156-315.76 Exam Questions
652 real 156-315.76 exam questions with expert-verified answers and explanations. Page 6 of 14.
- Question #252
What is the most common cause for a Quick mode packet 1 failing with the error "No Proposal Chosen" error?
- Question #253
Which component receives events and assigns severity levels to the events; invokes any defined automatic reactions, and adds the events to the Events Data Base?
- Question #254
The ______________ contains the Events Data Base.
- Question #255
The SmartEvent Correlation Unit:
- Question #256
The SmartEvent Server:
- Question #257
The SmartEvent Client:
- Question #258
The SmartEvent Correlation Unit:
- Question #259
The SmartEvent Correlation Unit:
- Question #260
The SmartEvent Server:
- Question #261
What are the 3 main components of the SmartEvent Software Blade?
- Question #262
How many Events can be shown at one time in the Event preview pane?
- Question #263
You are reviewing computer information collected in ClientInfo. You can NOT:
- Question #264
Which of the following is NOT a SmartEvent Permission Profile type?
- Question #265
What is the SmartEvent Correlation Unit's function?
- Question #266
What is the SmartEvent Analyzer's function?
- Question #267
What is the SmartEvent Client's function?
- Question #268
A tracked SmartEvent Candidate in a Candidate Pool becomes an Event. What does NOT happen in the Analyzer Server?
- Question #269
How many pre-defined exclusions are included by default in SmartEvent R76 as part of the product installation?
- Question #270
What is the purpose of the pre-defined exclusions included with SmartEvent R76?
- Question #271
What is the benefit to running SmartEvent in Learning Mode?
- Question #272
______________ is NOT an SmartEvent event-triggered Automatic Reaction.
- Question #273
For best performance in Event Correlation, you should use:
- Question #274
What access level cannot be assigned to an Administrator in SmartEvent?
- Question #275
_______________ manages Standard Reports and allows the administrator to specify automatic uploads of reports to a central FTP server.
- Question #276
_____________ generates a SmartEvent Report from its SQL database.
- Question #277
Which SmartReporter report type is generated from the SmartView Monitor history file?
- Question #278
Which Check Point product is used to create and save changes to a Log Consolidation Policy?
- Question #279
Which Check Point product implements a Consolidation Policy?
- Question #280
You have selected the event Port Scan from Internal Network in SmartEvent, to detect an event when 30 port scans have occurred within 60 seconds. You also want to detect two port s...
- Question #281
When do modifications to the Event Policy take effect?
- Question #282
To back up all events stored in the SmartEvent Server, you should back up the contents of which folder(s)?
- Question #283
To clean the system of all events, you should delete the files in which folder(s)?
- Question #284
What SmartConsole application allows you to change the Log Consolidation Policy?
- Question #285
Where is it necessary to configure historical records in SmartView Monitor to generate Express reports in SmartReporter?
- Question #286
In a UNIX environment, SmartReporter Data Base settings could be modified in:
- Question #287
In a Windows environment, SmartReporter Data Base settings could be modified in:
- Question #288
Which specific R76 GUI would you use to view the length of time a TCP connection was open?
- Question #289
SmartReporter reports can be used to analyze data from a penetration-testing regimen in all of the following examples, EXCEPT:
- Question #290
What is the best tool to produce a report which represents historical system information?
- Question #291
If Jack was concerned about the number of log entries he would receive in the SmartReporter system, which policy would he need to modify?
- Question #292
Your company has the requirement that SmartEvent reports should show a detailed and accurate view of network activity but also performance should be guaranteed. Which actions shoul...
- Question #293
To help organize events, SmartReporter uses filtered queries. Which of the following is NOT an SmartEvent event property you can query?
- Question #294
When migrating the SmartEvent data base from one server to another, the first step is to back up the files on the original server. Which of the following commands should you run to...
- Question #295
When migrating the SmartEvent data base from one server to another, the last step is to save the files on the new server. Which of the following commands should you run to save the...
- Question #296
How could you compare the Fingerprint shown to the Fingerprint on the server?
- Question #297
Which file defines the fields for each object used in the file objects.C (color, num/string, default value...)?
- Question #298
Which procedure creates a new administrator in SmartWorkflow?
- Question #299
When you check Web Server in a host-node object, what happens to the host?
- Question #300
Which external user authentication protocols are supported in SSL VPN?
- Question #301
Which of the following commands can be used to stop Management portal services?