Winter Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: v4s65

Note! Following 156-585 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is 156-587

156-585 Exam Dumps - Check Point Certified Troubleshooting Expert

Go to page:
Question # 4

Some users from your organization have been reported some connection problems with CIFS since this morning. You suspect an IPS Issue after an automatic IPS update last night. So you want to perform a packet capture on uppercase I only directly after the IPS module (position 4 in the chain) to check if the packets pass the IPS. What command do you need to run?

A.

fw monitor -ml -pl 5 -e

B.

fw monitor -pi 5 -e

C.

tcpdump -eni any

D.

fw monitor -pl asm

Full Access
Question # 5

Check Point provides tools & commands to help you to identify issues about products and applications. Which Check Point command can help you to display status and statistics information for various Check Point products and applications?

A.

cpstat

B.

CPstat

C.

CPview

D.

fwstat

Full Access
Question # 6

After kernel debug with "fw ctl debug" you received a huge amount of information It was saved in a very large file that is difficult to open and analyze with standard text editors Suggest a solution to solve this issue.

A.

Use "fw ctl zdebug' because of 1024KB buffer size

B.

Divide debug information into smaller files Use "fw ctl kdebug -f -o "filename" -m 25 - s "1024"

C.

Reduce debug buffer to 1024KB and run debug for several times

D.

Use Check Point InfoView utility to analyze debug output

Full Access
Question # 7

What is the most efficient way to view large fw monitor captures and run filters on the file?

A.

wireshark

B.

CLISH

C.

CLI

D.

snoop

Full Access
Question # 8

Rules within the Threat Prevention policy use the Malware database and network objects. Which directory is used for the Malware database?

A.

$FWDIR/conf/install_manager_tmp/ANTIMALWARE/conf/

B.

$CPDIR/conf/install_manager_lmp/ANTIMALWARE/conf/

C.

$FWDlR/conf/install_firewall_imp/ANTIMALWARE/conf/

D.

$FWDlR/log/install_manager_tmp/ANTIMALWARBlog?

Full Access
Go to page: