nerdexam
Check_Point

156-115.80 · Question #38

Joey's implementing a new R80.10 firewall cluster into the network. During the implementation he notices that the cluster object is in error state in SmartConsole. He tries to figure out the cause…

The correct answer is D. $CPDIR/log/ike.elg. Explanation/Reference: https://supportcenter.checkpoint.com/supportcenter/portal? eventSubmit_doGoviewsolutiondetails=&solutionid=sk25977 Which file would you need to make sure you collect when debugging a VPN that fails to establish that is configured to use IKEv2?…

Troubleshooting and Optimization

Question

Joey's implementing a new R80.10 firewall cluster into the network. During the implementation he notices that the cluster object is in error state in SmartConsole. He tries to figure out the cause of the problem and runs a ClusterXL kernel debug with command: `fw ctl debug m cluster + stat pnote conf ccp' ClusterXL kernel debug shows him following info: fwha_set_new_local_state: Old version HA machines exist around so prevent state change to READY. How can he solve the problem?

Options

  • A$FWDIR/log/ike2.elg
  • B$FWDIR/log/vpnd.xml.v2
  • C$FWDIR/log/ikev2.xml
  • D$CPDIR/log/ike.elg

How the community answered

(46 responses)
  • A
    7% (3)
  • B
    15% (7)
  • C
    4% (2)
  • D
    74% (34)

Explanation

Explanation/Reference: https://supportcenter.checkpoint.com/supportcenter/portal? eventSubmit_doGoviewsolutiondetails=&solutionid=sk25977 Which file would you need to make sure you collect when debugging a VPN that fails to establish that is configured to use IKEv2? Explanation/Reference: https://supportcenter.checkpoint.com/supportcenter/portal? eventSubmit_doGoviewsolutiondetails=&solutionid=skI4326

Topics

#ClusterXL#HA state machine#cluster debug#version compatibility

Community Discussion

No community discussion yet for this question.

Full 156-115.80 Practice