ExamGecko
Home Home / Checkpoint / 156-585

Checkpoint 156-585 Practice Test - Questions Answers, Page 7

Question list
Search
Search

List of questions

Search

Related questions











If the cpsemd process of SmartEvent has crashed or is having trouble coming up. then it usually indicates that___________.

A.
Postgres database ts down
A.
Postgres database ts down
Answers
B.
Cpd daemon is unable to connect to the log server
B.
Cpd daemon is unable to connect to the log server
Answers
C.
The SmartEvent core on the Solr mdexer has been deleted
C.
The SmartEvent core on the Solr mdexer has been deleted
Answers
D.
The logged in administrator does not have permissions to run SmartEvent
D.
The logged in administrator does not have permissions to run SmartEvent
Answers
Suggested answer: C

Which command can be run in Expert mode lo verify the core dump settings?

A.
grep cdm /config/db/coredump
A.
grep cdm /config/db/coredump
Answers
B.
grep cdm /config/db/initial
B.
grep cdm /config/db/initial
Answers
C.
grep SFWDlR/config/db/initial
C.
grep SFWDlR/config/db/initial
Answers
D.
cat /etc/sysconfig/coredump/cdm conf
D.
cat /etc/sysconfig/coredump/cdm conf
Answers
Suggested answer: C

Jenna has to create a VPN tunnel to a CISCO ASA but has to set special property to renegotiate the Phase 2 tunnel after 10 MB of transferee1 dat a. This can not be configured in the smartconsole, so how can she modify this property?

A.
using GUIDBEDIT located in same directory as Smartconsole on the Windows client
A.
using GUIDBEDIT located in same directory as Smartconsole on the Windows client
Answers
B.
she need to install GUIDBEDIT which can be downloaded from the Usercenter
B.
she need to install GUIDBEDIT which can be downloaded from the Usercenter
Answers
C.
she need to run GUIDBEDIT from CLISH which opens a graphical window on the smartcenter
C.
she need to run GUIDBEDIT from CLISH which opens a graphical window on the smartcenter
Answers
D.
this cant be done anymore as GUIDBEDIT is not supported in R80 anymore
D.
this cant be done anymore as GUIDBEDIT is not supported in R80 anymore
Answers
Suggested answer: C

Troubleshooting issues with Mobile Access requires the following:

A.
Standard VPN debugs, packet captures, and debugs of cvpnd' process on Security Gateway
A.
Standard VPN debugs, packet captures, and debugs of cvpnd' process on Security Gateway
Answers
B.
Standard VPN debugs and packet captures on Security Gateway, debugs of "cvpnd' process on Security Management
B.
Standard VPN debugs and packet captures on Security Gateway, debugs of "cvpnd' process on Security Management
Answers
C.
'ma_vpnd' process on Secunty Gateway
C.
'ma_vpnd' process on Secunty Gateway
Answers
D.
Debug logs of FWD captured with the command - 'fw debug fwd on TDERROR_MOBILE_ACCESS=5'
D.
Debug logs of FWD captured with the command - 'fw debug fwd on TDERROR_MOBILE_ACCESS=5'
Answers
Suggested answer: A

What acceleration mode utlizes multi-core processing to assist with traffic processing?

A.
CoreXL
A.
CoreXL
Answers
B.
SecureXL
B.
SecureXL
Answers
C.
HyperThreading
C.
HyperThreading
Answers
D.
Traffic Warping
D.
Traffic Warping
Answers
Suggested answer: C

What is the simplest and most efficient way to check all dropped packets in real time?

A.
fw ctl zdebug * drop in expert mode
A.
fw ctl zdebug * drop in expert mode
Answers
B.
Smartlog
B.
Smartlog
Answers
C.
cat /dev/fwTlog in expert mode
C.
cat /dev/fwTlog in expert mode
Answers
D.
tail -f SFWDIR/log/fw log |grep drop in expert mode
D.
tail -f SFWDIR/log/fw log |grep drop in expert mode
Answers
Suggested answer: D

The Check Pom! Firewall Kernel is the core component of the Gaia operating system and an integral part of the traffic inspection process There are two procedures available for debugging the firewall kernel Which procedure/command is used for troubleshooting packet drops and other kernel activites while using minimal resources (1 MB buffer)?

A.
fw ctl zdebug
A.
fw ctl zdebug
Answers
B.
fw ctl debug/kdebug
B.
fw ctl debug/kdebug
Answers
C.
fwk ctl debug
C.
fwk ctl debug
Answers
D.
fw debug ctl
D.
fw debug ctl
Answers
Suggested answer: A

If you run the command "fw monitor -e accept src=10.1.1.201 or src=172.21.101.10 or src=192.0.2.10;" from the cli sh What will be captured?

A.
Packets from 10 1 1 201 going to 192.0 2.10
A.
Packets from 10 1 1 201 going to 192.0 2.10
Answers
B.
Packets destined to 172 21 101 10 from 10.1.1.101
B.
Packets destined to 172 21 101 10 from 10.1.1.101
Answers
C.
Only packet going to 192.0.2.10
C.
Only packet going to 192.0.2.10
Answers
D.
fw monitor only works in expert mode so no packets will be captured
D.
fw monitor only works in expert mode so no packets will be captured
Answers
Suggested answer: C

When a User Mode process suddenly crashes it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root cause of the crash? i Program Counter ii Stack Pointer ii. Memory management information iv Other Processor and OS flags / information

A.
i, ii, lii and iv
A.
i, ii, lii and iv
Answers
B.
i and n only
B.
i and n only
Answers
C.
iii and iv only
C.
iii and iv only
Answers
D.
D Only iii
D.
D Only iii
Answers
Suggested answer: C

You have configured IPS Bypass Under Load function with additional kernel parameters ids_tolerance_no_stress=15 and ids_tolerance_stress-15 For configuration you used the *fw ctl set' command After reboot you noticed that these parameters returned to their default values What do you need to do to make this configuration work immediately and stay permanent?

A.
Set these parameters again with “fw ctl set” and edit appropriate parameters in $FWDIR/boot/modules/ fwkern.conf
A.
Set these parameters again with “fw ctl set” and edit appropriate parameters in $FWDIR/boot/modules/ fwkern.conf
Answers
B.
Use script $FWDIR/bin IpsSetBypass.sh to set these parameters
B.
Use script $FWDIR/bin IpsSetBypass.sh to set these parameters
Answers
C.
Set these parameters again with “fw ctl set” and save configuration with “save config”
C.
Set these parameters again with “fw ctl set” and save configuration with “save config”
Answers
D.
Edit appropriate parameters in $FWDIR/boot/modules/fwkern.conf
D.
Edit appropriate parameters in $FWDIR/boot/modules/fwkern.conf
Answers
Suggested answer: A

Explanation:

https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk62848&partition=Advanced&product=IPS


Total 114 questions
Go to page: of 12