156-115.77 Exam Questions
310 real 156-115.77 exam questions with expert-verified answers and explanations. Page 2 of 7.
- Question #51
Which command would a troubleshooter use to verify table connection info (peak, concurrent) and verify information about cluster synchronization state?
- Question #52
Which definition best describes the file table.def function? It is a placeholder for:
- Question #53
The file ike.elg is a log file used to log IKE negotiations during VPN tunnel establishment. Where is this file located?
- Question #54
Which command displays compression/decompression statistics?
- Question #55
What debug file would you check to see what IKE version is being used?
- Question #56
What file contains IKEv2 debug messages?
- Question #57
What is the log file that shows the keep alive packets during the debug process?
- Question #58
What is the log file that shows the processes that participate in the tunnel initiation stage?
- Question #59
Which program could you use to analyze Phase I and Phase II packet exchanges?
- Question #60
Check Point Best Practices suggest that when you finish a kernel debug, you should run the command _____________________ .
- Question #61
Given the following IKEView output, what do we know about QuickMode Packet 1?
- Question #62
You are attempting to establish a VPN tunnel between a Check Point gateway and a 3rd party vendor. When attempting to send traffic to the peer gateway it is failing. You look in Sm...
- Question #63
You want to run VPN debug that will generate both ike.elg and vpn.elg files. What is the best command that can be used to achieve this goal?
- Question #64
In IKEView while troubleshooting a VPN issue between your gateway and a partner site you see an entry that states "Invalid ID". Which of the following is the most likely cause?
- Question #65
While troubleshooting a VPN issue between your gateway and a partner site you see an entry in Smartview Tracker that states "Info: encryption failure: Different community ID: possi...
- Question #66
You are troubleshooting a VPN issue between your gateway and a partner site and you get a drop log on your gateway that states "Clear text packet should be encrypted". Which of the...
- Question #67
Your company has recently decided to allow remote access for clients. You find that no one is able to connect, although you are confident that your rule set and remote access commu...
- Question #68
You are experiencing an issue where Endpoint Connect client connects successfully however, it disconnects every 20 seconds. What is the most likely cause of this issue?
- Question #69
In a VPN configuration, the following mode can be used to increase throughput by bypassing firewall enforcement.
- Question #70
When VPN user-based authentication fails, which of the following debug logs is essential to understanding the issue?
- Question #71
In Tracker you are troubleshooting a VPN issue between your gateway and a partner site and you get a drop log that states "No proposal chosen" what is the most likely cause?
- Question #72
Which of the following is NEVER affected by incorrect OS time and date configuration?
- Question #73
In the process of troubleshooting traffic issues across a VPN tunnel, you notice on the output of fw monitor -e host(172.21.1.10), accept; that packets are going through the inboun...
- Question #74
You are troubleshooting your VPN and are reviewing the output of your command fw monitor, shown below. What can you determine from the following output?
- Question #75
What would the following command fw monitor tell you?
- Question #76
After disabling SecureXL you ran command fw monitor to help troubleshoot a VPN issue. In your review you note that you only see pre-inbound traffic ("i") and no other traffic after...
- Question #77
You are setting up VPN between two gateways Local-GW and New-GW and want to use shared secret. For some reason New-GW is not showing up in the shared secret properties under mesh c...
- Question #78
SecureXL uses templating to accelerate traffic passing through the gateway. What command should you run to determine if Accept, Drop and NAT templating is enabled?
- Question #79
Certain rules will disable connection rate acceleration (templates) in the Rule Base. What command should be used to determine on what rule templates are disabled?
- Question #80
Look at the follow Rule Base display. Rule 5 contains a TIME object. What is the effect on the following rules?
- Question #81
The command fwaccel stat displays what information?
- Question #82
When running a SecureXL debug how do you initialize the debug buffer to 32000?
- Question #83
What command can be used to get the following output?
- Question #84
What command would you use to determine if a particular connection is being accelerated by SecureXL?
- Question #85
A new packet has arrived to a firewall's interface. The packet was compared with the connection table and there is no match. What process does the firewall start with that connecti...
- Question #86
According to this Rule Base, templates will be created until which rule?
- Question #87
How to check the overall SecureXL statistics:
- Question #88
When are rules that include identity awareness access roles accelerated through SecureXL?
- Question #89
What command show the same information as fwaccel stats l?
- Question #90
In order to perform some connection troubleshooting, you run the command fw monitor e accept dport = 443. You do NOT see the TCP ACK packet. Why is this?
- Question #91
What is the corresponding connection template entered into the SecureXL connection table from the connection: "10.0.0.100:1024 > 216.239.59.59:80"
- Question #92
When are rules that include Identity Awareness Access (IDA) roles accelerated through SecureXL?
- Question #93
In the policy below, which rule disables SecureXL?
- Question #94
When optimizing a customer firewall Rule Base, what is the BEST way to start the analysis?
- Question #95
What do the `F' flags mean in the output of fwaccel conns?
- Question #96
What command should a firewall administrator use to begin debugging SecureXL?
- Question #97
A firewall administrator knows the details of the packet header for an already established connection going through a firewall. What command will show if SecureXL will accelerate t...
- Question #98
What is the command to check how many connections the firewall has detected for the SecureXL device?
- Question #99
While troubleshooting high CPU usage on cores 3 and 4 on a cluster, you notice the following output of fwaccel stats -s: What could be a possible cause of the high CPU usage?
- Question #100
Which of the following statements are TRUE about SecureXL?