156-215.77 Exam Details

  • Exam Code
    :156-215.77
  • Exam Name
    :Check Point Certified Security Administrator
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :358 Q&As
  • Last Updated
    :Dec 13, 2024

CheckPoint 156-215.77 Online Questions & Answers

  • Question 231:

    Tom has been tasked to install Check Point R77 in a distributed deployment. Before Tom installs the systems this way, how many machines will he need if he does NOT include a SmartConsole machine in his calculations?

    A. Three machines
    B. One machine
    C. Two machines
    D. One machine, but it needs to be installed using SecurePlatform for compatibility purposes

  • Question 232:

    The third-shift Administrator was updating Security Management Server access settings in Global Properties and testing. He managed to lock himself out of his account. How can you unlock this account?

    A. Type fwm unlock_admin from the Security Management Server command line.
    B. Type fwm unlock_admin -u from the Security Gateway command line.
    C. Type fwm lock_admin -u from the Security Management Server command line.
    D. Delete the file admin.lock in the Security Management Server directory $FWDIR/tmp/.

  • Question 233:

    One of your remote Security Gateways suddenly stops sending logs, and you cannot install the Security Policy on the Gateway. All other remote Security Gateways are logging normally to the Security Management Server, and Policy installation is not affected. When you click the Test SIC status button in the problematic Gateway object, you receive an error message. What is the problem?

    A. The remote Gateway's IP address has changed, which invalidates the SIC Certificate.
    B. The time on the Security Management Server's clock has changed, which invalidates the remote Gateway's Certificate.
    C. The Internal Certificate Authority for the Security Management Server object has been removed from objects_5_0.c.
    D. There is no connection between the Security Management Server and the remote Gateway. Rules or routing may block the connection.

  • Question 234:

    Which authentication type requires specifying a contact agent in the Rule Base?

    A. Client Authentication with Partially Automatic Sign On
    B. Client Authentication with Manual Sign On
    C. User Authentication
    D. Session Authentication

  • Question 235:

    Your boss wants you to closely monitor an employee suspected of transferring company secrets to the competition. The IT department discovered the suspect installed a WinSCP client in order to use encrypted communication. Which of the following methods is BEST to accomplish this task?

    A. Use SmartView Tracker to follow his actions by filtering log entries that feature the WinSCP destination port. Then, export the corresponding entries to a separate log file for documentation.
    B. Use SmartDashboard to add a rule in the firewall Rule Base that matches his IP address, and those of potential targets and suspicious protocols. Apply the alert action or customized messaging.
    C. Watch his IP in SmartView Monitor by setting an alert action to any packet that matches your Rule Base and his IP address for inbound and outbound traffic.
    D. Send the suspect an email with a keylogging Trojan attached, to get direct information about his wrongdoings.

  • Question 236:

    After filtering a fw monitor trace by port and IP, a packet is displayed three times; in the i, I, and o inspection points, but not in the O inspection point. Which is the likely source of the issue?

    A. The packet has been sent out through a VPN tunnel unencrypted.
    B. An IPSO ACL has blocked the packet's outbound passage.
    C. A SmartDefense module has blocked the packet.
    D. It is due to NAT.

  • Question 237:

    Which of the following uses the same key to decrypt as it does to encrypt?

    A. B. Dynamic encryption
    B. C. Certificate-based encryption
    C. D. Symmetric encryption

  • Question 238:

    With the User Directory Software Blade, you can create R77 user definitions on a(n) _________ Server.

    A. LDAP
    B. Radius
    C. SecureID
    D. NT Domain

  • Question 239:

    Suppose the Security Gateway hard drive fails and you are forced to rebuild it. You have a snapshot file stored to a TFTP server and backups of your Security Management Server. What is the correct procedure for rebuilding the Gateway quickly?

    A. Reinstall the base operating system (i.e., GAiA). Configure the Gateway interface so that the Gateway can communicate with the TFTP server. Revert to the stored snapshot image, and install the Security Policy.
    B. Run the command revert to restore the snapshot, establish SIC, and install the Policy.
    C. Run the command revert to restore the snapshot. Reinstall any necessary Check Point products. Establish SIC and install the Policy.
    D. Reinstall the base operating system (i.e., GAia). Configure the Gateway interface so that the Gateway can communicate with the TFTP server. Reinstall any necessary Check Point products and previously applied hotfixes. Revert to the stored snapshot image, and install the Policy.

  • Question 240:

    You are about to test some rule and object changes suggested in an R77 news group. Which backup solution should you use to ensure the easiest restoration of your Security Policy to its previous configuration after testing the changes?

    A. Manual copies of the directory $FWDIR/conf
    B. upgrade_export command
    C. Database Revision Control
    D. GAiA backup utilities

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-215.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.