156-315.77 Exam Questions
717 real 156-315.77 exam questions with expert-verified answers and explanations. Page 1 of 15.
- Question #1
Which of the following is NOT part of the policy installation process?
- Question #2
The process ________ is responsible for Management High Availability synchronization.
- Question #3
_________ is the called process that starts when opening SmartView Tracker application.
- Question #4
Anytime a client initiates a connection to a server, the firewall kernel signals the FWD process using a trap. FWD spawns the ________ child service, which runs the security server...
- Question #5
Security server configuration settings are stored in _______________ .
- Question #6
User definitions are stored in ________________ .
- Question #7
Jon is explaining how the inspection module works to a colleague. If a new connection passes through the inspection module and the packet matches the rule, what is the next step in...
- Question #8
Which of the following statements accurately describes the upgrade export command?
- Question #9
What are you required to do before running upgrade export?
- Question #10
A snapshot delivers a complete backup of Secure Platform. The resulting file can be stored on servers or as a local file in /var/CPsnapshot/snapshots. How do you restore a local sn...
- Question #11
What is the primary benefit of using upgrade export over either backup or snapshot?
- Question #13
Your primary Security Management Server runs on GAiA. What is the easiest way to back up your Security Gateway R76 configuration, including routing and network configuration files?
- Question #14
You need to back up the routing, interface, and DNS configuration information from your R76 Secure Platform Security Gateway. Which backup-and-restore solution do you use?
- Question #15
Which of the following methods will provide the most complete backup of an R76 configuration?
- Question #16
Which of the following commands can provide the most complete restore of an R76 configuration?
- Question #17
When restoring R76 using the command upgrade import, which of the following items are NOT restored?
- Question #18
Restoring a snapshot-created file on one machine that was created on another requires which of the following to be the same on both machines?
- Question #19
When restoring a Security Management Server from a backup file, the restore package can be retrieved from which source?
- Question #20
When upgrading Check Point products in a distributed environment, in which order should you upgrade these components? 1 GUI Client 2 Security Management Server 3 Security Gateway
- Question #21
When using migrate to upgrade a Secure Management Server, which of the following is included in the migration?
- Question #22
Typically, when you upgrade the Security Management Server, you install and configure a fresh R76 installation on a new computer and then migrate the database from the original mac...
- Question #23
Typically, when you upgrade the Security Management Server, you install and configure a fresh R76 installation on a new computer and then migrate the database from the original mac...
- Question #24
Typically, when you upgrade the Security Management Server, you install and configure a fresh R76 installation on a new computer and then migrate the database from the original mac...
- Question #25
During a Security Management Server migrate export, the system:
- Question #26
If no flags are defined during a back up on the Security Management Server, where does the system store the *.tgz file?
- Question #27
Which is NOT a valid option when upgrading Cluster Deployments?
- Question #28
In a zero downtime firewall cluster environment what command do you run to avoid switching problems around the cluster.
- Question #29
In a "zero downtime" scenario, which command do you run manually after all cluster members are upgraded?
- Question #30
Which command provides cluster upgrade status?
- Question #31
John is upgrading a cluster from NGX R65 to R76. John knows that you can verify the upgrade process using the pre-upgrade verifier tool. When John is running Pre-Upgrade Verificati...
- Question #32
The User Directory Software Blade is used to integrate which of the following with a R76 Security Gateway?
- Question #33
Your users are defined in a Windows 2008 Active Directory server. You must add LDAP users to a Client Authentication rule. Which kind of user group do you need in the Client Authen...
- Question #34
Which of the following commands do you run on the AD server to identify the DN name before configuring LDAP integration with the Security Gateway?
- Question #35
In Smart Directory, what is each LDAP server called?
- Question #36
What is the default port number for standard TCP connections with the LDAP server?
- Question #37
What is the default port number for Secure Sockets Layer connections with the LDAP Server?
- Question #38
When defining an Organizational Unit, which of the following are NOT valid object categories?
- Question #39
When defining Smart Directoryfor High Availability (HA), which of the following should you do?
- Question #40
The set of rules that governs the types of objects in the directory and their associated attributes is called the:
- Question #41
When using Smart Dashboard to manage existing users in Smart Directory, when are the changes applied?
- Question #42
Where multiple Smart Directory servers exist in an organization, a query from one of the clients for user information is made to the servers based on a priority. By what category c...
- Question #43
Each entry in Smart Directory has a unique _______________ ?
- Question #44
With the User Directory Software Blade, you can create R76 user definitions on a(n) _________ Server.
- Question #45
Which describes the function of the account unit?
- Question #46
An organization may be distributed across several Smart Directory(LDAP) servers. What provision do you make to enable a Gateway to use all available resources? Each Smart Directory...
- Question #47
Which is NOT a method through which Identity Awareness receives its identities?
- Question #48
If using AD Query for seamless identity data reception from Microsoft Active Directory (AD), which of the following methods is NOT Check Point recommended?
- Question #49
When using Captive Portal to send unidentified users to a Web portal for authentication, which of the following is NOT a recommended use for this method?
- Question #50
Identity Agent is a lightweight endpoint agent that authenticates securely with Single Sign-On (SSO). Which of the following is NOT a recommended use for this method?
- Question #51
Which of the following access options would you NOT use when configuring Captive Portal?