You noticed that CPU cores on the Security Gateway are usually 100% utilized and many packets were dropped. You don’t have a budget to perform a hardware upgrade at this time. To optimize drops you decide to use Priority Queues and fully enable Dynamic Dispatcher.
How can you enable them?
A . fw ctl multik dynamic_dispatching on
B . fw ctl multik dynamic_dispatching set_mode 9
C . fw ctl multik set_mode 9
D . fw ctl miltik pq enable
Answer: C
Explanation:
To optimize drops, you can use Priority Queues and fully enable Dynamic Dispatcher on the Security Gateway23. Priority Queues are a mechanism that prioritizes part of the traffic when the Security Gateway is stressed and needs to drop packets. Dynamic Dispatcher is a feature that dynamically assigns new connections to a CoreXL FW instance based on the utilization of CPU cores. To enable both features, you need to run the command fw ctl multik set_mode 9 on the Security Gateway4. Therefore, the correct answer is C. fw ctl multik set_mode 9.
Reference: CoreXL Dynamic Dispatcher – Check Point Software, Firewall Priority Queues in R80.x / R81.x – Check Point Software, Separate
Config for Dynamic Dispatcher and Priority Queues
Latest 156-215.81.20 Dumps Valid Version with 369 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund