Proper study guides for Up to date Check Point Check Point Certified Security Master certified begins with Check Point 156-115.77 preparation products which designed to deliver the Free 156-115.77 questions by making you pass the 156-115.77 test at your first time. Try the free 156-115.77 demo right now.

Q65. - (Topic 5) 

When are rules that include identity awareness access roles accelerated through SecureXL? 

A. Rules using Identity Awareness are always accelerated. 

B. Only when ‘Unauthenticated Guests’ is included in the access role. 

C. They have no bearing on whether the connection for the rule is accelerated. 

D. Rules using Identity Awareness are never accelerated. 

Answer:


Q66. - (Topic 1) 

What command would give you a summary of all the tables available to the firewall kernel? 

A. fw tab 

B. fw tab -s 

C. fw tab -h 

D. fw tab -o 

Answer:


Q67. - (Topic 8) 

When troubleshooting a performance problem on multicore firewall that is using CoreXL, what command checks the number of connections each core is processing? 

A. sim affinity -l 

B. cat fwkern.conf 

C. fw CTL pstat 

D. fw ctl multik stat 

Answer:


Q68. - (Topic 6) 

what command other than fw ctl pstat, will display your peak concurrent connections? 

A. fw ctl get int fw_peak_connections 

B. netstat -ni 

C. fw tab -t connections -s 

D. top 

Answer:


Q69. - (Topic 5) 

A firewall administrator knows the details of the packet header for an already established connection going through a firewall. What command will show if SecureXL will accelerate that packet? 

A. fw ctl zdebug + sxl error warning asm 

B. fwaccel conns 

C. fwaccel templates 

D. fw tab –t connections –f | grep ‘dest. port #’ | grep ‘source port #’ | grep ‘dest. IP address’ 

Answer:


Q70. - (Topic 3) 

Which definition best describes the file table.def function? It is a placeholder for: 

A. definitions of various kernel tables for Security Gateways. 

B. definitions of various kernel tables for Management Servers. 

C. user defined implied rules for Security Gateways. 

D. user defined implied rules for Management Servers. 

Answer:

Topic 4, VPN Troubleshooting 


Q71. - (Topic 7) 

What is the best way to see how much traffic went through the firewall that was TCP, UDP and ICMP? 

A. fwaccel conns 

B. fw tab –t connections –p 

C. fwaccel stats 

D. fw ctl pstat 

Answer:


Q72. - (Topic 9) 

You have configured IPS on your network; you find you are being overwhelmed with what you believe are false positives. You investigated this traffic and confirmed they are false positives. What can you do to stop these IPS alerts? 

A. Right click the alert and “ignore” 

B. Disable the IPS protection for this network 

C. Use a SAM rule to categorize this traffic 

D. Add an exception for this traffic under the IPS protection 

Answer:

224. - (Topic 9) 

You are a system administrator and would like to configure Geo Protection on your gateway to comply with a new corporate policy. What must you have to do this? 

A. Valid IPS contract and software blade licensing 

B. DNS resolution on the gateway 

C. Geo Protection is enabled by default 

D. The latest IPS update 

Answer: