Checkpoint 156-585 Exam Practice Questions (P. 2)
- Full Access (75 questions)
- One Year of Premium Access
- Access to one million comments
- Seamless ChatGPT Integration
- Ability to download PDF files
- Anki Flashcard files for revision
- No Captcha & No AdSense
- Advanced Exam Configuration
Question #6
You are trying to establish a VPN tunnel between two Security Gateways but fail. What initial steps will you make to troubleshoot the issue?
- Acapture traffic on both tunnel members and collect debug of IKE and VPND daemonMost Voted
- Bcapture traffic on both tunnel members and collect kernel debug for fw module with vm, crypt, conn and drop flags, then collect debug of IKE and VPND daemon
- Ccollect debug of IKE and VPND daemon and collect kernel debug for fw module with vm, crypt, conn and drop flags
- Dcapture traffic on both tunnel members and collect kernel debug for fw module with vm, crypt, conn and drop flags
Correct Answer:
A
A
send
light_mode
delete
Question #7
An administrator receives reports about issues with log indexing and text searching regarding an existing Management Server. In trying to find a solution she wants to check if the process responsible for this feature is running correctly. What is true about the related process?
- Afwm manages this database after initialization of the ICA
- Bcpd needs to be restarted manual to show in the list
- Cfwssd crashes can affect therefore not show in the list
- Dsolr is a child process of cpm
Correct Answer:
D
D
send
light_mode
delete
Question #8
When debugging is enabled on firewall kernel module using the ‘fw ctl debug’ command with required options, many debug messages are provided by the kernel that help the administrator to identify issues. Which of the following is true about these debug messages generated by the kernel module?
- AMessages are written to a buffer and collected using ‘fw ctl kdebug’Most Voted
- BMessages are written to console and also /var/log/messages file
- CMessages are written to /etc/dmesg file
- DMessages are written to $FWDIR/log/fw.elg
Correct Answer:
B
B
send
light_mode
delete
Question #9
How can you increase the ring buffer size to 1024 descriptors?
- Aset interface eth0 rx-ringsize 1024Most Voted
- Bfw ctl int rx_ringsize 1024
- Cecho rx_ringsize=1024>>/etc/sysconfig/sysctl.conf
- Ddbedit>modify properties firewall_properties rx_ringsize 1024
Correct Answer:
A
A
send
light_mode
delete
Question #10
What are four main database domains?
- ASystem, Global, Log, Event
- BSystem, User, Host, Network
- CLocal, Global, User, VPN
- DSystem, User, Global, LogMost Voted
Correct Answer:
D
D
send
light_mode
delete
All Pages
