It is more faster and easier to pass the Check Point 156-315.77 exam by using Printable Check Point Check Point Security Expert R77 questuins and answers. Immediate access to the Most up-to-date 156-315.77 Exam and find the same core area 156-315.77 questions with professionally verified answers, then PASS your exam with a high score now.

Q289. - (Topic 6) 

In the following command, 

LSMcli [-d] <server><user><pswd><action> "server" 

should be replaced with: 

A. Hostname of ROBO gateway 

B. Hostname DAIP device 

C. IP address of the Security Management server 

D. GUIclient 

Answer:


Q290. - (Topic 6) 

When connecting to the SSL VPN portal, you receive a pop-up message indicating that the server hostname does not match the certificate hostname, and the certificate is not signed by a known Certificate Authority (CA). How would you solve this problem? 

A. Acquire and install an SSL server certificate from a known CA. 

B. Ignore the message. It only occurs before the portal synchronizes with the GUI. 

C. Resolve the certificate-hostname conflict between the Connectra portal and the administration GUI. 

D. The administration GUI is pointing to the wrong certificate-hostname location. 

Answer:


Q291. - (Topic 1) 

A snapshot delivers a complete backup ofSecure Platform. The resulting file can be stored on servers or as a local file in /var/CPsnapshot/snapshots. How do you restore a local snapshot named MySnapshot.tgz? 

A. As Expert user, type command snapshot - R to restore from a local file. Then, provide the correct file name. 

B. As Expert user, type command revert --file MySnapshot.tgz. 

C. As Expert user, type command snapshot -r MySnapshot.tgz. 

D. Reboot the system and call the start menu. Select option Snapshot Management, provide the Expert password and select [L] for a restore from a local file. Then, provide the correct file name. 

Answer:


Q292. - (Topic 2) 

Your network includes ClusterXL running Multicast mode on two members, as shown in this topology: Your network is expanding, and you need to add new interfaces: 10.10.10.1/24 on Member A, and 10.10.10.2/24 on Member B. The virtual IP address for interface 10.10.10.0/24 is 10.10.10.3. What is the correct procedure to add these interfaces? 

A. 1. Use the ifconfig command to configure and enable the new interface. 

2. Run cpstop and cpstart on both members at the same time. 

3. Update the topology in the cluster object for the cluster and both members. 

4. Install the Security Policy. 

B. 1. Disable "Cluster membership" from one Gateway via cpconfig. 

2. Configure the new interface via sysconfig from the "non-member" Gateway. 

3. RE. enable "Cluster membership" on the Gateway. 

4. Perform the same step on the other Gateway. 

5. Update the topology in the cluster object for the cluster and members. 

6. Install the Security Policy. 

C. 1. Run cpstop on one member, and configure the new interface via sysconfig. 

2. Run cpstart on the member. Repeat the same steps on another member. 

3. Update the new topology in the cluster object for the cluster and members. 

4. Install the Security Policy. 

D. 1. Use sysconfig to configure the new interfaces on both members. 

2. Update the topology in the cluster object for the cluster and both members. 

3. Install the Security Policy. 

Answer:


Q293. - (Topic 7) 

How do you check the version of “CPSIZEME” on GAiA? 

A. [expert@HostName]# ./cpsizeme.exe –v 

B. [expert@HostName]# ./cpsizeme.exe –version 

C. [expert@HostName]# ./cpsizeme –V 

D. [expert@HostName]# ./cpsizeme –version 

Answer:


Q294. - (Topic 4) 

Which of the following commands can be used to stop Management portal services? 

A. fw stopportal 

B. cpportalstop 

C. cpstop / portal 

D. smartportalstop 

Answer:


Q295. - (Topic 1) 

When defining an Organizational Unit, which of the following are NOT valid object categories? 

A. Domains 

B. Resources 

C. Users 

D. Services 

Answer:


Q296. - (Topic 4) 

Given the following protection detailed and the enforcing gateways list, is the Tool many DNS queries with the RD flag set protection enabled on the Gateway R76? 

Please choose the answer with the correct justification. 

A. yes because it is set to prevent on the Default_Protrction, which R76gateway has 

applied. 

B. No because the protection is only supported on IPS-1 Sensor 

C. No enough information to determine one way or other 

D. No, because the Too many DNS queries with the flag set protection is not a valid protection in R76 

Answer: