Want to Pass 156-115.77 Exam In Next HOURS? Get it now →
February 5, 2018

A Review Of Exact 156-115.77 dumps

Act now and download your Check Point 156-115.77 test today! Do not waste time for the worthless Check Point 156-115.77 tutorials. Download Regenerate Check Point Check Point Certified Security Master exam with real questions and answers and begin to learn Check Point 156-115.77 with a classic professional.

Q11. - (Topic 1) 

The user tried to connect in SmartDashboard and did not work. You started a FWM debug and receive the logs below: 

What is the error cause? 

A. IP not defined in $FWDIR/conf/gui-clients 

B. Wrong user and password 

C. Wrong password 

D. Wrong user 

Answer:


Q12. - (Topic 5) 

A firewall administrator knows the details of the packet header for an already established connection going through a firewall. What command will show if SecureXL will accelerate that packet? 

A. fw ctl zdebug + sxl error warning asm 

B. fwaccel conns 

C. fwaccel templates 

D. fw tab –t connections –f | grep ‘dest. port #’ | grep ‘source port #’ | grep ‘dest. IP address’ 

Answer:


Q13. - (Topic 3) 

Adam wants to find idle connections on his gateway. Which command would be best suited for viewing the connections table? 

A. fw tab -t connections 

B. fw tab -t connections -u –f 

C. fw tab -t connections –x 

D. fw tab -t connections –s 

Answer:


Q14. - (Topic 4) 

You are attempting to establish a VPN tunnel between a Check Point gateway and a 3rd party vendor. When attempting to send traffic to the peer gateway it is failing. You look in SmartView Tracker and see that the failure is due to “Encryption failure: no response from peer”. After running a VPN debug on the problematic gateway, what is one of the files you would want to analyze? 

A. $FWDIR/log/fw.log 

B. $FWDIR/log/fwd.elg 

C. $FWDIR/log/ike.elg 

D. /var/log/fw_debug.txt 

Answer:


Q15. - (Topic 4) 

Which command displays compression/decompression statistics? 

A. vpn ver –k 

B. vpn compstat 

C. vpn compreset 

D. vpn crlview 

Answer:


Q16. - (Topic 5) 

While troubleshooting high CPU usage on cores 3 and 4 on a cluster, you notice the following output of fwaccel stats -s: 

What could be a possible cause of the high CPU usage? 

A. Connections are being partially accelerated by SecureXL, but too many packets are still being processed by the firewall kernel. 

B. The Secure Network Dispatcher (SND) is having to process too much inbound traffic from the NICs. 

C. Connections are not being accelerated by SecureXL, and all packets are being forwarded to firewall kernel instances for inspection. 

D. The Secure Network Dispatcher (SND) is working too hard to distribute the traffic to the acceleration layer. 

Answer:


Q17. - (Topic 10) 

What is the length of an IPv6 address? 

A. 128 Bytes 

B. 54 bits 

C. 128 bits 

D. 6 Bytes 

Answer:


Q18. - (Topic 4) 

In a VPN configuration, the following mode can be used to increase throughput by 

bypassing firewall enforcement. 

A. Virtual Tunnel Interface (VTI) Mode can bypass firewall for all encrypted traffic 

B. Hub Mode can be used to bypass stateful inspection 

C. There is no such mode that can bypass firewall enforcement 

D. Wire mode can be used to bypass stateful inspection 

Answer:


Q19. - (Topic 1) 

When performing a fwm debug, to which directory are the logs written? 

A. $FWDIR/log 

B. $FWDIR/log/fwm.elg 

C. $FWDIR/conf/fwm.elg 

D. $CPDIR/log/fwm.elg 

Answer:


Q20. - (Topic 3) 

What would be a reason to use the command cphaosu stat? 

A. To determine the number of connections from OPSEC software using Open Source Licenses. 

B. To decide when to fail over traffic to a new cluster member. 

C. This is not a valid command. 

D. To see the policy install dates on each of the members in the cluster. 

Answer:



see more free 156-115.77 exam dumps