Your success in Check Point 156-115.77 is our sole target and we develop all our 156-115.77 braindumps in a way that facilitates the attainment of this target. Not only is our 156-115.77 study material the best you can find, it is also the most detailed and the most updated. 156-115.77 Practice Exams for Check Point 156-115.77 are written to the highest standards of technical accuracy.

Q33. - (Topic 4) 

What is the log file that shows the processes that participate in the tunnel initiation stage? 

A. $FWDIR/log/ikev2.xmll 

B. $FWDIR/log/ike.xmll 

C. $FWDIR/log/vpnd.elg 

D. $FWDIR/log/ike.elg 

Answer:


Q34. - (Topic 8) 

Where would you go to adjust the number of Kernels in CoreXL? 

A. Cpconfig 

B. fw ctl conf 

C. fw ctl affinity 

D. fw ctl multik stat 

Answer:


Q35. - (Topic 5) 

SecureXL uses templating to accelerate traffic passing through the gateway. What command should you run to determine if Accept, Drop and NAT templating is enabled? 

A. fwaccel stat 

B. fw ctl pstat 

C. cphaprob -a if 

D. cpconfig 

Answer:


Q36. - (Topic 1) 

When troubleshooting and trying to understand which chain is causing a problem on the Security Gateway, you should use the command: 

A. fw ctl zdebug drop 

B. fw tab –t connections 

C. fw monitor -e "accept;".-p all 

D. fw ctl chain 

Answer:


Q37. - (Topic 4) 

You are in VPN troubleshooting with a Partner and you suspect a mismatch configuration in Diffie-Hellman (DH) group to Phase1. After starting a vpn debug, in which packet would you look to analyze this option in your debug file? 

A. Packet3 

B. Packet4 

C. Packet5 

D. Packet1 

Answer:


Q38. - (Topic 11) 

What are the common Best Practices for configuring QoS over a route-based VPN? 

A. IKE traffic must have a minimum Guarantee of 50% of the external interface throughput. 

B. QoS is not supported. 

C. Ensure the VTI is numbered. 

D. Ensure the VTI is unnumbered. 

Answer:

253. - (Topic 11) 

How do you designate the “enforcement point gateway” for the peers involved in “VPN Directional Enforcement”? 

A. From the WebUI’s of the peers add a static route to the “designated enforcement point”. 

B. In the file $FWDIR/conf/user.def on each peer with a route entry to the enforcement point gateway. 

C. Designate this gateway in the VPN community properties. 

D. Editing file $FWDIR/conf/vpn_route.conf on each peer with a route entry to the enforcement point gateway. 

Answer:


Q39. - (Topic 2) 

Since R76 GAiA, what is the method for configuring proxy ARP entries for manual NAT rules? 

A. WebUI or add proxy ARP ... commands via CLISH 

B. SmartView Tracker 

C. local.arp file 

D. SmartDashboard 

Answer:


Q40. - (Topic 2) 

Ann wants to hide FTP traffic behind the virtual IP of her cluster. Where is the relevant file table.def located to make this modification? 

A. $FWDIR/log/table.def 

B. $FWDIR/conf/table.def 

C. $FWDIR/bin/table.def 

D. $FWDIR/lib/table.def 

Answer: