156-315.77 Exam Details

  • Exam Code
    :156-315.77
  • Exam Name
    :Check Point Certified Security Expert
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :735 Q&As
  • Last Updated
    :Dec 13, 2024

CheckPoint 156-315.77 Online Questions & Answers

  • Question 711:

    The Management Portal Software Blade allows users to

    A. View Security Policies
    B. Monitor traffic flows
    C. Add/Delete rules
    D. Create/Modify objects

  • Question 712:

    You enable Sweep Scan Protection and Host port scan in IPS to determine if a large amount of traffic from a specific internal IP address is a network attack, or a user's system is infected with a worm. Will you get all the information you need from these actions?

    A. Yes. IPS will limit the traffic impact from the scans, and identify if the pattern of the traffic matches any known worms.
    B. No. These IPS protections will only block the traffic, but it will not provide a detailed analysis of the traffic.
    C. No. To verify if this is a worm or an active attack, you must also enable TCP attack defenses.
    D. No. The logs and alert can provide some level of information, but determining whether the attack is intentional or a worm, requires further research.

  • Question 713:

    In a particular IPS protection in R76in the Logging Settings, what does the Capture Packets option do?

    A. This is not a valid selection in R76
    B. Attaches a packet capture of the traffic that matches this particular protection to each log that the protection generates.
    C. Starts a packet capture at the time of policy install to capture all of the traffic until this protection is hit.
    D. Collects all of the logs for packets that have matched this protection within the last 30 days

  • Question 714:

    Which of the following statements accurately describes theupgrade exportcommand?

    A. Used primarily when upgrading the Security Management Server,upgrade exportstores all object databases and the conf directories for importing to a newer version of the Security Gateway.
    B. Used when upgrading the Security Gateway,upgrade exportincludes modified files, such as in the directories /lib and /conf.
    C. upgrade exportis used when upgrading the Security Gateway, and allows certain files to be included or excluded before exporting.
    D. upgrade exportstores network-configuration data, objects, global properties, and the database revisions prior to upgrading the Security Management Server.

  • Question 715:

    __________ is a proprietary Check Point protocol. It is the basis for Check Point ClusterXL inter-module communication.

    A. HA OPCODE
    B. RDP
    C. CKPP
    D. CCP

  • Question 716:

    What is a possible reason for the grayed out Restore Version button in the screenshot of the Database Revision Control while trying to restoreOld Structure?

    A. Old Structurewas not approved inSmart Workflow.
    B. NoSmart Workflowsession is started.
    C. WithSmart Workflowactive, onlySmart Workflowrevisions could be restored.
    D. Self-created versions cannot be restored if there are newer versions created inSmart Workflow.

  • Question 717:

    How do new connections get established through a Security Gateway with SecureXL enabled?

    A. New connections are always inspected by the firewall and if they are accepted, the subsequent packets of the same connection will be passed through SecureXL
    B. The new connection will be first inspected by SecureXL and if it does not match the drop table of SecureXL, then it will be passed to the firewall module for a rule match.
    C. New connection packets never reach the SecureXL module.
    D. If the connection matches a connection or drop template in SecureXL, it will either be established or dropped without performing a rule match, else it will be passed to the firewall module for a rule match.

  • Question 718:

    Remote clients are using IPSec VPN to authenticate via LDAP server to connect to the organization. Which gateway process is responsible for the authentication?

    A. vpnd
    B. cpvpnd
    C. fwm
    D. fwd

  • Question 719:

    Which command would you use to save the routing information before upgrading aSecure PlatformGateway?

    A. cp /etc/sysconfig/network.C [location]
    B. netstat 璻n > [filename].txt
    C. ifconfig > [filename].txt
    D. ipconfig

  • Question 720:

    Which of the following commands will stop acceleration on a Security Gateway running onSecure Platform?

    A. splat_accel off
    B. perf_pack off
    C. fw accel off
    D. fwaccel off

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-315.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.