156-115.80 Exam Questions
189 real 156-115.80 exam questions with expert-verified answers and explanations. Page 3 of 4.
- Question #110
What would be a reason for changing the "Magic MAC"?
- Question #111
What are the kernel parameters that control "Magic MACs"?
- Question #112
What would be a reason to use the command cphaosu stat?
- Question #113
You run the commands: fw ctl debug 0 fw ctl debug -buf 32000 Which of the following commands would be best to troubleshoot a clustering issue?
- Question #114
You run the command fw tab -t connections -s on both members in the cluster. Both members report differing values for "vals" and "peaks". Which may NOT be a reason for this differe...
- Question #115
Your customer reports that the time on the standby cluster member is not correct. After failing over and making it active, the time is now correct. NTP has been configured on both...
- Question #116
What is the function of the setting "no_hide_services_ports" in the tables.def files?
- Question #117
Which command will you run to list established VPN tunnels?
- Question #118
You are in VPN troubleshooting with a Partner and you suspect a mismatch configuration in Diffie- Hellman (DH) group to Phase1. After starting a vpn debug, in which packet would yo...
- Question #119
True or False: Software blades perform their inspection primarily through the kernel chain modules.
- Question #120
When using the command fw monitor, what command ensures the capture is accurate?
- Question #121
You are running a debugging session and you have set the debug environment to TDERROR_ALL_ALL=5 using the command export TDERROR_ALL_ALL=5. How do you return the debug value to def...
- Question #122
What command would you use to view which debugs are set in your current working environment?
- Question #123
What causes the SIP Early NAT chain module to appear in the chain?
- Question #124
When you perform an install database, the status window is filled with large amounts of text. What could be the cause?
- Question #125
When finished running a debug on the Management Server using the command fw debug fwm on how do you turn this debug off?
- Question #126
Which of the following items is NOT part of the columns of the chain modules?
- Question #127
John is a Security Administrator of a Check Point platform. He has a mis-configuration issue that points to the Rule Base. To obtain information about the issue, John runs the comm...
- Question #128
You are trying to troubleshoot a NAT issue on your network, and you use a kernel debug to verify a connection is correctly translated to its NAT address. What flags should you use...
- Question #129
Since switching your network to ISP redundancy you find that your outgoing static NAT connections are failing. You use the command _________ to debug the issue.
- Question #130
Remote VPN clients can initiate connections with internal hosts, but internal hosts are unable to initiate connections with the remote VPN clients, even though the policy is config...
- Question #131
Where in a fw monitor output would you see source address translation occur in cases of automatic Hide NAT?
- Question #132
You run cpconfig to reset SIC on the Security Gateway. After the SIC reset operation is complete, the policy that will be installed is the:
- Question #133
You are trying to set "VPN Directional Match" on the VPN column but the "Directional Match Condition" option is not there. Why is this missing?
- Question #134
How do you designate the "enforcement point gateway" for the peers involved in "VPN Directional Enforcement"?
- Question #136
How does the "Directional Enforcement" rule manage subsequent packet inspection?
- Question #137
How do you add the route entry for the "Enforcement Point Gateway" on the Management Server?
- Question #138
Which of the following is an authentication method used by Identity Awareness?
- Question #139
'kernel: neighbor table overflow' What is the cause?
- Question #140
The 'Maximum Entries' value in the GAiA Portal corresponds to the 'gc_thresh3' parameter in the Linux kernel and has value of 1024. Knowing this, you know that gc_thresh2 and gc_th...
- Question #141
Which item below in a Security Policy would be enforced first?
- Question #142
Which of these Security Policy changes optimize Security Gateway performance?
- Question #143
Which of the following is NOT a vpn debug command used for troubleshoot?
- Question #144
By default, how long does the UDP connection remain on the state table?
- Question #145
What is the correct syntax for firewall monitor to output to standard out?
- Question #146
What is the purpose of a Management server?
- Question #147
Which command would show the synchronization statistics between cluster members?
- Question #148
You suspect that IPS protections may be dropping legitimate traffic by mistake. To reduce the false positives, what GuiDBedit parameter could you enable to work with fw ctl zdebug...
- Question #149
An organization has 3 sites; 1 Headquarters (HQ) site and 2 remote sites. The remote sites are connected to the HQ through site-to-site VPNs and phone communication is done using s...
- Question #150
John works for ABC Corporation. His manager wants him to analyze the previous day's resource usage on the firewall. John decides to use cpview. John knows that, by default cpview h...
- Question #151
Which Threat Prevention daemon is the core Threat Emulation engine and responsible for emulation files and communications with Threat Cloud?
- Question #152
Which command do you need to execute to insert fw monitor after TCP streaming (out) in the outbound chain using absolute position?Given the chain was 1ffffe0, choose the correct an...
- Question #153
When debugging object configurations in SmartConsole, which new Windows Environment Variable must be added?
- Question #154
Which of the following is true about Protocol Signatures?
- Question #155
Consider the IPv6 address: 2101:0DA0:080B:4114:0000:0000:0000:0001. According to IPv6 IP shortening rules, what address can this be shortened to?
- Question #156
When troubleshooting Hide NAT failure, what step should be taken after the NAT configuration has been verified?
- Question #157
When an object is created via SmartConsole or the API server, a command is sent to which process?
- Question #158
When troubleshooting static NAT, you would follow all the steps below, EXCEPT:
- Question #160
What command, when combined with IPS traffic, will give you information that can be used to determine if adjustments can be made to improve performance and security?
- Question #161
Which of the following commands does not initiate full synchronization?