What process(es) should be checked if there is high I/O and you suspect it may be related to the Antivirus Software Blade?

What process(es) should be checked if there is high I/O and you suspect it may be related to the Antivirus Software Blade?A . avspB . dlpu and rad processesC . cptaD . cpm and fwmView AnswerAnswer: B

January 5, 2021 No Comments READ MORE +

Which of the following is NOT a special consideration while running fw monitor on production firewall?

Which of the following is NOT a special consideration while running fw monitor on production firewall?A . While executing fw monitor, you need to specify an expression so that it captures the required traffic instead of all trafficB . While running fw monitor on a busy firewall, the Cci <count>...

January 5, 2021 No Comments READ MORE +

To simplify security administration, which action would you choose?

You are working with multiple Security Gateways enforcing an extensive number of rules. To simplify security administration, which action would you choose?A . Eliminate all possible contradictory rules such as the Stealth or Cleanup rulesB . Create a separate Security Policy package for each remote Security GatewayC . Create network...

January 5, 2021 No Comments READ MORE +

Which kernel debug flag should you use to troubleshoot NAT connections?

Which kernel debug flag should you use to troubleshoot NAT connections?A . fw ctl debug + xlate xltrc nat tableB . fw ctl debug + xltrc xlate nat connC . fw ctl debug + xlate xltrc nat conn dropD . fw ctl debug + fwx_alloc nat conn dropView AnswerAnswer: C

January 4, 2021 1 Comment READ MORE +

Where will the usermode core files located?

Where will the usermode core files located?A . /var/log/dump/usermodeB . /var/surootC . $FWDIR/var/log/dump/usermodeD . $CPDIR/var/log/dump/usermodeView AnswerAnswer: A Explanation: Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92764

January 4, 2021 No Comments READ MORE +

What command would you run to use static affinity to balance the interfaces between the SND cores?

You verified that Performance Pack is disabled and need to distribute the affinity interfaces. What command would you run to use static affinity to balance the interfaces between the SND cores?A . cpmq setB . sim affinity -sC . fw ctl affinity -a -l -vD . fw ctl affinity -sView...

January 3, 2021 No Comments READ MORE +

Where does the translation occur with Hide NAT?

Where does the translation occur with Hide NAT?A . The destination translation occurs at the client sideB . The source translation occurs at the server sideC . The source translation occurs at the client sideD . The destination translation occurs at the server sideView AnswerAnswer: B

January 3, 2021 No Comments READ MORE +

Which of the following inputs is suitable for debugging HTTPS inspection issues?

Which of the following inputs is suitable for debugging HTTPS inspection issues?A . vpn debug cptls onB . fw ctl debug Cm fw + conn drop cptlsC . fw diag debug tls enableD . fw debug tls on TDERROR_ALL_ALL=5View AnswerAnswer: B Explanation: Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk108202

January 3, 2021 No Comments READ MORE +

After determining that the IPS Blade is causing high resource utilization in the gateway, which would be an appropriate strategy to improve IPS performance?

After determining that the IPS Blade is causing high resource utilization in the gateway, which would be an appropriate strategy to improve IPS performance?A . Enabling CoreXLB . Enable Bypass modeC . Disabling SecureXLD . Enabling SecureXLView AnswerAnswer: A

January 3, 2021 No Comments READ MORE +

Fill in the blank: The R80 utility fw monitoris used to troubleshoot ___________________.

Fill in the blank: The R80 utility fw monitoris used to troubleshoot ___________________.A . User data base corruptionB . LDAP conflictsC . Traffic issuesD . Phase two key negotiationView AnswerAnswer: C

January 3, 2021 No Comments READ MORE +