Month End Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

Note! Following 156-115.77 Exam is Retired now. Please select the alternative replacement for your Exam Certification.

156-115.77 Exam Dumps - Check Point Certified Security Master

Go to page:
Question # 9

You are configuring OSPF on your Secure Platform firewall. You are in expert mode and run the commands:

interface vt-Gateway_C

IP ospf 1 area 0.0.0.0

exit

When you run show running-config you do not see your OSPF configuration listed Why?

A.

You did not run command save running config before you exited.

B.

You should not have moved to expert mode to make these configurations.

C.

You did not run command save configuration before you exited.

D.

You did not run command enable before you exited.

Full Access
Question # 10

After disabling SecureXL you ran command fw monitor to help troubleshoot a VPN issue. In your review you note that you only see pre-inbound traffic (“i”) and no other traffic after this. Which of the following reasons could explain this output?

A.

You don’t have an “encrypt” rule

B.

Traffic is not destined to the correct MAC address because you failed to set up proxy ARP

C.

You have overlapping encryption domains with the remote site

D.

Routes are set up incorrectly

Full Access
Question # 11

You are setting up VPN between two gateways Local-GW and New-GW and want to use shared secret. For some reason New-GW is not showing up in the shared secret properties under mesh community properties. What is the most likely reason why the New-GW is not displayed?

A.

Gateway is locally managed by the same management station as Local-GW and shared secret is not supported for this configuration

B.

New-GW has to have Advanced properties > shared secret enabled.

C.

You need to install database by selecting Policy > Install database before gateway can be added.

D.

Gateway is 600 appliance and does not support “shared secret” option.

Full Access
Question # 12

What command allows you to monitor IPV6 packets in the kernel module?

A.

ip -6 neigh show

B.

ip -6 addr show

C.

tcpdump -nni eth ip6

D.

fw6 monitor

Full Access
Question # 13

Which of these commands can be used to display the IPv6 status?

A.

show ipv6-stat

B.

show ipv6 all

C.

show ipv6 status

D.

show ipv6-status

Full Access
Question # 14

How do you disable IPv6 on an IPSO gateway?

A.

Run $FWDIR/scripts/fwipv6_enable off and reboot.

B.

Remove the IPv6 license from the gateway.

C.

You cannot disable IPv6.

D.

In IPSO go to System Management > System Configuration, set IPv6 Support to off, and click Apply.

Full Access
Question # 15

The CoreXL software architecture includes the Secure Network Dispatcher (SND). One of the responsibilities of SND is to:

A.

Distribute non-accelerated packets among kernel instances

B.

Dispatch the packet securely through the VPN link

C.

Processing outgoing traffic from the network interfaces

D.

Dispatch the packet securely through the physical link

Full Access
Question # 16

CoreXL on IPSO R77.20 does NOT support which of the following features?

A.

Check Point QoS

B.

IPv6

C.

Overlapping NAT

D.

Route-based VPN

Full Access
Go to page: