Weekend Sale - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

When running a debug with fw monitor, which parameter will create a more verbose output?

A.

-I

B.

-i

C.

V

D.

-D

Application Control and URL Filtering update files are located in which directory?

A.

SCPDIR/appi/update

B.

SFWDIR/conf/update

C.

SCPDIR/apci/update

D.

SFWDIR/appi/update/

Which type of NAT allows both incoming and outgoing connections?

A.

Both Static and Hide NAT

B.

Hide NAT

C.

Static NAT

D.

Port NAT

What is the name of the Software Blade Package containing CDR (Content Disarm & Reconstruction) and Zero Day protection?

A.

TE - Threat Emulation

B.

SNBT - Sandblast

C.

NGTX - Next Generation Threat Prevention and Extraction

D.

NGTP - Next Generation Threat Prevention

What are some measures you can take to prevent IPS false positives?

A.

Capture packets, Update the IPS database, and Back up custom IPS files

B.

Use Recommended IPS profile

C.

Use IPS only in Detect mode

D.

Exclude problematic services from being protected by IPS (sip, H.323, etc.)

SmartConsole closes immediately, what is the most likely reason?

A.

The process crashed in kernel space

B.

The process crashed in user space

C.

The user idle time expired and SmartConsole disconnected the user

D.

The Security Management server rejected the client connection

Which is the correct "fw monitor" syntax for creating a capture file for loading it into Wireshark?

A.

fw monitor -e "accept Output.cap

B.

This cannot be accomplished as it is not supported with R80.10

C.

fw monitor -e "accept

D.

fw monitor -e "accept

As a security administrator/engineer in your company, you have noticed that your HQ Check Point Security Management Server is not receiving logs from your HQ Check Point Gateway/Cluster. To investigate this issue in the command line, you will need to verify which process is running?

A.

cpm

B.

cpd

C.

fwd

D.

fwm

After manipulating the rulebase and objects with SmartConsole the application crashes and closes immediately. To troubleshoot, you will need to review the crash report. In which directory on the host PC will you find this report?

A.

\data\crash_report\

B.

\data\crash_report\

C.

\data\crash_report

D.

\crash_report\data\

How many captures does the command "fw monitor -p all" take?

A.

All 15 of the inbound and outbound modules

B.

The -p option takes the same number of captures, but gathers all of the data packet

C.

1 from every inbound and outbound module of the chain

D.

All 4 points of the fw VM modules