156-215.pdf - CheckPoint 156-215 Check Point Security Administration NGX(156-215.65 http\/killexams.com\/exam-detail\/156-215 QUESTION 130 You have locked

156-215.pdf - CheckPoint 156-215 Check Point Security...

This preview shows page 1 - 4 out of 8 pages.

156-215 CheckPoint Check Point Security Administration NGX (156-215.65)
Image of page 1
QUESTION: 130 You have locked yourself out of SmartDashboard with the rules you just installed on your stand alone Security Gateway. Now you cannot access the SmartCenter Server or any SmartConsole tools via SmartDashboard. How can you reconnect to SmartDashboard? A. Run cpstop on the SmartCenter Server. B. Run fw unlocklocal on the SmartCenter Server. C. Run fw unloadlocal on the Security Gateway. D. Delete the $fwdir/database/manage.lock file and run cprestart. E. Run fw uninstall localhost on the Security Gateway. Answer: C QUESTION: 131 Which NGX feature or command provides the easiest path for Security Administrators to revert to earlier versions of the same Security Policy and objects configuration? A. cpconfig B. upgrade_export/upgrade_import C. Database Revision Control D. dbexport/dbimport E. Policy Package management Answer: C QUESTION: 132 Doug wants to know who installed a Security Policy blocking all traffic from the corporate network. Which SmartView Tracker selection is best suited for this? A. Records pane B. Active tab C. custom filter D. log connections E. Audit tab Answer: E QUESTION: 133 Your internal network is using 10.1.1.0/24. This network is behind your perimeter NGX VPN-1 Gateway, which connects to your ISP provider. How do you configure the Gateway to allow this network to go out to the Internet? 50
Image of page 2
A. Use automatic Static NAT for network 10.1.1.0/24. B. Use Hide NAT for network 10.1.1.0/24 behind the internal interface of your perimeter Gateway. C. Use manual Static NAT on the client side for network 10.1.1.0/24. D. Use Hide NAT for network 10.1.1.0/24 behind the external IP address of your perimeter Gateway. E. Do nothing, as long as 10.1.1.0 network has the correct default Gateway. Answer: D QUESTION: 134 Your standby SmartCenter Server's status is collision. What does that mean, and how do you synchronize the Server and its peer? A. The standby and active Servers have two Internal Certificate Authority (ICA) Certificates. Uninstall and reinstall the standby Server. B. The active Server detected a keep-alive packet from the standby Server.
Image of page 3
Image of page 4

You've reached the end of your free preview.

Want to read all 8 pages?

  • Fall '20
  • security administrator

  • Left Quote Icon

    Student Picture

  • Left Quote Icon

    Student Picture

  • Left Quote Icon

    Student Picture