156-115.77 Exam Details

  • Exam Code
    :156-115.77
  • Exam Name
    :Check Point Certified Security Master
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :295 Q&As
  • Last Updated
    :Dec 09, 2024

CheckPoint 156-115.77 Online Questions & Answers

  • Question 231:

    Which of the following BEST describes the command fw ctl chain function?

    A. View how CoreXL is distributing traffic among the firewall kernel instances.
    B. View established connections in the connections table.
    C. View the inbound and outbound kernel modules and the order in which they are applied.
    D. Determine if VPN Security Associations are being established.

  • Question 232:

    You are adding a new gateway into your network. You must make sure that it is running the latest Corporate approved IPS profile. How can you get this information to your new gateway?

    A. From the command line, run: ips_import -f [-p ].
    B. IPS profiles must be manually configured on each gateway.
    C. From the command line, run: ips_export_import import -f [-p ].
    D. From the Smart Dashboard IPS tab select import IPS profiles and select the gateway to get the profile from.

  • Question 233:

    Which of these commands can be used to display the IPv6 routes?

    A. show route
    B. show ipv6 route
    C. show routes all
    D. show route ipv6

  • Question 234:

    In IPS which of the two initial profiles is the more resource intensive?

    A. Prevention
    B. Standard
    C. Default
    D. Recommended

  • Question 235:

    How does the Check Point Security Administrator enable NAT Templates?

    A. Run commands with syntax fw ctl set int cphwd_nat_templates_support 1 and fw ctl set int cphwd_nat_templates_enabled 1.
    B. Edit file $FWDIR/boot/modules/fwkern.conf with the lines "cphwd_nat_templates_support=1" and "cphwd_nat_templates_enabled=1".
    C. Set Firewall object > NAT > Advanced
    D. Set Global properties > NAT-Network address translation

  • Question 236:

    What command verifies which core each gateway interface and firewall instance is currently running on?

    A. fw ctl pstat
    B. fw accel stat
    C. show corexl stat
    D. fw ctl affinity -l

  • Question 237:

    If the number of Firewall Workers for CoreXL is set higher on one member of a cluster than the other, the cluster will be in what state?

    A. Active/Standby
    B. Active/Ready
    C. Active Attention/Down
    D. Active/Down

  • Question 238:

    Check Point Best Practices suggest that when you finish a kernel debug, you should run the command _____________________ .

    A. fw debug 0
    B. fw debug off
    C. fw ctl debug default
    D. fw ctl debug 0

  • Question 239:

    What is the command to check how many connections the firewall has detected for the SecureXL device?

    A. fw tab t connections s
    B. fw tab -t cphwd_db s
    C. fw tab t connection s | grep template
    D. fwaccel conns

  • Question 240:

    What would be a reason for changing the "Magic MAC"?

    A. To allow for automatic upgrades.
    B. To allow two or more cluster members to exist on the same network.
    C. To allow two or more clusters to exist on the same network.
    D. To allow the two cluster members to use the same virtual IP address.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-115.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.