Server reboots. What occurs with the remote Gateway after reboot?
- ASince the Security Management Server is not available, the remote Gateway cannot fetch the Security Policy. Therefore, all traffic is allowed through the Gateway.
- BSince the Security Management Server is not available, the remote Gateway cannot fetch the Security Policy. Therefore, no traffic is allowed through the Gateway.
- CThe remote Gateway fetches the last installed Security Policy locally and passes traffic normally. The Gateway will log locally, since the Security Management Server is not available.
- DSince the Security Management Server is not available, the remote Gateway uses the local Security Policy, but does not log traffic.
Correct Answer:
C
C
send
light_mode
delete
Question #19
How can you configure an application to automatically launch on the Security Management Server when traffic is dropped or accepted by a rule in the Security
Policy?
Policy?
- ASNMP trap alert script
- BCustom scripts cannot be executed through alert scripts.
- CUser-defined alert script
- DPop-up alert script
Correct Answer:
C
C
send
light_mode
delete
Question #20
Which of the following is NOT useful to verify whether or not a Security Policy is active on a Gateway?
- Afw ctl get string active_secpol
- Bfw stat
- Ccpstat fw -f policy
- DCheck the Security Policy name of the appropriate Gateway in SmartView Monitor.
Correct Answer:
A
A
send
light_mode
delete
All Pages