Check Point Access Control Daemons contains several daemons for Software Blades and features. Which Daemon is used for Application & Control URL Filtering?
Acprad
Brad
Cpepd
Dpdpd
Which of these packet processing components stores Rule Base matching state-related information?
AObservers
BClassifiers
CManager
DHandlers
What is correct about the Resource Advisor (RAD) service on the Security Gateways?
ARAD functions completely in user space. The Pattern Matter (PM) module of the CMI looks up for URLs in the cache and if not found, contact the RAD process in user space to do online categorization
BRAD is completely loaded as a kernel module that looks up URL in cache and if not found connects online for categorization. There is no user space involvement in this process
CRAD is not a separate module, it is an integrated function of the 'fw' kernel module and does all operations in the kernel space
DRAD has a kernel module that looks up the kernel cache, notifies client about hits and misses and forwards a-sync requests to RAD user space module which is responsible for online categorization
What are the three main component of Identity Awareness?
AUser, Active Directory and Access Role
BIdentity Awareness Blade on Security Gateway, User Database on Security Management Server and Active Directory
CIdentity Source, Identity Server (PDP) and Identity Enforcement (PEP)
DClient, SMS and Secure Gateway
Question 6
Management Database and Processes
0
Question 7
Client-to-Site VPN Troubleshooting
Question 8
Client-to-Site VPN Troubleshooting
Question 9
Advanced Logs and Monitoring
Question 10
Management Database and Processes
Question 11
Advanced Identity Awareness Troubleshooting
Question 12
Advanced Kernel Debugging
Question 13
Advanced Kernel Debugging
Question 14
Advanced Kernel Debugging
Question 15
Advanced Access Control
Question 16
Advanced Kernel Debugging
Question 17
Client-to-Site VPN Troubleshooting
Question 18
Management Database and Processes
Question 19
Site-to-Site VPN Troubleshooting
Question 20
Advanced Logs and Monitoring
Question 21
Advanced Logs and Monitoring
Question 22
Advanced Logs and Monitoring
Question 23
User Mode Troubleshooting
Question 24
Management Database and Processes
Question 25
Management Database and Processes
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ad
Want a break from the ads?
Become a Supporter and enjoy a completely ad-free experience, plus unlock Learn Mode, Exam Mode, AstroTutor AI, and more.
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
Ask AstroTutor
0
When viewing data for CPMI objects in the Postgres database, what table column should be selected to query for the object instance?
ACpmiHostCkp
Bfwset
CCPM_Global_M
DGuiDBedit
In Mobile Access VPN, clientless access is done using a web browser. The primary communication path for these browser based connections is a process that allows numerous processes to utilize port 443 and redirects traffic to a designated port of the respective process. Which daemon handles this?
AMobile Access Daemon (MAD)
BConnectra VPN Daemon (cvpnd)
CHTTPS Inspection Daemon (HID)
DMulti-portal Daemon (MPD)
Troubleshooting issues with Mobile Access requires the following:
AStandard VPN debugs and packet captures on Security Gateway, debugs of ‘cvpnd’ process on Security Management
BDebug logs of FWD captured with the command - ‘fw debug fwd on TDERROR_MOBILE_ACCESS=5’
C‘ma_vpnd’ process on Security Gateway
DStandard VPN debugs, packet captures, and debugs of ‘cvpnd’ process on Security Gateway
Your users are having trouble opening a Web page and you need to troubleshoot it. You open the Smart Console, and you get the following message when you navigate to the Logs and Monitor "SmartLog is not active or Failed to parse results from server". What is the first thing you can try to resolve it?
ARun the commands on the SMS: smartlogstart and smartlogstop
Bsmartlog debug on and smartlog debug off
Csmartlog_server restart
Dcpmstop and cpmstart
You do not see logs in the SMS. When you login on the SMS shell and run cpwd_admin list you notice that the RFL process is with status T. What command can you run to try to resolve it?
ARFLstop and RFLstart
Bevstart and evstop
Csmartlog_server stop and smartlog_server restart
Drflsop and rflstart
You are using the Identity Collector with Identity Awareness in large environment. Users report that they cannot access resources on Internet. You identify that the traffic is matching the cleanup rule instead of the proper rule with Access Roles using the IDC. How can you check if IDC is working?
Apep debug idc on
Bpdp debug set IDP all all
Cad query | debug on
Dpdp connections idc
In Check Point's Packet Processing Infrastructure, what is the role of Observers?
AThey store Rule Base matching state related information
BObservers monitor the state of Check Point gateways and report it to the security manager
CObservers attach object IDs to traffic
DObservers decide whether or not to publish a CLOB to the Security Policy
What is the kernel process for Content Awareness that collects the data from the contexts received from the CMI and decides if the file is matched by a data type?
Acntawmod
Bdlpda
Cdlpu
Dcntmgr
You are seeing output from the previous kernel debug. What command should you use to avoid that?
Afw ctl debug = 0
Bfw ctl clean buffer = 0
Cfw ctl zdebug disable
Dfw ctl debug 0
Which of the following would NOT be a flag when debugging a unified policy?
Atls
Brulebase
Cclob
Dconnection
The Check Point Firewall Kernel is the core component of the Gaia operating system and an integral part of the traffic inspection process. There are two procedures available for debugging the firewall kernel. Which procedure/command is used for troubleshooting packet drops and other kernel activities while using minimal resources (1 MB buffer)?
Afw debug ctl
Bfw ctl debug/kdebug
Cfw ctl zdebug
Dfwk ctl debug
Your users have some issues connecting with Mobile Access VPN to your gateway. How can you debug the tunnel establishment?
Ain the file $CVPNDIR/conf/httpd.conf change the line Loglevel .. To LogLevel debug and run cvpnrestart
Bin the file $VPNDIR/conf/httpd.conf change the line Loglevel .. To LogLevel debug and run vpn restart
Crun vpn debug truncon
Drun fw ctl zdebug -m sslvpn all
What is the name of the VPN kernel process?
AFWK
BVPND
CCVPND
DVPNK
What is the Security Gateway directory where an administrator can find vpn debug log files generated during Site-to-Site VPN troubleshooting?
A/opt/CPsuiteR80/vpn/log/
B$FWDIR/conf/
C$FWDIR/log/
D$CPDIR/conf/
What information does the doctor-log script supply?
ALogging errors, Exceptions, Repair options
BCurrent and daily average logging rates, Indexing status, Size
CLogging rates, Logging Directories, List of troubleshooting tips
If SmartLog is not active or failed to parse results from server, what commands can be run to re-enable the service?
Asmartlogrestart and smartlogstart
Bsmartlogstart and smartlogstop
Csmartloginit and smartlogstop
Dsmartlogstart and smartlogsetup
What is NOT a benefit of the ‘fw ctl zdebug’ command?
ACannot be used to debug additional modules
BClean the buffer
CCollect debug messages from the kernel
DAutomatically allocate a 1MB buffer
When a User Mode process suddenly crashes, it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root cause of the crash? i. Program Counter ii. Stack Pointer iii. Memory management information iv. Other Processor and OS flags / information
Aiii and iv only
Bi, ii, iii and iv
Ci and ii only
DOnly iii
John has renewed his NPTX License but he gets an error (contract for Anti-Bot expired). He wants to check the subscription status on the CLI of the gateway, what command can he use for this?
Afwm lic print
Bfw monitor license status
Ccpstat antimalware -f subscription_status
Dshow license status
PostgreSQL is a powerful, open source relational database management system. Check Point offers a command for viewing the database to interact with Postgres interactive shell. Which command do you need to enter the PostgreSQL interactive shell?