156-215.80 · Question #272
Where would an administrator enable Implied Rules logging?
The correct answer is B. In SmartDashboard on each rule. Logging for individual Implied Rules is configured in SmartDashboard by making the implied rules visible in the Rule Base and modifying each rule's log setting directly.
Question
Where would an administrator enable Implied Rules logging?
Options
- AIn Smart Log Rules View
- BIn SmartDashboard on each rule
- CIn Global Properties under Firewall
- DIn Global Properties under log and alert
How the community answered
(36 responses)- B94% (34)
- C3% (1)
- D3% (1)
Why each option
Logging for individual Implied Rules is configured in SmartDashboard by making the implied rules visible in the Rule Base and modifying each rule's log setting directly.
Smart Log Rules View is a log query and analysis interface and does not expose configuration controls for enabling or disabling logging on Implied Rules.
In SmartDashboard, an administrator can display Implied Rules by navigating to Policy > View > Implied Rules, which inserts the system-generated rules into the visible Rule Base. Once visible, the log tracking option on each individual implied rule can be changed directly, providing granular per-rule logging control.
Global Properties under Firewall controls whether certain categories of implied rules are enabled or disabled globally, but does not provide per-rule logging configuration for individual implied rules.
Global Properties under Log and Alert governs log and alert behaviors for tracked policy rules and system events, not the individual logging setting for each Implied Rule.
Concept tested: Configuring per-rule logging for Check Point Implied Rules
Source: https://sc1.checkpoint.com/documents/R80/CP_R80_SecurityManagement_AdminGuide/html_frameset.htm
Topics
Community Discussion
No community discussion yet for this question.