Tactics to ccsa 156 215.77
Our pass rate is high to 98.9% and the similarity percentage between our ccsa 156 215.77 study guide and real exam is 90% based on our seven-year educating experience. Do you want achievements in the Check Point 156 215.77 pdf exam in just one try? I am currently studying for the Check Point exam 156 215.77 exam. Latest Check Point 156 215.77 pdf Test exam practice questions and answers, Try Check Point checkpoint 156 215.77 Brain Dumps First.
Q171. - (Topic 2)
You are about to test some rule and object changes suggested in an R77 news group. Which backup solution should you use to ensure the easiest restoration of your Security Policy to its previous configuration after testing the changes?
A. Database Revision Control
B. Manual copies of the directory $FWDIR/conf
C. upgrade_export command
D. SecurePlatform backup utilities
Answer: A
Q172. - (Topic 1)
Your R77 primary Security Management Server is installed on GAiA. You plan to schedule the Security Management Server to run fw logswitch automatically every 48 hours. How do you create this schedule?
A. Create a time object, and add 48 hours as the interval. Select that time object's Global Properties > Logs and Masters window, to schedule a logswitch.
B. Create a time object, and add 48 hours as the interval. Open the primary Security Management Server object's Logs and Masters window, enable Schedule log switch, and select the Time object.
C. On a SecurePlatform Security Management Server, this can only be accomplished by configuring the command fw logswitch via the cron utility.
D. Create a time object, and add 48 hours as the interval. Open the Security Gateway object's Logs and Masters window, enable Schedule log switch, and select the Time object.
Answer: B
Q173. - (Topic 3)
Which of the following authentication methods can be configured in the Identity Awareness setup wizard?
A. TACACS
B. Check Point Password
C. Windows password
D. LDAP
Answer: D
Q174. - (Topic 3)
______________ is an R77 component that displays the number of packets accepted, rejected, and dropped on a specific Security Gateway, in real time.
A. SmartEvent
B. SmartView Status
C. SmartUpdate
D. SmartView Monitor
Answer: D
Q175. - (Topic 3)
What is a Consolidation Policy?
A. A global Policy used to share a common enforcement policy for multiple Security Gateways.
B. The collective name of the logs generated by SmartReporter.
C. The collective name of the Security Policy, Address Translation, and IPS Policies.
D. The specific Policy written in SmartDashboard to configure which log data is stored in the SmartReporter database.
Answer: D
Q176. - (Topic 2)
Which R77 feature or command allows Security Administrators to revert to earlier Security Policy versions without changing object configurations?
A. Policy Package management
B. Database Revision Control
C. upgrade_export/upgrade_import
D. fwm dbexport/fwm dbimport
Answer: A
Q177. - (Topic 1)
You are running a R77 Security Gateway on SecurePlatform. In case of a hardware failure, you have a server with the exact same hardware and firewall version installed. What back up method could be used to quickly put the secondary firewall into production?
A. manual backup
B. snapshot
C. upgrade_export
D. backup
Answer: B
Q178. - (Topic 2)
You are MegaCorp's Security Administrator. There are various network objects which must be NATed. Some of them use the Automatic Hide NAT method, while others use the Automatic Static NAT method. What is the rule order if both methods are used together? Give the best answer.
A. The Administrator decides the rule order by shifting the corresponding rules up and down.
B. The Hide NAT rules have priority over the Static NAT rules and the NAT on a node has priority over the NAT on a network or an address range.
C. The Static NAT rules have priority over the Hide NAT rules and the NAT on a node has priority over the NAT on a network or an address range.
D. The rule position depends on the time of their creation. The rules created first are placed at the top; rules created later are placed successively below the others.
Answer: C
Q179. - (Topic 1)
How can you check whether IP forwarding is enabled on an IP Security Appliance?
A. clish -c show routing active enable
B. ipsofwd list
C. cat /proc/sys/net/ipv4/ip_forward
D. echo 1 > /proc/sys/net/ipv4/ip_forward
Answer: B
Q180. - (Topic 2)
What information is found in the SmartView Tracker Management log?
A. Destination IP address
B. Most accessed Rule Base rule
C. Policy rule modification date/time stamp
D. Historical reports log
Answer: C