156-215.77 Exam Details

  • Exam Code
    :156-215.77
  • Exam Name
    :Check Point Certified Security Administrator
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :358 Q&As
  • Last Updated
    :Dec 13, 2024

CheckPoint 156-215.77 Online Questions & Answers

  • Question 101:

    The SIC certificate is stored in the directory _______________.

    A. $CPDIR/registry
    B. $CPDIR/conf
    C. $FWDIR/database
    D. $FWDIR/conf

  • Question 102:

    Which of the following items should be configured for the Security Management Server to authenticate via LDAP?

    A. Check Point Password
    B. Active Directory Server object
    C. Windows logon password
    D. WMI object

  • Question 103:

    Which of the following items should be configured for the Security Management Server to authenticate using LDAP?

    A. Check Point Password
    B. WMI object
    C. Domain Admin username
    D. Windows logon password

  • Question 104:

    What is the primary benefit of using the command upgrade_export over either backup or snapshot?

    A. upgrade_export is operating system independent and can be used when backup or snapshot is not available.
    B. upgrade_export will back up routing tables, hosts files, and manual ARP configurations, where backup and snapshot will not.
    C. The commands backup and snapshot can take a long time to run whereas upgrade_export will take a much shorter amount of time.
    D. upgrade_export has an option to back up the system and SmartView Tracker logs while backup and snapshot will not.

  • Question 105:

    Where is the easiest and BEST place to find information about connections between two machines?

    A. All options are valid.
    B. On a Security Gateway using the command fw log.
    C. On a Security Management Server, using SmartView Tracker.
    D. On a Security Gateway Console interface; it gives you detailed access to log files and state table information.

  • Question 106:

    Which port must be allowed to pass through enforcement points in order to allow packet logging to operate correctly?

    A. 514
    B. 257
    C. 256
    D. 258

  • Question 107:

    You have created a Rule Base for firewall, websydney. Now you are going to create a new policy package with security and address translation rules for a second Gateway. What is TRUE about the new package's NAT rules? Exhibit:

    A. Rules 1, 2, 3 will appear in the new package.
    B. Only rule 1 will appear in the new package.
    C. NAT rules will be empty in the new package.
    D. Rules 4 and 5 will appear in the new package.

  • Question 108:

    You are reviewing the Security Administrator activity for a bank and comparing it to the change log. How do you view Security Administrator activity?

    A. SmartView Tracker cannot display Security Administrator activity; instead, view the system logs on the Security Management Server's Operating System.
    B. SmartView Tracker in Network and Endpoint Mode
    C. SmartView Tracker in Active Mode
    D. SmartView Tracker in Management Mode

  • Question 109:

    You are a Security Administrator preparing to deploy a new HFA (Hotfix Accumulator) to ten Security Gateways at five geographically separate locations. What is the BEST method to implement this HFA?

    A. Use a SSH connection to SCP the HFA to each Security Gateway. Once copied locally, initiate a remote installation command and monitor the installation progress with SmartView Monitor.
    B. Send a CD-ROM with the HFA to each location and have local personnel install it.
    C. Send a Certified Security Engineer to each site to perform the update.
    D. Use SmartUpdate to install the packages to each of the Security Gateways remotely.

  • Question 110:

    Which of the following commands can be used to remove site-to-site IPsec Security Association (SA)?

    A. vpn debug ipsec
    B. vpn ipsec
    C. fw ipsec tu
    D. vpn tu

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-215.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.