Exam Details

  • Exam Code
    :156-915.65
  • Exam Name
    :Accelerated CCSE NGX R65
  • Certification
    :CheckPoint Certification
  • Vendor
    :CheckPoint
  • Total Questions
    :204 Q&As
  • Last Updated
    :May 15, 2024

CheckPoint CheckPoint Certification 156-915.65 Questions & Answers

  • Question 1:

    You have two NOKIA Appliances: one IP530 and one IP380. Both appliances have IPSO 3.9 and NGX R65 VPN-1 Power installed in a distributed deployment. Can they be members of a Gateway Cluster?

    A. No, because the appliances must be of the same model (both should be IP530 or IP380).

    B. NO, because NOKIA does not have a cluster option.

    C. Yes, as long as they have the same IPSO and VPN-1 versions.

    D. NO, because the Security Gateways must be installed in a stand-alone installation.

  • Question 2:

    What is the command in SecurePlatform Expert shell used to add routes without the use of sysconfig or the WebUI?

    A. ifroute

    B. ifconfig

    C. sysconfig route

    D. ip route

  • Question 3:

    A security audit has determined that your unpatched web application server is revealing the fact that it accesses a SQL server. You believe that you have enabled the proper SmartDefense setting but would like to verily this fact using SmartView Tracker. Which of the following entries confirms the proper blocking of this leaked information to an attacker?

    A. "Fingerprint Scrambling: Changed [SQL] to [Perl]"

    B. "HTTP response spoofing: remove signature [SQL Server]"

    C. "Concealed HTTP response [SQL Server]. (Error Code WSE0160003)"

    D. "ASCII Only Response Header detected: SQL"

  • Question 4:

    You want to establish a VPN, using Certificates. Your VPN will exchange Certificates with an external partner. Which of the following activities should you do first?

    A. Exchange exported CA keys and uses them to create a new server object to represent your partner's Certificate Authority (CA).

    B. Manually import your partner's Access Control List.

    C. Manually import your partner's Certificate Revocation List.

    D. Create a new logical-server object to represent your partner's CA.

  • Question 5:

    You plan to migrate an NG with Application Intelligence (Al) R55 SmartCenter Server on Windows to VPN1 NGX R65. You also plan to upgrade four VPN-1 Pro Gateways at remote offices, and one local VPN-1 Pro Gateway at your company's headquarters. The SmartCenter Server configuration must be migrated. What is the correct procedure to migrate the configuration?

    A. 1. Upgrade the five remote Gateways via SmartUpdate.

    2. Upgrade the SmartCenter Server, using the NGX R65 CD.

    B. 1. From the VPN-1 NGX R65 CD on the SmartCenter Server, select "Upgrade".

    2.

    Reboot after installation and upgrade all licenses via SmartUpdate.

    3.

    Reinstall all gateways using NGX R65 and install a policy.

    C. 1. From the VPN-1 NGX R65 CD in the SmartCenter Server, select "Export".

    2.

    Install VPN-1 NGX R65 on a new PC using the option "Installation using imported configuration".

    3.

    Reboot after installation and upgrade all licenses via SmartUpdate.

    4.

    Upgrade software on all five remote Gateways via SmartUpdate.

    D. 1. Copy the $FWDIR\conf directory from the SmartCenter Server.

    2.

    Save directory contents to another file server.

    3.

    Uninstall the SmartCenter Server, and install a new SmartCenter Server.

    4.

    Move the saved directory contents to $FWDIR\conf replacing the default installation files.

    5.

    Reinstall all gateways using VPN-1 NGX R65 and install a Security Policy.

  • Question 6:

    Which of the following generates an Eventia Report from its SQL database?

    A. SmartCenterServer

    B. SmartDashboard Log Consolidator

    C. Eventia Reporter Client

    D. Eventia Reporter Server

  • Question 7:

    Upon checking SmartView Monitor, you find the following Critical Problem notification.What is the reason?

    A. Version mismatch between the SmartCenter Server and Security Gateway

    B. NO Secure Internal Communications established between the SmartCenter Server and Security Gateway

    C. Time not synchronized between the SmartCenter Server and Security Gateway

    D. No Security Policy installed on the Security Gateway

  • Question 8:

    Which command line interface utility allows the administrator to verify the name and timestamp of the Security Policy currently installed on a firewall module?

    A. fwver

    B. fw stat

    C. fw ctl pstat

    D. cpstatfwd

  • Question 9:

    What port is used for communication to the User Center with SmartUpdate?

    A. CPMI

    B. TCP 8080

    C. HTTPS

    D. HTTP

  • Question 10:

    An NGXR65 HA cluster contains two members with external interfaces 172.28.108.1 and 172.28.108.2. The internal interfaces are 10.4.8.1 and 10.4.8.2. The external cluster VIP address is 172.28.108.3 and the internal cluster VIP address is 10.4.8.3. The synchronization interfaces are 192.168.1.1 and 192.168.1.2. The Security Administrator discovers State Synchronization is not working properly. The cphaprob if command output displays shows:What is causing the State Synchronization problem?

    A. The synchronization network has been defined as "Network Objective: Cluster + 1st sync" with an IP address 192.168.1.3 defined in the NGX cluster object's topology. This configuration is supported in NGX and therefore the above screenshot is not relevant to the sync problem.

    B. The synchronization interface on the individual NGX cluster member object's Topology tab is enabled with "Cluster Interface". Disable this setting.

    C. The synchronization network has a cluster VIP address (192.168.1.3) defined in the NGX cluster object's topology. Remove the 192.168.1.3 VIP interface from the cluster topology.

    D. Another cluster is using 192.168.1.3 as one of the unprotected interfaces.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-915.65 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.