Check Point 156-915.77 Check Point Certified Security Expert Update Blade Online Training
Check Point 156-915.77 Online Training
The questions for 156-915.77 were last updated at Aug 19,2025.
- Exam Code: 156-915.77
- Exam Name: Check Point Certified Security Expert Update Blade
- Certification Provider: Check Point
- Latest update: Aug 19,2025
At what router prompt would you save your OSPF configuration?
- A . localhost.localdomain(config)#
- B . localhost.localdomain(config-if)#
- C . localhost.localdomain#
- D . localhost.localdomain(config-router-ospf)#
What is the router command to save your OSPF configuration?
- A . save memory
- B . write config
- C . save
- D . write mem
What is the command to show OSPF adjacencies?
- A . show ospf interface
- B . show ospf summary-address
- C . show running-config
- D . show ip ospf neighbor
A VPN Tunnel Interface (VTI) is defined on Secure Platform Pro as:
vpn shell interface add numbered 10.10.0.1 10.10.0.2 madrid.cp
What do you know about this VTI?
- A . 10.10.0.1 is the local Gateway’s internal interface, and 10.10.0.2 is the internal interface of the remote Gateway.
- B . The peer Security Gateway’s name is madrid.cp.
- C . The VTI name is madrid.cp.
- D . The local Gateway’s object name is madrid.cp.
Which of the following operating systems support numbered VTI’s?
- A . Secure Platform Pro
- B . Solaris
- C . IPSO 4.0 +
- D . Windows Server 2008
Which type of routing relies on a VPN Tunnel Interface (VTI) to route traffic?
- A . Domain-based VPN
- B . Route-based VPN
- C . Subnet-based VPN
- D . Host-based VPN
You have installed Secure Platform R76 as Security Gateway operating system. As company requirements changed, you need the VTI features of R76.
What should you do?
- A . Only IPSO 3.9 supports VTI feature, so you have to replace your Security Gateway with Nokia appliances.
- B . In Smart Dashboard click on the OS drop down menu and choose Secure Platform Pro. You have to reboot the Security Gateway in order for the change to take effect.
- C . Type pro enable on your Security Gateway and reboot it.
- D . You have to re-install your Security Gateway with Secure Platform Pro R76, as Secure Platform R76 does not support VTIs.
Which operating system(s) support(s) unnumbered VPN Tunnel Interfaces (VTIs) for route-based VPN’s?
- A . Solaris 9 and higher
- B . IPSO 3.9 and higher
- C . Red Hat Linux
- D . Secure Platform for NGX and higher
You have three Gateways in a mesh community. Each gateway’s VPN Domain is their internal network as defined on the Topology tab setting All IP Addresses behind Gateway based on Topology information.
You want to test the route-based VPN, so you created VTIs among the Gateways and created static route entries for the VTIs.
However, when you test the VPN, you find out the VPN still go through the regular domain IPsec tunnels instead of the routed VTI tunnels.
What is the problem and how do you make the VPN use the VTI tunnels?
- A . Domain VPN takes precedence over the route-based VTI. To make the VPN go through VTI, remove the Gateways out of the mesh community and replace with a star community
- B . Route-based VTI takes precedence over the Domain VPN. Troubleshoot the static route entries to insure that they are correctly pointing to the VTI gateway IP.
- C . Route-based VTI takes precedence over the Domain VPN. To make the VPN go through VTI, use dynamic-routing protocol like OSPF or BGP to route the VTI address to the peer instead of static routes
- D . Domain VPN takes precedence over the route-based VTI. To make the VPN go through VTI, use an empty group object as each Gateway’s VPN Domain
When configuring a Permanent Tunnel between two gateways in a Meshed VPN community, in what object is the tunnel managed?
- A . VPN Community object
- B . Each participating Security Gateway object
- C . Security Management Server
- D . Only the local Security Gateway object