Which of the following ports are used for SIC?
A . 18355 and 18356
B . 18210 and 18211
C . 257 and 258
D . 18192 and 18193
Answer: B
Explanation:
Reference: http://digitalcrunch.com/check-point-firewall/list-of-check-point-ports/
Which of the following ports are used for SIC?
A . 18355 and 18356
B . 18210 and 18211
C . 257 and 258
D . 18192 and 18193
Answer: B
Explanation:
Reference: http://digitalcrunch.com/check-point-firewall/list-of-check-point-ports/
Having a look at the output of the “fwaccel conns” command, the F flag is the indicator for a packet ______________.
A . getting the routing information according to the Forwarding Information Base (FIB)
B . being processed by the firewall kernel module
C . going through the slow path
D . being forced of using the accelerated path
Answer: B
What is the name of the table that an administrator would review to investigate a port exhaustion error when using Hide NAT?
A . dyn_nat_table
B . connection
C . nat_dyn_table
D . fwx_alloc
Answer: D
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk32224
What is the command to check the current status of hyper-threading?
A . fw ctl get int cphwd_hyper_status
B . fw ctl multik stat
C . cat/proc/hyperstats
D . cat/proc/smt_status
Answer: D
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk93000#To%20check%20SMT%20current%20status
How often will a gateway with Performance Pack running by default automatically review and distribute interface affinity between cores?
A . Every 60 seconds
B . Interface affinity is determined at gateway build time and does not change
C . Every 5 minutes
D . Every 10 seconds
Answer: A
Explanation:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_PerformanceTuning_WebAdmin/6731.htm
What is the role of FWM process in Check Point R80.10 Security Management architecture?
A . It is called by CPM process to perform verification and conversion of the database
B . FWM is used to transfer CPsets from management to the gateway
C . FWM prepares and loads commit functions to execute the policy
D . Policy installation command initiated from SmartConsole is sent to FWM
Answer: D
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk101226
What does the command “vpn shell tunnels delete all ike” do?
A . Delete only outbound_SPI tables
B . Deletes all IKE and IPSEC SA’s
C . Deletes all IKE configuration on the Gateway
D . Deletes all IKE SA’s
Answer: D
What is enabled by the command “vpn debug mon”?
A . statistics monitoring for vpn encrypted packets
B . vpn daemon monitor mode
C . ike monitor
D . vpn debug mode
Answer: C
Which one of following commands should you run to display HTTPS packet content together with kernel debug?
A . fw ctl get int https_inspection_show_decrypted_data_in_debug=1
fw ctl get int ssl_inspection_extra_debug=1
B . fw set int https_inspection_get_encrypted_data_in_debug 1
fw set int https_inspection_show_debug 1
C . fw ctl set int https_inspection_show_decrypted_data_in_debug 1
fw ctl set int ssl_inspection_extra_debug 1
D . fw ctl set int http_inspection_display_encrypted_data_in_debug=1
fw ctl set int http_inspection_extra_debug=1
Answer: C
You run “cat/proc/smt_status” on your security gateway and the output shows ‘Soft Disable’.
How is your system configured in reference to hyper-threading?
A . Hyper-threading is disabled in BIOS and cpconfig
B . Hyper-threading is enabled in BIOS but disabled in cpconfig
C . Hyper-threading is disabled in BIOS but enabled in cpconfig
D . Your system does not support Hyper-threading
Answer: B
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk93000