156-587 Exam Questions
120 real 156-587 exam questions with expert-verified answers and explanations. Page 2 of 3.
- Question #51
An administrator receives reports about issues with log indexing and text searching regarding an existing Management Server. In trying to find a solution she wants to check if the...
- Question #52
What is the best way to resolve an issue caused by a frozen process?
- Question #53Troubleshoot R81.20 Security Gateway Issues
What is the Security Gateway directory where an administrator can find vpn debug log files generated during Site-to-Site VPN troubleshooting?
VPN logsSite-to-Site VPNDebug troubleshooting$FWDIR environment variable - Question #54
In Mobile Access VPN, clientless access is done using a web browser. The primary communication path for these browser based connections is a process that allows numerous processes...
- Question #55
SmartEvent utilizes the Log Server, Correlation Unit and SmartEvent Server to aggregate logs and identify security events. The three main processes that govern these SmartEvent com...
- Question #56Troubleshoot R81.20 Security Gateway Issues
During firewall kernel debug with fw ctl zdebug you received less information that expected. You noticed that a lot of messages were lost since the time the debug was started. What...
kernel debuggingdebug buffer managementfw ctl commandsmessage loss troubleshooting - Question #57
Check Point Access Control Daemons contains several daemons for Software Blades and features. Which Daemon is used for Application & Control URL Filtering?
- Question #58
What is the name of the VPN kernel process?
- Question #59
The Check Point Watch Daemon (CPWD) monitors critical Check Point processes, terminating them or restarting them as needed to maintain consistent, stable operating conditions. When...
- Question #60
What does CMI stand for in relation to the Access Control Policy?
- Question #61
When viewing data for CPMI objects in the Postgres database, what table column should be selected to query for the object instance?
- Question #62Troubleshoot R81.20 Security Management Server Issues
PostgreSQL is a powerful, open source relational database management system. Check Point offers a command for viewing the database to interact with Postgres interactive shell. Whic...
PostgreSQLCheck Point CLIDatabase AdministrationCommand Syntax - Question #63Troubleshoot R81.20 Security Management Server Issues
What information does the doctor-log script supply?
doctor-log scriptlogging diagnosticslogging ratesindexing status - Question #64Troubleshoot R81.20 Security Gateway Issues
If SmartLog is not active or failed to parse results from server, what commands can be run to re- enable the service?
SmartLogService RestartCheck_Point CommandsGateway Troubleshooting - Question #65Troubleshoot R81.20 Security Gateway Issues
What is NOT a benefit of the 'fw ctl zdebug' command?
fw ctl zdebugkernel debuggingdebug modulesbuffer management - Question #66
When a User Mode process suddenly crashes, it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root cau...
- Question #67Troubleshoot R81.20 Security Features
What are the three main component of Identity Awareness?
Identity AwarenessArchitecture ComponentsIdentity SourcePolicy Enforcement - Question #68Troubleshoot R81.20 Security Features
VPN's allow traffic to pass through the Internet securely by encrypting the traffic as it enters the VPN tunnel and then decrypting the traffic as it exists. Which process is respo...
Mobile VPNVPN Encryptioncvpnd ProcessCheck Point Daemons - Question #69Troubleshoot R81.20 Security Features
What is the correct syntax to set all debug flags for Unified Policy related issues?
Unified PolicyDebug Commandsfw ctl ToolsCLI Syntax - Question #70
You receive reports from multiple users that they cannot browse. Upon further discovery you identify that Identity Awareness cannot identify the users properly and apply the config...
- Question #71Troubleshoot R81.20 Security Features
What version of Check Point can Security Gateways begin dynamically distributing Logs between log servers?
Log DistributionSecurity GatewayCheck Point VersionsFeature Availability - Question #72Optimize R81.20 Performance
In some scenarios it is very helpful to use advanced Linux commands for troubleshooting purposes. Which command displays information about resource utilization for running processe...
Linux troubleshootingProcess monitoringResource utilizationPerformance analysis - Question #73Troubleshoot R81.20 Security Management Server Issues
What is the port for the Log Collection on Security Management Server?
Log CollectionSecurity Management ServerPort ConfigurationSMS - Question #74Troubleshoot R81.20 Security Gateway Issues
Troubleshooting issues with Mobile Access requires the following:
Mobile Access troubleshootingVPN debuggingcvpnd processSecurity Gateway diagnostics - Question #75Troubleshoot R81.20 Security Gateway Issues
What command is used to find out which port Multi-Portal has assigned to the Mobile Access Portal?
Mobile Access PortalSSL VPN port assignmentmpclient commandMulti-Portal diagnostics - Question #76Troubleshoot R81.20 Security Gateway Issues
John has renewed his NPTX License but he gets an error (contract for Anti-Bot expired). He wants to check the subscription status on the CLI of the gateway, what command can he use...
license managementsubscription statusCLI commandsAnti-Bot - Question #77Troubleshoot R81.20 Security Features
What command(s) will turn off all vpn debug collection?
VPN debuggingvpn debug commandIKE debuggingdebug collection - Question #78Troubleshoot R81.20 Security Gateway Issues
Check Point provides tools & commands to help you to identify issues about products and applications. Which Check Point command can help you to display status and statistics inform...
cpstat commandCheck Point diagnosticssystem monitoringtroubleshooting tools - Question #79Troubleshoot R81.20 Security Gateway Issues
The Check Point Firewall Kernel is the core component of the Gaia operating system and an integral part of traffic inspection process. There are two procedures available for debugg...
Firewall kernel debuggingkdebug commandResource consumptionGaia OS - Question #80Troubleshoot R81.20 Security Management Server Issues
What are the main components of Check Point's Security Management architecture?
Management ServerManagement DatabaseLog ServerSecurity Management - Question #81Troubleshoot R81.20 Security Gateway Issues
You run a free-command on a gateway and notice that the Swap column is not zero.
swap memoryresource utilizationgateway diagnosticsmemory management - Question #82
You modified kernel parameters and after rebooting the gateway, a lot of production traffic gets dropped and the gateway acts strangely. What should you do?
- Question #83
When dealing with monolithic operating systems such as Gaia where are system calls initiated from to achieve a required system level function?
- Question #84Troubleshoot R81.20 Security Management Server Issues
What tool would you run to diagnose logging and indexing?
logging diagnosticsindexingdoctor-log.shSMS troubleshooting - Question #85Troubleshoot R81.20 Security Gateway Issues
You found out that $FWDIR/Iog/fw.log is constantly growing in size at a Security Gateway, what is the reason?
fw.logConnection loggingSession loggingGateway diagnostics - Question #86
What is the function of the Core Dump Manager utility?
- Question #87
When a user space process or program suddenly crashes, what type of file is created for analysis?
- Question #88Troubleshoot R81.20 Security Gateway Issues
When debugging is enabled on firewall kernel module using the fw ctl debug' command with required options, many debug messages are provided by the kernel that help the administrato...
kernel debuggingfw ctl commandsdebug buffersfirewall troubleshooting - Question #89Troubleshoot R81.20 Security Gateway Issues
What command is usually used for general firewall kernel debugging and what is the size of the buffer that is automatically enabled when using the command?
kernel debuggingfw ctl commandsdebug bufferfirewall diagnostics - Question #90
You need to run a kernel debug over a longer period of time as the problem occurs only once or twice a week. Therefore you need to add a timestamp to the kernel debug and write the...
- Question #91Troubleshoot R81.20 Security Gateway Issues
What is the benefit of fw ctl debug over fw ctl zdebug?
fw ctl debugkernel debuggingfirewall diagnosticsCheck_Point tools - Question #92Troubleshoot R81.20 Security Gateway Issues
What is the buffer size set by the fw ctl zdebug command?
fw ctl zdebugdebug buffer sizediagnostic toolsgateway troubleshooting - Question #93Troubleshoot R81.20 Security Gateway Issues
Which command is used to write a kernel debug to a file?
kernel debugfw ctl commanddebug file outputsecurity gateway troubleshooting - Question #94Troubleshoot R81.20 Security Management Server Issues
What is the shorthand reference for a classification object?
Classification objectsShorthand notationManagement terminologyCheck Point objects - Question #95Troubleshoot R81.20 Security Features
Which kernel process is used by Content Awareness to collect the data from contexts?
Content AwarenessDLPkernel processesdlpda - Question #96Troubleshoot R81.20 Security Management Server Issues
What component is NOT part of Unified policy manager?
Unified Policy ManagerComponentsSecurity ManagementR81.20 - Question #97Troubleshoot R81.20 Security Gateway Issues
The packet processing infrastructure consists of 4 components. Which component contains the CLOB, the object that contains information about the packet that is needed to make secur...
Packet Processing InfrastructureCLOB (Context Lookup Object)Classifiers ComponentSecurity Decision Making - Question #98Troubleshoot R81.20 Security Gateway Issues
In Check Point's Packet Processing Infrastructure what is the role of Observers?
ObserversPacket ProcessingGateway MonitoringSecurity Manager - Question #99Troubleshoot R81.20 Security Gateway Issues
Packet processing infrastructure consists of the following components EXCEPT:
Packet Processing InfrastructureCheck_Point Gateway ArchitectureNetwork Packet ClassificationSecurity Inspection - Question #100Troubleshoot R81.20 Security Gateway Issues
What file contains the RAD proxy settings?
RAD proxyConfiguration filesGateway settingsCheck Point R81.20