Download Check Point Certified Security Master R80.156-115.80.Prep4Sure.2018-12-05.44q.vcex

Vendor: Checkpoint
Exam Code: 156-115.80
Exam Name: Check Point Certified Security Master R80
Date: Dec 05, 2018
File Size: 25 KB

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

Demo Questions

Question 1
Consider a Check Point Security Gateway under high load. What mechanism can be used to confirm that important traffic such as control connections are not dropped? 
  1. fw debug fgd50 on OPSEC_DEBUG_LEVEL=3
  2. fw ctl multik prioq
  3. fgate –d load
  4. fw ctl debug –m fg all
Correct answer: A
Question 2
What is the default and maximum number of entries in the ARP Cache Table in a Check Point appliance?
  1. 1,024 and 4,096
  2. 4,096 and 16,384
  3. 4,096 and 65,536
  4. 1,024 and 16,384
Correct answer: D
Explanation:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_Gaia_WebAdmin/73181.htm
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_Gaia_WebAdmin/73181.htm
Question 3
You are working with multiple Security Gateways enforcing an extensive number of rules. To simplify security administration, which action would you choose?
  1. Eliminate all possible contradictory rules such as the Stealth or Cleanup rules
  2. Create a separate Security Policy package for each remote Security Gateway
  3. Create network objects that restrict all applicable rules to only certain networks
  4. Run separate SmartConsole instances to login and configure each Security Gateway directly
Correct answer: B
Question 4
Which type of SecureXL templates is enabled by default on Security Gateways?
  1. Accept
  2. Drop
  3. NAT
  4. VPN
Correct answer: A
Question 5
Where does the translation occur with Hide NAT?
  1. The destination translation occurs at the client side
  2. The source translation occurs at the server side
  3. The source translation occurs at the client side
  4. The destination translation occurs at the server side 
Correct answer: B
Question 6
Fill in the blank. The tool ____________________ generates a R80 Security Gateway configuration report.
  1. infoCP
  2. infoview
  3. cpinfo
  4. fw cpinfo
Correct answer: C
Question 7
How many layers are incorporated in IPS detection and what are they called?
  1. 4 layers – Passive Streaming Library (PSL), Protocol Parsers, Context Management, Protections
  2. 3 layers – Active Streaming Library (ASL), CMI, Protections
  3. 4 layers – Active Streaming Library (ASL), Protocol Parsers, Context Management, Protections
  4. 3 layers – Protocol Parsers, CMI, Protections
Correct answer: A
Question 8
What is the command to check the current status of hyper-threading?
  1. fw ctl get int cphwd_hyper_status
  2. fw ctl multik stat
  3. cat/proc/hyperstats
  4. cat/proc/smt_status
Correct answer: D
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk93000#To%20check%20SMT%20current%20status
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk93000#To%20check%20SMT%20current%20status
Question 9
What occurs when Bypass Under Load activated?
  1. Packets are forwarded to the destination without checking the packets against the firewall rule base
  2. Packets are forwarded to the destination without performing IPS analysis
  3. To still ensure a minimum level of data integrity, the system revert to the use of MD5 instead of SHA-1, since former produces an output smaller than the latter
  4. The amount of the state table entries is decreased according to the LRU (least recently used) algorithm
Correct answer: B
Explanation:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_IPS_AdminGuide/12750.htm
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_IPS_AdminGuide/12750.htm
Question 10
Having a look at the output of the “fwaccel conns” command, the F flag is the indicator for a packet ______________. 
  1. getting the routing information according to the Forwarding Information Base (FIB) 
  2. being processed by the firewall kernel module
  3. going through the slow path
  4. being forced of using the accelerated path
Correct answer: B
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX AND EXAM FILES

Use ProfExam Simulator to open VCEX and EXAM files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!