156-115.77 Exam Questions
310 real 156-115.77 exam questions with expert-verified answers and explanations. Page 4 of 7.
- Question #151
ACME Corp has a cluster consisting of two 13500 appliances. As the Firewall Administrator, you notice that on an output of top, you are seeing high CPU usage of the cores assigned...
- Question #152
The CoreXL software architecture includes the Secure Network Dispatcher (SND). One of the responsibilities of SND is to:
- Question #153
What is the method to change the number of cores that CoreXL will use?
- Question #154
What command verifies which core each gateway interface and firewall instance is currently running on?
- Question #155
A Security Administrator wants to increase the amount of processing cores on a Check Point Security Gateway. He starts by increasing the number of cores, however the number of kern...
- Question #156
What command displays the Connections Table for a specified CoreXL firewall instance?
- Question #157
Why would you not see a CoreXL configuration option in cpconfig?
- Question #158
Where would you go to adjust the number of Kernels in CoreXL?
- Question #159
CoreXL on IPSO R77.20 does NOT support which of the following features?
- Question #160
When troubleshooting a performance problem on multicore firewall that is using CoreXL, what command checks the number of connections each core is processing?
- Question #161
A firewall has 8 CPU cores and the correct license. CoreXL is enabled. How could you set kernel instance #3 to run on processing core #5?
- Question #162
What command would you use to check if CoreXL is enabled?
- Question #163
Which command will allow you to change firewall affinity and survive a reboot with no further modification?
- Question #164
What does the output of the commands fw ctl multik stat and fw6ctl multik stat show?
- Question #165
You are at a customer site, and when you run cphaprob stat you are not seeing a normal ClusterXL Health. What command could you run verify the number of cores are not matched on bo...
- Question #166
What is required when changing the configuration of the number of workers in CoreXL?
- Question #167
In IPS which of the two initial profiles is the more resource intensive?
- Question #168
In IPS what does a high confidence rating mean?
- Question #169
Which of the following CANNOT be used as a source/destination for an IPS network exception?
- Question #170
When using Geo Protections, you find there are logs for a country that you believe is incorrect. What file do you review to verify what country Geo Protections should identify the...
- Question #171
When performing a Clean IPS procedure to resolve a corrupt IPS files issue, what file is modified in order for the SDUU process to automatically update the IPS files after completi...
- Question #172
How would one enable `INSPECT debugging' if one suspects IPS false positives?
- Question #173
You have configured IPS on your network; you find you are being overwhelmed with what you believe are false positives. You investigated this traffic and confirmed they are false po...
- Question #174
You have spent time configuring the IPS profile on your primary gateway firewall. You want to ensure that this profile can be applied to all gateway firewalls in your environment....
- Question #175
You are adding a new gateway into your network. You must make sure that it is running the latest Corporate approved IPS profile. How can you get this information to your new gatewa...
- Question #176
SNORT is a popular open source IDS, you would like to import SNORT rules from plain text into Check Point Smart Center. How can you accomplish this?
- Question #177
You would like to import SNORT rules but to comply with corporate policy you need to test the conversion prior to import. How can you do this?
- Question #178
You are a system administrator and would like to configure Geo Protection on your gateway to comply with a new corporate policy. What must you have to do this?
- Question #179
You have just taken over as a firewall administrator. Your company is using Geo Protections on your gateway, but you want to verify that the protections are up-to-date. How can you...
- Question #180
What would be considered Best Practice to determine which IPS protections you can safely disable for your environment?
- Question #181
You are troubleshooting an issue for your HR team. One of the users is using IP 10.10.10.24. They having been trying to access the vacation servers but all connections are failing....
- Question #182
In R77, Under what circumstances would IPS bypass be enforced?
- Question #183
Your Customer would like to enable IPS in his Corporate Cluster, but he is concerned about high CPU usage because if the IPS inspection. What feature would you configure to disable...
- Question #184
Where do you run the command get_ips_statistics.sh from?
- Question #185
"Tuning" IPS protections to suit the specific needs of an environment can be accomplished by all of the following EXCEPT:
- Question #186
OF the following, which is NOT a kernel parameter relating to the IPS "Bypass Under Load" settings:
- Question #187
"If the machine is under stress, we do not want to leave the stress condition due to a single measurement (which could be an anomaly), but rather wait for a given length of time, b...
- Question #188
Jerry is a network administrator for ACME Co. Their network contains 5 gateways all managed by a single Management Server. They are currently receiving an exorbitant amount of fals...
- Question #189
You have created a number of profiles and activated the relevant protections. Afterwards, you decide that the `Enterprise gateway' should allow instant messaging. The current profi...
- Question #190
What steps can be taken if IPS is causing a High Performance Impact?
- Question #191
When the IPS `Bypass under Load' mechanism detects that the certain CPU and memory usage thresholds have been reached, which of the following occurs?
- Question #192
Which of the following IPS Layers is responsible for ensuring that only valid retransmission packets are allowed to proceed to destinations?
- Question #193
One of IPS Layers' main functions are to ensure compliance to well-defined protocol standards, detect anomalies if any exist, and assemble the data for further inspection by other...
- Question #194
Which of the following IPS Layers is the "brain" of the IPS? That is, what coordinates between different components, decides which protections should run on a certain packet, decid...
- Question #195
Which of the following IPS Layers is a set of signatures and/or handlers, where: - Signature is a malicious pattern that is searched for. - Handler is the INSPECT code that perform...
- Question #196
You have strict IPS corporate guidelines. This is having a performance impact on the firewall. What steps could you take to minimize this impact without compromising the corporate...
- Question #197
Which of the following is true when IPv6 is enabled on a Security Gateway?
- Question #198
Which of the following is true about Node / Host objects?
- Question #199
Which of these commands can be used to display the IPv6 routes?
- Question #200
Which of these commands can be used to display the IPv6 status?