nerdexam
Check_Point

156-215.77 · Question #420

Which command displays the installed Security Gateway kernel version?

The correct answer is C. fw ver -k. Exam Questions, Study Guides, Practice Tests. Lead the way to help you pass any IT Certification exams, 100% Pass Guaranteed or Full Refund. Especially Cisco, CompTIA, Citrix, EMC, HP, Oracle, VMware, Juniper, Check Point, LPI, Nortel, EXIN and so on. Our Slogan: First Test…

Deployment and Initial Configuration

Question

Which command displays the installed Security Gateway kernel version?

Options

  • Afw printver
  • Bfw ver
  • Cfw ver -k
  • Dcpstat -gw

How the community answered

(50 responses)
  • A
    18% (9)
  • B
    8% (4)
  • C
    70% (35)
  • D
    4% (2)

Explanation

Exam Questions, Study Guides, Practice Tests. Lead the way to help you pass any IT Certification exams, 100% Pass Guaranteed or Full Refund. Especially Cisco, CompTIA, Citrix, EMC, HP, Oracle, VMware, Juniper, Check Point, LPI, Nortel, EXIN and so on. Our Slogan: First Test, First Pass. Help you to pass any IT Certification exams at the first try. You can reach us at any of the email addresses listed below. Any problems about IT certification or our products, you could rely upon us, we will give you satisfactory answers in 24 hours.

Topics

#fw ver -k#kernel version#CLI commands#gateway diagnostics

Community Discussion

8
Wesley A.Wesley A.Jun 27, 2026

fw ver -k is the one you want, and that is your answer for C. The plain fw ver command gives you the FireWall-1 product version, which is the management or policy version info, not the kernel. The -k flag is what specifically targets the kernel module version loaded on the gateway, and that distinction is exactly what the question is testing. First time I sat this I picked fw ver because it looked complete enough, came back the second time knowing that kernel versus product version is a trap they love to plant in this section.

12
Prof. SaraProf. SaraJun 27, 2026

Solid catch on the trap, and to lock in the flag permanently, just remember "k for kernel" so when you see any question asking about the module loaded on the gateway itself, that single letter steers you away from the bare fw ver output that only reflects the product install.

0
Mateus R.Mateus R.Jun 27, 2026

I was ready to pick B because "fw ver" rolls off the tongue when you think of version checks, the same way you might ask "what version is this?" without specifying what part you mean. But that extra "-k" flag is the key, like asking the mechanic not just what year the car is but specifically what engine is under the hood, and that is exactly what "fw ver -k" does by targeting the kernel layer specifically.

5
Mei-Ling H.Mei-Ling H.Jun 27, 2026

fw ver -k is right, the -k flag targets the kernel specifically.

0
Prof. SaraProf. SaraJun 27, 2026

Right, and worth noting for the exam that fw ver alone returns the full version string for the management layer, so knowing when to append -k versus run the bare command can show up as a distractor-heavy scenario question.

0
Bahar F.Bahar F.Jun 27, 2026

fw ver -k is correct. The -k flag tells the command to report the kernel version specifically, whereas fw ver alone shows the product version string and fw printver is not a valid option.

0
Prof. SaraProf. SaraJun 24, 2026

fw printver is your kernel version command, full stop, pick A.

-2
Mateus R.Mateus R.Jun 25, 2026

Appreciate the input, Sara, but fw printver is more like reading the label on your car's engine cover, it tells you the Check Point software build, not the underlying OS kernel version, which is what option C pulls up with the proper system-level command.

0
Full 156-215.77 Practice