__________ TCP flag can launch a DoS attack.
ACK 0%
FIN 0%
SYN 0%
SYN/ACK 0%
URG 0%
After how much time does the Firewall Module send the logs to the Log Server?
Instantly 0%
After 1 second 0%
After 0.5 second 0%
After 2 seconds 0%
After 3 seconds 0%
At which port can you access the WUI of SPLAT?
80 0%
443 0%
18181 0%
18110 0%
8080 0%
At which port will you telnet the gateway to use manual client authentication?
258 0%
259 0%
260 0%
18181 0%
Eric wants that a VPN rule should only be activated for a particular time. How can that be done?
By specifying the time VPN object settings 0%
By specifying the time in Checkpoint object 0%
By specifying the time in global settings 0%
By specifying the time in VPN rule 0%
How can you create a new Database Revision Control version?
By selecting the option in Policy Package Management 0%
By selecting the option in Global properties 0%
By selecting the option after pushing the policy 0%
By selecting the option before pushing the policy 0%
How many administrators can be defined while installing the VPN-1 NGX?
1 0%
2 0%
3 0%
4 0%
None 0%
How many keys are there in PKI (Public Key Infrastructure)?
How many log files can be opened at a time in the Smartview Tracker?
How many NAT entries are created for automatic host/network object NAT?
How many TCP flags are there in the Checkpoint Security?
How will you create a RADIUS server for authentication in VPN-1?
File->New->RADIUS server 0%
Manage->Servers and OPSEC applications->New->RADIUS 0%
New->RADIUS Server 0%
Right click server->New RADIUS server 0%
Object->RADIUS server 0%
In which mode are the rules created automatically while configuring the VPN?
Hybrid Mode 0%
None 0%
Traditional Mode 0%
Simplified Mode 0%
In which type of 'attack' does 'packet' have the same sources, IP and port as destination?
SmallPMTU 0%
Teardrop 0%
LAND 0%
Smurfattack 0%
Botnets 0%
Jeremy has to create 3 site-to-site VPNs. NJ is the central site and the remote sites are Bangalore and Dubai. Bangalore and Dubai can communicate with each other. Which VPN topologies should he us...
Star topology for Banglore and Dubai VPN and Mesh for NJ VPN 0%
Mesh topology for Banglore and Dubai VPN and Star for NJ VPN 0%
Mesh topology for Banglore and Dubai VPN and Mesh for NJ VPN 0%
Star topology for Banglore and Dubai VPN and Star for NJ VPN 0%
The HTTP access is opened to one new system in the network. When will a rule become effective in such a situation?
While installing the policy 0%
During cpstop 0%
During cpstart 0%
During cprestart 0%
By saving the policy on SmartCenter server 0%
The Main mode is completed ___________.
before Phase 1 0%
after Phase 1 0%
before Phase 2 0%
after Phase 2 0%
The Quick mode is completed __________.
before Phase 1 0%
after Phase 1 0%
before Phase 2 0%
after Phase 2 0%
What happens during the Tunnel Mode?
It encrypts the entire packet 0%
It encrypts the data portion 0%
It encrypts the header portion 0%
No encryption occurs 0%
What happens when you check the option 'Use Aggressive Mode'?
The 6-packet IKE Phase 2 is replaced by the 3-packet exchange 0%
Nothing happens 0%
The 3-packet IKE Phase 1 is replaced by the 1-packet exchange 0%
The 6-packet IKE Phase 1 is replaced by the 3-packet exchange 0%
What is the extension of the audit log files?
.log 0%
.auditlog 0%
.alog 0%
.adlog 0%
What is the function of DShield Storm Center in Checkpoint Security?
It is a Hacking center 0%
It correlates world wide traffic profiles to detect attacks 0%
It is a DoS attack center 0%
What is the significance of SIC?
It is used for secure communication between two gateways 0%
It is used for secure communication between a gateway and SmartCenter server 0%
It is used for authentication 0%
It is used for encryption in the VPN tunnels 0%
What is VTI?
VPN Tunnel Interface 0%
Virtual Tunnel Interface 0%
VPN Terminating Interface 0%
Virtual Terminating Interface 0%
What rule will Mary create in the rule base to implement the authentication when she wants to implement client authentication for an Internet_User Group for HTTP service?
Source:Internet_Users@Any; Dest:Any ; Service:HTTP ; Action:Client Authentication 0%
Source:Internet_Users@Any; Dest:Any ; Service:Telnet; Action:Client Authentication 0%
Source:Internet_Users@Any; Dest:Any ; Service:HTTP ; Action:Session Authentication. 0%
Source:Internet_Users@Any; Dest:Any ; Service:HTTP ; Action:User Authentication 0%
What sequence is followed in the Rule Base Enforcement in VPN-1? 1. Security policy BEFORE-LAST rule 2. Administrator-defined rule base 3. IP Spoofing/IP options 4. Cleanup rule 5. Security Policy...
156324 0%
632541 0%
125463 0%
125346 0%
365214 0%
When you are generating Express reports in Eventia Reporter, where will you make queries for the data?
Eventia Database 0%
SmartView Tracker 0%
SmartView Monitor 0%
Local Database 0%
Where will you place the Cleanup Rule in the Rule Base?
At the top 0%
Anywhere 0%
At the bottom 0%
In the middle 0%
Where will you place the Stealth rule in the Rule Base?
At the top 0%
Anywhere 0%
At the bottom 0%
In the middle 0%
Which application will Jenny use when she wants to apply security policies on the remote users while they connect their systems from home?
SecuRemote 0%
SecureClient 0%
SmartLSM 0%
Enforcement Module 0%
Which are the different modes in High-Availability (HA)?
Active-Active 0%
Active-Deactive 0%
Active-Passive 0%
Passive-Passive 0%
Deactive-Passive 0%
Which command in Cluster is used to see the Active Member?
cphaprob stat 0%
cphaprob list 0%
cpha prob stat 0%
cpha prob list 0%
Which command in SPALT is used to schedule the backup?
backup schedule 0%
backup --sched 0%
backup --schedule 0%
backup --shd 0%
Which command is used to add GUI clients?
cpconfiguration 0%
cpconfig 0%
cputil 0%
add guiclients 0%
Which command is used to check the routing information in SPLAT?
Show IP route 0%
Show routing table 0%
netstat -nr 0%
cpstat 0%
Which command is used to check the VPN-1 version on Gateway?
fw ver 0%
fwmver 0%
fwm version 0%
fwm ver 0%
Which command is used to configure the SPLAT operating system?
ConUtilities 0%
CPutil 0%
CPconfig 0%
Sysconfig 0%
Which command is used to determine the route taken by a packet?
netstat 0%
ipconfig 0%
ifconfig 0%
traceroute 0%
Which command is used to inspect the translation tables?
fw monitor 0%
fwm monitor 0%
fw mon 0%
fwm mon 0%
Which command is used to know the active policy on the enforcement module?
fw stat 0%
fwm stat 0%
fw statistics 0%
fwm statistics 0%
fw policy name 0%
Which command is used to restore the VPN-1 configuration?
upgrade_restore 0%
upgrade_import 0%
upgrade_export 0%
upgrade_import_restore 0%
Which command is used to show the Multicast Routing table?
show ip route 0%
show multicast table 0%
show ip mroute 0%
show ipm route 0%
Which command is used to troubleshoot the VPN?
vpn ike 0%
vpn tu 0%
vpn 0%
vpn securemote 0%
Which command will Eric use to fetch a policy from the SmartCenter server when he is unable to access it?
fw install policy 0%
fw fetchpolicy 0%
fwm fetch 0%
fw fetch 0%
Which feature will you use to manage the different security policies for different gateways when you are managing more than one Enforcement modules from the SmartCenter?
Policy Package Management 0%
Policy Management 0%
Database revision control 0%
Backup tools 0%
Which layer does the IPSec work on?
Session Layer 0%
Data Link Layer 0%
Network Layer 0%
Application Layer 0%
Which network will Lea add in the VPN domain of ABC Gateway, when she has created a site-to-site VPN tunnel between ABC(172.16.0.0/24)and XYZ(10.1.0.0/24)?
172.16.1.0/24 0%
10.1.0.1/24 0%
172.16.0.0/24 0%
172.16.0.0/16 0%
10.1.1.0/16 0%
Which network will you add in the antispoofing settings when there are two networks(192.168.0.0/24,172.16.0.0/24) behind the VPN-1 gateway?
192.168.0.0/24 0%
172.16.0.0/24 0%
192.168.0.0/24 & 172.16.0.0/24 0%
192.168.0.0/16 & 172.16.0.0/16 0%
Which of the following are included while taking the backup of the VPN-1 configuration? (Select all suitable options)
Global properties 0%
Objects 0%
Rule base 0%
License 0%
Which of the following are Security servers?
URI 0%
SMTP 0%
FTP 0%
TCP 0%
CIFS 0%
Which of the following authenticated services can work with User-authentication?
telnet 0%
https 0%
rlogin 0%
http 0%
ftp 0%
Which of the following Checkpoint applications are supported by SPLAT?
VPN-Pro 0%
SmartCenter 0%
Smart Clients 0%
Eventia Reporter 0%
Which of the following Checkpoint components require/s license?
VPN-1 0%
SmartDefence 0%
LDAP 0%
SmartView Monitor 0%
Which of the following Checkpoint package is installed on the Nokia box?
Checkpoint NGX wrapper 0%
VPN-1 wrapper 0%
IPSO 0%
SecurePlatform 0%
Which of the following factors should be kept in mind to improve the performance of the Enforcement module? (Select all suitable options)
Remove the unused rules 0%
Enable log for all the rules 0%
Keep the mostly used rules at the top 0%
Collate the rules 0%
Which of the following is the default Smartdirectory (LDAP) profile for Microsoft AD?
AD.Microsoft 0%
AD_Microsoft 0%
Microsoft_AD 0%
Microsoft.AD 0%
Which of the following OS is not supported by VPN-1 SecuRemote?
Windows XP 0%
RedHat Linux 9 0%
MacOS X 0%
IPSO 4.0 0%
Which of the following tools can be used for vulnerabilities?
Ethereal 0%
Nessus 0%
TCPDUMP 0%
Snort 0%
Which of the following tools can be used to monitor the Packets?
Ethereal 0%
Nessus 0%
TCPDUMP 0%
Snort 0%
Which one of the following is used to edit the Log file size switch settings?
SmartView Status 0%
SmartView Tracker 0%
Checkpoint Gateway-->Logs and Masters 0%
Global policies-->Logs and Masters 0%
SmartLSM 0%
Which OPSEC server will allow you to export the log files to the third party?
CVP 0%
UFP 0%
ELA 0%
LEA 0%
Which port CVP security server is used for communication?
18181 0%
18182 0%
18921 0%
18891 0%
18291 0%
Which port on Firewall should be opened for IPSec IKE?
UDP 4500 0%
TCP 4500 0%
UDP 500 0%
TCP 500 0%
UDP 1818 0%
Which port on Firewall should be opened for IPSec NAT-Traversal?
UDP 4500 0%
TCP 4500 0%
UDP 500 0%
TCP 500 0%
UDP 1818 0%
Which protocols can be scanned by the Anti-Virus engine of VPN-1?
POP3 0%
HTTP 0%
SMTP 0%
IMAP 0%
HTTPS 0%
FTP 0%
Which SmartConsole application is used to manage the VPN-1 license?
Smart Update 0%
Smart View Tracker 0%
Smart View Status 0%
Smart View Monitor 0%
Smart LSM 0%
Which SmartConsole application will Adrian use when he wants to see the CPU utilization and the memory of different gateways being managed from a single SmartCenter server?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartConsole application will be used when you want to know how many packets are dropped per gateway?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartConsole application will be used when you want to see which rule is dropping the traffic?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartConsole application will you use when you want to implement a new security policy for your network?
SmartView Status 0%
SmartView Tracker 0%
SmartDashboard 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartView application will Eric use when he wants to see the number of Remote user tunnels?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartView application will you use when you want to see the concurrent number of connections?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartView application will you use when you want to see the number of connections per application?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartView application will you use when you want to view the OS details and the Installed Package details?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
SmartLSM 0%
Which SmartView application will you use when your manager asks you to generate a report containing the number of bytes transferred per IP address in your network during the last month?
SmartView Status 0%
SmartView Tracker 0%
SmartUpdate 0%
SmartView Monitor 0%
Eventia Reporter 0%
Which type of NAT should Adrian use to publish the server when he wants to publish a Web Server so that the external clients may be able to access the application?
Static NAT 0%
Dynamic NAT 0%
Hide NAT 0%
NAT is not required 0%
Which type of NAT will be used by Adrian during the creation of a VPN between two sites, 10.1.1.0/24 and 192.168.1.0/16?
Static NAT 0%
Dynamic NAT 0%
Hide NAT 0%
None 0%
Which VPN should be used when you want to allow only specific services to a SecuRemote user?
Traditional mode 0%
Simplified mode 0%
Hybrid mode 0%
Encryption mode 0%
You want to see the logs for rule number 10. What could be the reason for not being able to see any logs in the SmartView Tracker?
Logging is not enabled in Global Properties 0%
Logging is not enabled in Checkpoint Object 0%
Checking the logs in SmartView Monitor 0%
Logging is not enabled in rule number 10 0%