Exam Code: 156-915.77 (Practice Exam Latest Test Questions VCE PDF)
Exam Name: Check Point Certified Security Expert Update Blade
Certification Provider: Check Point
Free Today! Guaranteed Training- Pass 156-915.77 Exam.
2021 Feb 156-915.77 torrent
Q1. - (Topic 11)
What is Check Point's CoreXL?
A. A way to synchronize connections across cluster members
C. Multiple core interfaces on the device to accelerate traffic
D. Multi Core support for Firewall Inspection
Q2. - (Topic 10)
Which of the following authentication methods can be configured in the Identity Awareness setup wizard?
A. Check Point Password
D. Windows password
Q3. - (Topic 2)
You are the Security Administrator for ABC-Corp. A Check Point Firewall is installed and in use on GAiA. You are concerned that the system might not be retaining your entries for the interfaces and routing configuration. You would like to verify your entries in the corresponding file(s) on GAiA. Where can you view them? Give the BEST answer.
Q4. CORRECT TEXT - (Topic 14)
Fill in the blank.
In Load Sharing Unicast mode, the internal cluster IP address is 10.4.8.3. The internal interfaces on two members are 10.4.8.1 and 10.4.8.2. Internal host 10.4.8.108 Pings 10.4.8.3, and receives replies. The following is the ARP table from the internal Windows host 10.4.8.108. Review the exhibit and type the IP address of the member serving as the pivot machine in the space below.
Q5. - (Topic 11)
Can you implement a complete IPv6 deployment without IPv4 addresses?
A. No. SmartCenter cannot be accessed from everywhere on the Internet.
B. Yes. Only one TCP stack (IPv6 or IPv4) can be used at the same time.
C. Yes, There is no requirement for managing IPv4 addresses.
D. No. IPv4 addresses are required for management.
Update 156-915.77 practice question:
Q6. - (Topic 13)
Which CLI tool helps on verifying proper ClusterXL sync?
A. fw stat
B. fw ctl sync
C. fw ctl pstat
D. cphaprob stat
Q7. - (Topic 2)
When restoring R77 using the command upgrade_import, which of the following items are NOT restored?
A. SIC Certificates
C. Route tables
D. Global properties
Q8. - (Topic 4)
You have three servers located in a DMZ, using private IP addresses. You want internal users from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net
10.10.10.x is configured for Hide NAT behind the Security Gateway’s external interface.
What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ servers’ public IP addresses?
A. When connecting to internal network 10.10.10.x, configure Hide NAT for the DMZ network behind the Security Gateway DMZ interface.
B. When the source is the internal network 10.10.10.x, configure manual static NAT rules to translate the DMZ servers.
C. When connecting to the Internet, configure manual Static NAT rules to translate the DMZ servers.
D. When trying to access DMZ servers, configure Hide NAT for 10.10.10.x behind the DMZ’s interface.
Q9. - (Topic 3)
Which of the following is a CLI command for Security Gateway R77?
A. fw tab -u
B. fw shutdown
C. fw merge
D. fwm policy_print <policyname>
34. - (Topic 3)
Which command allows you to view the contents of an R77 table?
A. fw tab -a <tablename>
B. fw tab -t <tablename>
C. fw tab -s <tablename>
D. fw tab -x <tablename>
Q10. - (Topic 16)
MegaCorp is using SmartCenter Server with several gateways. Their requirements result in
a heavy log load. Would it be feasible to add the SmartEvent Correlation Unit and SmartEvent Server to their SmartCenter Server?
A. No. SmartCenter SIC will interfere with the function of SmartEvent.
B. No. If SmartCenter is already under stress, the use of a separate server for SmartEvent is recommended.
C. No, SmartEvent and Smartcenter cannot be installed on the same machine at the same time.
D. Yes. SmartEvent must be installed on your SmartCenter Server.
see more 156-915.77 dumps