Exam Details

  • Exam Code
    :156-115.80
  • Exam Name
    :Check Point Certified Security Master - R80
  • Certification
    :CCSM
  • Vendor
    :CheckPoint
  • Total Questions
    :159 Q&As
  • Last Updated
    :May 13, 2024

CheckPoint CCSM 156-115.80 Questions & Answers

  • Question 11:

    Which of the following file is commonly associated with troubleshooting crashes on a system such as the Security Gateway?

    A. core dump

    B. CPMIL dump

    C. fw monitor

    D. tcpdump

  • Question 12:

    You have configured SecureXL NAT templates with the "fw ctl set" command. You check configuration and ensure that NAT templates were enabled. After an accidental reboot, you issue "fwaccel stat" and noticed that NAT Templates are not enabled. You need to permanently enable SecureXL NAT templates. What should you do?

    A. Set NAT Templates with "fwaccel templates NAT" command and save configuration with "save config"

    B. Enable NAT Templates again with "fw ctl set" and save configuration with "save config"

    C. Enable NAT Templates again with "fw ctl set" and edit appropriate parameters in $FWDIR/boot/ modules/fwkern.conf

    D. Edit appropriate parameters in $FWDIR/boot/modules/fwkern.conf

  • Question 13:

    Which daemon process performs asymmetric key operations for HTTPS Inspection?

    A. httpsd

    B. httpkd

    C. wstlsd

    D. pkxld

  • Question 14:

    How would an administrator view the routing table on the Security Gateway of production network where IPv6 is being used?

    A. show route –A inet6

    B. ip -6 addr show

    C. netstat –rn –A inet6

    D. ip -6 neigh show

  • Question 15:

    Regarding the Database Domains, which of the following best describes the System Domain?

    A. The database that contains administrator data, folders, domains, trusted GUI clients, permissions profiles, and management settings.

    B. The database contains configuration data of log servers and saved queries for applications.

    C. This domain is used as the Global database for MDSM and contains global objects and policies.

    D. The database stores user-modified configurations, such as network objects and security policies. In a Multi Domain environment, each domain contains a separate User Domain type.

  • Question 16:

    The clusterXL_monitor_ips script________________.

    A. registers the host_monitor device and checks end-to-end connectivity to routes and other network devices.

    B. registers devices with the name of a process specified in the cpha_proc_list file.

    C. registers devices that monitor the IPS blade.

    D. registers the admin_down device and checks the change in the member's status and provides feedback to the user.

  • Question 17:

    Why should you run “clusterXL_admin down –p” command?

    A. You want to keep the peers in sync during the failover testing

    B. This option is required with clusterXL_admin command

    C. With the –p option, monitoring of critical devices will continue

    D. This option allows automatic failover if the active member experiences a problem

  • Question 18:

    The security administrator wants to verify if a specific connection is being handling by SecureXL. What command below is used to verify this information?

    A. fwaccel conns

    B. fwaccel stat

    C. cpview

    D. fw tab –t connections –f | grep

  • Question 19:

    What is the Debug Output path for the CPM process?

    A. $CPDIR/debug/cpm.elg

    B. /proc/sys/cp/cpm/cpm.csv

    C. /var/log/dbg/cpm.elg

    D. $FWDIR/log/cpm.elg

  • Question 20:

    What are some measures you can take to prevent IPS false positives?

    A. Exclude problematic services from being protected by IPS (sip, H.323, etc.)

    B. Use IPS only in Detect mode

    C. Use Recommended IPS profile

    D. Capture packets, Update the IPS database, and Back up custom IPS files

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-115.80 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.