New Year Special 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: save70

PDF 156-215.77 Study Guide

Page: 13 / 15
Total 388 questions

Check Point Certified Security Administrator Questions and Answers

Question 49

You find a suspicious connection from a problematic host. You decide that you want to block everything from that whole network, not just the problematic host. You want to block this for an hour while you investigate further, but you do not want to add any rules to the Rule Base.

How do you achieve this?

Options:

A.

Use dbedit to script the addition of a rule directly into the Rule Bases_5_0.fws configuration file.

B.

Select Block intruder from the Tools menu in SmartView Tracker.

C.

Create a Suspicious Activity Rule in SmartView Monitor.

D.

Add a temporary rule using SmartDashboard and select hide rule.

Question 50

How can you activate the SNMP daemon on a Check Point Security Management Server?

Options:

A.

Using the command line, enter snmp_install.

B.

From cpconfig, select SNMP extension.

C.

Any of these options will work.

D.

In SmartDashboard, right-click a Check Point object and select Activate SNMP.

Question 51

In the Rule Base displayed for fwsingapore, user authentication in Rule 4 is configured as fully automatic. Eric is a member of the LDAP group, MSD_Group.

What happens when Eric tries to connect to a server on the Internet?

Options:

A.

None of these things will happen.

B.

Eric will be authenticated and get access to the requested server.

C.

Eric will be blocked because LDAP is not allowed in the Rule Base.

D.

Eric will be dropped by the Stealth Rule.

Question 52

Which R77 SmartConsole tool would you use to verify the installed Security Policy name on a Security Gateway?

Options:

A.

SmartView Monitor

B.

SmartUpdate

C.

SmartView Status

D.

None, SmartConsole applications only communicate with the Security Management Server.

Page: 13 / 15
Total 388 questions