156-585 Exam Questions
114 real 156-585 exam questions with expert-verified answers and explanations. Page 1 of 3.
- Question #1
What is the purpose of the Hardware Diagnostics Tool?
- Question #2
What table does the command "fwaccel conns" pull information from?
- Question #3
Check Point Threat Prevention policies can contain multiple policy layers and each layer consists of its own Rule Base Which Threat Prevention daemon is used for Anti-virus?
- Question #4
What command is used to find out which port Multi-Portal has assigned to the Mobile Access Portal?
- Question #5
Where will the usermode core files be located?
- Question #6
Check Point's PostgreSQL is partitioned into several relational database domains. Which domain contains network objects and security policies?
- Question #7
What are the four ways to insert an FW Monitor into the firewall kernel chain?
- Question #8
What file extension should be used with fw monitor to allow the output file to be imported and read in Wireshark?
- Question #9
Which one of the following is NOT considered a Solr core partition:
- Question #10
Where do Protocol parsers register themselves for IPS?
- Question #11
Which of the following is NOT a vpn debug command used for troubleshooting?
- Question #12
Which command is most useful for debugging the fwaccel module?
- Question #13
The management configuration stored in the Postgres database is partitioned into several relational database Domains, like - System, User, Global and Log Domains. The User Domain s...
- Question #14
After kernel debug with "fw ctl debug" you received a huge amount of information It was saved in a very large file that is difficult to open and analyze with standard text editors...
- Question #15
How many captures does the command "fw monitor -p all" take?
- Question #16
What is NOT a benefit of the fw ctl zdebug command?
- Question #17
URL Filtering is an essential part of Web Security in the Gateway. For the Security Gateway to perform a URL lookup when a client makes a URL request, where is the sync-request for...
- Question #18
If the cpsemd process of SmartEvent has crashed or is having trouble coming up. then it usually indicates that___________.
- Question #19
Which command can be run in Expert mode lo verify the core dump settings?
- Question #20
Jenna has to create a VPN tunnel to a CISCO ASA but has to set special property to renegotiate the Phase 2 tunnel after 10 MB of transferee1 dat
- Question #21
Troubleshooting issues with Mobile Access requires the following:
- Question #22
What acceleration mode utlizes multi-core processing to assist with traffic processing?
- Question #23
What is the simplest and most efficient way to check all dropped packets in real time?
- Question #24
The Check Pom! Firewall Kernel is the core component of the Gaia operating system and an integral part of the traffic inspection process There are two procedures available for debu...
- Question #25
If you run the command "fw monitor -e accept src=10.1.1.201 or src=172.21.101.10 or src=192.0.2.10;" from the cli sh What will be captured?
- Question #26
When a User Mode process suddenly crashes it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root caus...
- Question #27
You have configured IPS Bypass Under Load function with additional kernel parameters ids_tolerance_no_stress=15 and ids_tolerance_stress-15 For configuration you used the *fw ctl s...
- Question #28
Some users from your organization have been reporting some connection problems with CIFS since this morning You suspect an IPS issue after an automatic IPS update last night. So yo...
- Question #29
Which file is commonly associated with troubleshooting crashes on a system such as the Security Gateway?
- Question #30
The two procedures available for debugging in the firewall kernel are i fw ctl zdebug ii fw ctl debug/kdebug Choose the correct statement explaining the differences in the two
- Question #31
What is the name of the VPN kernel process?
- Question #32
You are running R80.XX on an open server and you see a high CPU utilization on your 12 CPU cores You now want to enable Hyperthreading to get more cores to gain some performance. W...
- Question #33
What are the maximum kernel debug buffer sizes, depending on the version
- Question #34
Which daemon governs the Mobile Access VPN blade and works with VPND to create Mobile Access VPN connections? It also handles interactions between HTTPS and the Multi-Portal Daemon...
- Question #35
Your users have some issues connecting Mobile Access VPN to the gateway. How can you debug the tunnel establishment?
- Question #36
Which Threat Prevention Daemon is the core Threat Emulation engine and responsible for emulation files and communications with Threat Cloud?
- Question #37
What table does command "fwaccel conns" pull information from?
- Question #38
What is the proper command for allowing the system to create core files?
- Question #39
Which command is used to write a kernel debug to a file?
- Question #40
Check Point Access Control Daemons contains several daemons for Software Blades and features. Which Daemon is used for Application & Control Filtering?
- Question #41
What is the main SecureXL database for tracking acceleration status of traffic?
- Question #42
Which command(s) will turn off all vpn debug collection?
- Question #43
Which is the correct "fw monitor" syntax for creating a capture file for loading it into WireShark?
- Question #44
What components make up the Context Management Infrastructure?
- Question #45
For TCP connections, when a packet arrives at the Firewall Kemel out of sequence or fragmented, which layer of IPS corrects this lo allow for proper inspection?
- Question #46
What command is usually used for general firewall kernel debugging and what is the size of the buffer that is automatically enabled when using the command?
- Question #47
What does CMI stand for in relation to the Access Control Policy?
- Question #48
When a User process or program suddenly crashes, a core dump is often used to examine the problem. Which command is used to enable the core-dumping via GAIA dish?
- Question #49
PostgreSQL is a powerful, open source relational database management system Check Point offers a command for viewing the database to interact with Postgres interactive shell Which...
- Question #50
Which Threat Prevention daemon is the core Threat Emulator, engine and responsible for emulation files and communications with Threat Cloud?