New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

156-582 Exam Results

Page: 4 / 6
Total 75 questions

Check Point Certified Troubleshooting Administrator - R81.20 (CCTA) Questions and Answers

Question 13

What are some measures you can take to prevent IPS false positives?

Options:

A.

Capture packets, Update the IPS database, and Back up custom IPS files

B.

Use Recommended IPS profile

C.

Use IPS only in Detect mode

D.

Exclude problematic services from being protected by IPS (sip, H.323, etc.)

Question 14

After deploying a new Static NAT configuration, traffic is not getting through. What command would you use to troubleshoot internal problems with the NAT traffic?

Options:

A.

fw ctl kdebug + xlate xltrc nat

B.

cp ctl zdebug + xlate xltrc nat

C.

fw ctl zdebug + xlate xltrc nat

D.

cp ctl kdebug + xlate xltrc nat

Question 15

What is the most efficient way to view large fw monitor captures and run filters on the file?

Options:

A.

snoop

B.

CLI

C.

CLISH

D.

Wireshark

Question 16

You tested the connection from source to destination and you are not able to find logs in your Security Management. What is the best possible reason?

Options:

A.

The FWM process crashed on Security Management, therefore logging will not work.

B.

There is not enough storage in Security Management, so the logs can't be stored.

C.

The logging blade was not enabled on Security Gateway.

D.

The gateway is logging locally.

Page: 4 / 6
Total 75 questions