156-215.76 Exam Questions
379 real 156-215.76 exam questions with expert-verified answers and explanations. Page 2 of 8.
- Question #51
Peter is your new Security Administrator. On his first working day, he is very nervous and enters the wrong password three times. His account is locked. What can be done to unlock...
- Question #52
Where can you find the Check Point's SNMP MIB file?
- Question #53
You want to generate a cpinfo file via CLI on a system running GAiA. This will take about 40 minutes since the log files are also needed. What action do you need to take regarding...
- Question #54
Many companies have defined more than one administrator. To increase security, only one administrator should be able to install a Rule Base on a specific Firewall. How do you confi...
- Question #55
What is the officially accepted diagnostic tool for IP Appliance Support?
- Question #56
ALL of the following options are provided by the SecurePlatform sysconfig utility, EXCEPT:
- Question #57
Which of the following options is available with the SecurePlatform cpconfig utility?
- Question #58
Which command would provide the most comprehensive diagnostic information to Check Point Technical Support?
- Question #59
Which of the following statements accurately describes the command snapshot?
- Question #60
How do you recover communications between your Security Management Server and Security Gateway if you lock yourself out through a rule or policy mis-configuration?
- Question #61
How can you check whether IP forwarding is enabled on an IP Security Appliance?
- Question #62
Which command allows you to view the contents of an R76 table?
- Question #63
Which of the following tools is used to generate a Security Gateway R76 configuration report?
- Question #64
Which of the following is a CLI command for Security Gateway R76?
- Question #65
You are the Security Administrator for MegaCorp. A Check Point firewall is installed and in use on a platform using GAiA. You have trouble configuring the speed and duplex settings...
- Question #66
Which command enables IP forwarding on IPSO?
- Question #67
When you change an implicit rule's order from Last to First in Global Properties, how do you make the change take effect?
- Question #68
How does the button Get Address, found on the Host Node Object > General Properties page retrieve the address?
- Question #69
Anti-Spoofing is typically set up on which object type?
- Question #70
Spoofing is a method of:
- Question #71
How can you activate the SNMP daemon on a Check Point Security Management Server?
- Question #72
Which of the following describes the default behavior of an R76 Security Gateway?
- Question #73
When you use the Global Properties' default settings on R76, which type of traffic will be dropped if NO explicit rule allows the traffic?
- Question #74
You have installed a R76 Security Gateway on GAiA. To manage the Gateway from the enterprise Security Management Server, you create a new Gateway object and Security Policy. When y...
- Question #75
Certificates for Security Gateways are created during a simple initialization from _____________.
- Question #76
Which of the below is the MOST correct process to reset SIC from SmartDashboard?
- Question #77
You installed Security Management Server on a computer using GAiA in the MegaCorp home office. You use IP address 10.(1)(1)(1) You also installed the Security Gateway on a second S...
- Question #78
You want to reset SIC between smberlin and sgosaka. In SmartDashboard, you choose sgosaka, Communication, Reset. On sgosaka, you start cpconfig, choose Secure Internal Communicatio...
- Question #79
Although SIC was already established and running, Joe reset SIC between the Security Management Server and a remote Gateway. He set a new activation key on the Gateway's side with...
- Question #80
John is the Security Administrator in his company. He installs a new R76 Security Management Server and a new R76 Gateway. He now wants to establish SIC between them. After enterin...
- Question #81
The SIC certificate is stored in the directory _______________.
- Question #82
You run cpconfig to reset SIC on the Security Gateway. After the SIC reset operation is complete, the policy that will be installed is the:
- Question #83
Chris has lost SIC communication with his Security Gateway and he needs to re-establish SIC. What would be the correct order of steps needed to perform this task?
- Question #84
Which rule position in the Rule Base should hold the Cleanup Rule? Why?
- Question #85
The ____________ and ____________ Rules are the two basic rules which should be used by all Security Administrators?
- Question #86
Which item below in a Security Policy would be enforced first?
- Question #87
When you hide a rule in a Rule Base, how can you then disable the rule?
- Question #88
A Cleanup rule.
- Question #89
Which statement is TRUE about implicit rules?
- Question #90
You have included the Cleanup Rule in your Rule Base. Where in the Rule Base should the Accept ICMP Requests implied rule have no effect?
- Question #91
All of the following are Security Gateway control connections defined by default implied rules, EXCEPT:
- Question #92
In a distributed management environment, the administrator has removed all default check boxes from the Policy > Global Properties > Firewall tab. In order for the Security Gateway...
- Question #93
A Security Policy has several database versions. What configuration remains the same no matter which version is used?
- Question #94
You are working with multiple Security Gateways that enforce an extensive number of rules. To simplify security administration, which one of the following would you choose to do?
- Question #95
Which rules are not applied on a first-match basis?
- Question #96
Installing a policy usually has no impact on currently existing connections. Which statement is TRUE?
- Question #97
Several Security Policies can be used for different installation targets. The firewall protecting Human Resources' servers should have a unique Policy Package. These rules may only...
- Question #98
A ___________ rule is used to prevent all traffic going to the R75 Security Gateway.
- Question #99
In a distributed management environment, the administrator has removed the default check from Accept Control Connections under the Policy > Global Properties > FireWall tab. In ord...
- Question #100
To check the Rule Base, some rules can be hidden so they do not distract the administrator from the unhidden rules. Assume that only rules accepting HTTP or SSH will be shown. How...