Question 1
When enabling tracking on a rule, what is the default option?
Answer and explanation
Correct answer: C
17 free sample questions210 in the full practice test Other versions: 156-215.82(381),156-215.80(554),156-215.81.20(231)
When enabling tracking on a rule, what is the default option?
Correct answer: C
Gaia includes Check Point Upgrade Service Engine (CPUSE), which can directly receive updates for what components?
Correct answer: B
Name the file that is an electronically signed file used by Check Point to translate the features in the license into a code?
Correct answer: B
Fill in the blank: When LDAP is integrated with Check Point Security Management, it is then referred to as _______.
Correct answer: C
You are the Senior Security Administrator for a financial institution deploying a distributed Check Point environment running R81. You are configuring the Security Management Server (SMS) and three Security Gateways. During the initialization of the Secure Internal Communication (SIC) between the SMS and Gateway-A, the status remains 'Unknown' despite network connectivity being verified.
Which of the following commands would you run on the Security Gateway CLI to verify if the SIC port is listening and to reset the SIC state if necessary?
Correct answer: B
The 'cpconfig' command initiates the Check Point Configuration Tool, which provides a menu-driven interface to manage SIC, including viewing the activation key and resetting the SIC state. While netstat could check ports, cpconfig is the primary administrative tool for resetting SIC.
A junior administrator has configured a new Policy Package with an Inline Layer. The parent rule matches traffic from 'Any' source to 'Web_Servers' destination on service 'HTTP' and redirects it to the 'Web_Security' Inline Layer. Inside the Inline Layer, there is a cleanup rule set to 'Drop'.
What happens to an HTTP packet from an external source destined for 'Web_Servers' if it does not match any specific accept rules within the 'Web_Security' Inline Layer?
Correct answer: A
When a packet matches a parent rule that directs it to an Inline Layer, the inspection continues within that layer. If the packet does not match any explicit accept rules in the Inline Layer, it hits the cleanup rule of that specific layer. Since the cleanup rule is set to Drop, the packet is dropped. It does NOT return to the parent policy.
You are preparing to upgrade a critical Security Gateway from R80.40 to R81. The gateway is located in a remote data center with no local hands. You need to ensure you can revert the entire system state, including the OS, configuration, and product database, to the exact point before the upgrade if it fails.
Which backup method provides the most comprehensive recovery mechanism for this specific scenario?
Correct answer: C
A Snapshot creates a binary image of the entire root partition, including the OS, Check Point product binaries, and configuration. It is the only method that allows a full revert to the previous OS version and state, making it critical for major upgrades. Standard backups only save configuration files, not the OS itself.
While troubleshooting a NAT issue, you observe that traffic destined for a public IP address mapped to an internal server is being dropped. You suspect the issue involves the order in which Check Point processes NAT rules versus Security Policy rules.
In the Check Point packet flow, at what stage does the destination NAT (DNAT) typically occur for inbound traffic relative to the Security Policy lookup?
Correct answer: B
In the Check Point packet flow (Stateful Inspection), the firewall first matches the packet against the Security Policy using the original destination IP. If accepted, the firewall then consults the NAT policy. If a match is found, Destination NAT is applied before routing the packet to the egress interface. This is why Security Rules must permit the public (pre-NAT) IP address for the destination.
Register free to unlock 9 more sample questions