What must be done for the “fw monitor” command to capture packets through the firewall kernel?
A
Reference:
https://supportcenter.checkpoint.com/supportcenter/portal
?
eventSubmit_doGoviewsolutiondetails=&solutionid=sk30583
Consider a Check Point Security Gateway under high load. What mechanism can be used to confirm
that important traffic such as control connections are not dropped?
B
What is the default and maximum number of entries in the ARP Cache Table in a Check Point
appliance?
D
Reference:
https://sc1.checkpoint.com/documents/R76/CP_R76_Gaia_WebAdmin/73181.htm
Which kernel debug flag should you use to troubleshoot NAT connections?
A. fw ctl debug + xlate xltrc nat table
B. fw ctl debug + xltrc xlate nat conn
C. fw ctl debug + xlate xltrc nat conn drop
D. fw ctl debug + fwx_alloc nat conn drop
C
(none)
Explanation
You are working with multiple Security Gateways enforcing an extensive number of rules. To simplify
security administration, which action would you choose?
B
Which type of SecureXL templates is enabled by default on Security Gateways?
A
Which one of following commands should you run to display HTTPS packet content together with
kernel debug?
C
You issued the command “set ipv6-state on” in order to enable IPv6 protocol on a Security Gateway.
The command was executed successfully. After reboot you notice that IPv6 protocol is not enabled.
What do you do to permanently enable IPv6 protocol?
A
Where does the translation occur with Hide NAT?
B
Fill in the blank. The tool
generates a R80 Security Gateway configuration report.
C