156-115.77 Exam Details

  • Exam Code
    :156-115.77
  • Exam Name
    :Check Point Certified Security Master
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :295 Q&As
  • Last Updated
    :Dec 09, 2024

CheckPoint 156-115.77 Online Questions & Answers

  • Question 241:

    The user tried to connect in SmartDashboard and did not work. You started a FWM debug and receive the logs below:

    What is the error cause?

    A. IP not defined in $FWDIR/conf/gui-clients
    B. Wrong user and password
    C. Wrong password
    D. Wrong user

  • Question 242:

    PXL is considered to be what type of acceleration?

    A. Fast Path
    B. Slow Path
    C. Medium Path
    D. PXL is not related to acceleration

  • Question 243:

    When you have your directional VPN enforcement rule set to "Internal_Clear" , what does this represent?

    A. All interfaces are designated "External"
    B. VOIP traffic
    C. Do not perform directional VPN enforcements on this traffic
    D. All interfaces are designated as "Internal"

  • Question 244:

    Where do you configure VTIs on your R77 gateway in VSX mode?

    A. VTIs are configured in each VS context.
    B. VTIs are configured in VS0 context.
    C. VTIs are not supported in VSX mode.
    D. VTIs are configured in SmartDashboard.

  • Question 245:

    You have to establish a VPN communication between 2 spokes, routed through the Hub gateway. Where do you configure VPN routing?

    A. Security Gateway Object
    B. WebUI
    C. vpn_route.conf
    D. VPN shell

  • Question 246:

    You are troubleshooting a VPN issue between your gateway and a partner site and you get a drop log on your gateway that states "Clear text packet should be encrypted". Which of the following would be the best troubleshooting step?

    A. Use the excluded services in the VPN community to exclude this traffic from the VPN or determine why the traffic is leaving the initiating (partner) gateway as clear text.
    B. Use the excluded services in the VPN community to exclude this traffic from the VPN or determine why the traffic is leaving local (your) gateway as clear text.
    C. Your phase one algorithms are mismatched between gateways.
    D. This is management traffic and we need to enable implied rule to address this issue.

  • Question 247:

    When troubleshooting a VPN site-to-site to a peer, it may be necessary to "down" the tunnel. What is the best method to remove ONLY the tunnel to this peer?

    A. Change the vpn tunnel sharing parameters to force the tunnel down.
    B. Reboot your gateway.
    C. Remove the peer from the community and install policy.
    D. Delete the IKE and IPsec Security Associations using the command vpn tu.

  • Question 248:

    What type(s) of VTI interfaces do Edge gateways support?

    A. Both numbered and unnumbered
    B. Unnumbered interfaces
    C. Numbered interfaces
    D. Neither numbered and unnumbered

  • Question 249:

    You are having issues with dynamic routing after a failover. The traffic is now coming from the backup and is being dropped as out of state. What is the BEST configuration to avoid stateful inspection dropping your dynamic routing traffic?

    A. Implement Wire mode.
    B. In Global Properties select Accept other IP protocols stateful replies for unknown services.
    C. Enable Visitor mode.
    D. Create additional explicit rules.

  • Question 250:

    Which command should you run to debug the VPN-1 kernel module?

    A. fw debug vpn on
    B. vpn debug on TDERROR_ALL_ALL=5
    C. fw ctl zdebug crypt kbuf
    D. fw ctl debug -m VPN all

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-115.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.