Latest Nov-2024 156-587 Dumps PDF And Certification Training [Q36-Q59]

Share

Latest Nov-2024 156-587 Dumps PDF And Certification Training

Check your preparation for CheckPoint 156-587 On-Demand Exam

NEW QUESTION # 36
What is the Security Gateway directory where an administrator can find vpn debug log files generated during Site-to-Site VPN troubleshooting?

  • A. $FWDIR/conf/
  • B. $FWDIR/log/
  • C. $CPDIR/conf/
  • D. /opt/CPsuiteR80/vpn/log/

Answer: B


NEW QUESTION # 37
How can you start debug of the Unified Policy with all possible flags turned on?

  • A. fw ctl debuq -m UnifiedPolicv all
  • B. fw ctl debug -m UP
  • C. fw ctl debug -m UP all
  • D. fw ctl debug -m fw + UP

Answer: C


NEW QUESTION # 38
What process monitors, terminates, and restarts critical Check Point processes as necessary?

  • A. CPM
  • B. FWM
  • C. FWD
  • D. CPVVD

Answer: D


NEW QUESTION # 39
What command(s) will turn off all vpn debug collection?

  • A. fw ctl debug 0
  • B. vpn debug off and vpn debug ikeoff
  • C. vpn debug -a off
  • D. vpn debug off

Answer: B


NEW QUESTION # 40
What is the best way to resolve an issue caused by a frozen process?

  • A. Kill the process
  • B. Restart the process
  • C. Reboot the machine
  • D. Power off the machine

Answer: C


NEW QUESTION # 41
After kernel debug with "fw ctl debug" you received a huge amount of information. It was saved in a very large file that is difficult to open and analyze with standard text editors. Suggest a solution to solve this issue.

  • A. Use "fw ctl zdebug" because of 1024KB buffer size
  • B. Use Check Point InfoView utility to analyze debug output
  • C. Reduce debug buffer to 1024KB and run debug for several times
  • D. Divide debug information into smaller files. Use "fw ctl kdebug -f -o "filename" -m 25 - s "1024"

Answer: D


NEW QUESTION # 42
Troubleshooting issues with Mobile Access requires the following:

  • A. Debug logs of FWD captured with the command - 'fw debug fwd on
    TDERROR_MOBILE_ACCESS=5'
  • B. Standard VPN debugs and packet captures on Security Gateway, debugs of 'cvpnd' process on Security Management
  • C. 'ma_vpnd' process on Security Gateway
  • D. Standard VPN debugs, packet captures, and debugs of 'cvpnd' process on Security Gateway

Answer: B


NEW QUESTION # 43
Check Point Access Control Daemons contains several daemons for Software Blades and features. Which Daemon is used for Application & Control URL Filtering?

  • A. pdpd
  • B. rad
  • C. cprac
  • D. pepd

Answer: B

Explanation:
https://support.checkpoint.com/results/sk/sk97638


NEW QUESTION # 44
Which command shows the installed licenses and contracts on a Check Point device?

  • A. fwlic print -x
  • B. cplicenses print -x
  • C. cplic print -s
  • D. cplic print -x

Answer: D


NEW QUESTION # 45
If SmartLog is not active or failed to parse results from server, what commands can be run to re- enable the service?

  • A. smartlogstart and smartlogsetup
  • B. smartlogrestart and smartlogstart
  • C. smartloginit and smartlogstop
  • D. smartlogstart and smartlogstop

Answer: B


NEW QUESTION # 46
An administrator receives reports about issues with log indexing and text searching regarding an existing Management Server. In trying to find a solution she wants to check if the process responsible for this feature is running correctly. What is true about the related process?

  • A. fwm manaqes this database after initialization of the 1CA
  • B. solr is a child process of cpm
  • C. fwssd crashes can affect therefore not show in the list
  • D. cpd needs to be restarted manual to show in the list

Answer: B


NEW QUESTION # 47
What is the correct syntax to turn a VPN debug on and create new empty debug files?

  • A. vpndebug trunc on
  • B. vpn debuq trunkon
  • C. vpn debug truncon
  • D. vpn kdebug on

Answer: C


NEW QUESTION # 48
What version of Check Point can Security Gateways begin dynamically distributing Logs between log servers?

  • A. R77
  • B. R75
  • C. R81
  • D. R30

Answer: C


NEW QUESTION # 49
What Check Point process controls logging?

  • A. CPD
  • B. FWD
  • C. CPM
  • D. CPVVD

Answer: B


NEW QUESTION # 50
You do not see logs in the SMS. When you login on the SMS shell and run cpwd_admin list you notice that the RFL process is with status T. What command can you run to try to resolve it?

  • A. smartlog_server stop and smartlog_server restart
  • B. rflsop and rflstart
  • C. evstart and evstop
  • D. RFLstop and RFLstart

Answer: C


NEW QUESTION # 51
You are seeing output from the previous kernel debug. What command should you use to avoid that?

  • A. fw ctl debug 0
  • B. fw ctl clean buffer = 0
  • C. fw ctl zdebug disable
  • D. fw ctl debug = 0

Answer: A

Explanation:
To reset all debug flags and enable only the default debug flags in all kernel modules:
fw ctl debug 0
https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_QoS_AdminGu ide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_QoS_Admin Guide/202665


NEW QUESTION # 52
Check Point Threat Prevention policies can contain multiple policy layers and each layer consists of its own Rule Base.
Which Threat Prevention daemon is used for Anti-virus?

  • A. in.emaild.mta
  • B. ctasd
  • C. in.msd
  • D. in.emaild

Answer: B

Explanation:
ctasd: This daemon is responsible for Threat Emulation, Anti-Bot, Application Control, and various other security features, including Anti-virus. From Check Point R80.10 onwards, Anti-virus functionality is integrated within ctasd.


NEW QUESTION # 53
What is NOT a benefit of the `fw ctl zdebug' command?

  • A. Collect debug messages from the kernel
  • B. Automatically allocate a 1MB buffer
  • C. Clean the buffer
  • D. Cannot be used to debug additional modules

Answer: D


NEW QUESTION # 54
SmartEvent utilizes the Log Server, Correlation Unit and SmartEvent Server to aggregate logs and identify security events. The three main processes that govern these SmartEvent components are:

  • A. cpsemd, cpsead, and DBSync
  • B. fwd, secu, sesrv
  • C. cpcu, cplog, cpse
  • D. eventiasv, eventiarp,eventiacu

Answer: A


NEW QUESTION # 55
What are the three main component of Identity Awareness?

  • A. User, Active Directory and Access Role
  • B. Client, SMS and Secure Gateway
  • C. Identity Source, Identity Server (PDP) and Identity Enforcement (PEP)
  • D. Identity Awareness Blade on Security Gateway, User Database on Security Management Server and Active Directory

Answer: C


NEW QUESTION # 56
What cli command is run on the GW to verify communication to the Identity Collector?

  • A. pep connections idc
  • B. fwd connected
  • C. pdp connections idc
  • D. show idc connections

Answer: C


NEW QUESTION # 57
What information does the doctor-log script supply?

  • A. Repair options. Logging Rates, Logging Directories
  • B. Logging rates. Logging Directories, List of troubleshooting tips
  • C. Logging errors. Exceptions, Repair options
  • D. Current and daily average logging rates. Indexing status, Size

Answer: D


NEW QUESTION # 58
Which of the following is contained in the System Domain of the Postgres database?

  • A. Configuration data of log servers
  • B. Saved queries for applications
  • C. Trusted GUI clients
  • D. User modified configurations such as network objects

Answer: C


NEW QUESTION # 59
......

Valid 156-587 Dumps for Helping Passing CheckPoint Exam: https://skillsoft.braindumpquiz.com/156-587-exam-material.html