What are the main components of Check Point’s Security Management architecture?
For Identity Awareness, what is the PDP process?
If the cpsemd process of SmartEvent has crashed or is having trouble coming up, then it usually indicates that __________.
Captive Portal, PDP and PEP run in what space?
How many packets are needed to establish IKEv1?
An administrator receives reports about issues with log indexing and text searching regarding an existing Management Server. In trying to find a solution she wants to check if the process responsible for this feature is running correctly. What is true about the related process?
In Mobile Access VPN. clientless access is done using a web browser. The primary communication path for these browser based connections is a process that allows numerous processes to utilize port
443 and redirects traffic to a designated port of the respective process Which daemon handles this?
What component is NOT part of Unified policy manager?
Which two files contain the Application Database on the Security Gateway?
What is NOT a benefit of the ‘fw ctl zdebug’ command?
In Check Point's Packet Processing Infrastructure what is the role of Observers?
You receive complains that Guest Users cannot login and use the Guest Network which is configured with Access Role of Guest Users. You need to verity the Captive Portal configuration. Where can
you find the config file?
User defined URLS and HTTPS inspection User defined URLs on the Security Gateway are stored in which database file?
You found out that $FWDIR/Iog/fw.log is constantly growing in size at a Security Gateway, what is the reason?
What command would you run to verify the communication between the Security Gateway and the Identity Collector?
The packet processing infrastructure consists of 4 components. Which component contains the CLOB, the object that contains information about the packet that is needed to make security decisions?
You are seeing output from the previous kernel debug. What command should you use to avoid that?
VPNs allow traffic to pass through the Internet securely by encrypting the traffic as it enters the VPN tunnel and decrypting the traffic as it exits. Which process is responsible for Mobile VPN connections?
When a User process or program suddenly crashes, a core dump is often used to examine the problem Which command is used to enable the core-dumping via GAIA clish?
The Check Point Firewall Kernel is the core component of the Gaia operating system and an integral part of traffic inspection process. There are two procedures available for debugging the firewall kernel. Which procedure/command is used for detailed troubleshooting and needs more resources?
VPN issues may result from misconfiguration communication failure, or incompatible default configurations between peers. Which basic command syntax needs to be used for troubleshooting Site-toSite VPN Issues?
Which of the following inputs is suitable for debugging HTTPS inspection issues?
URL Filtering is an essential part of Web Security in the Gateway. For the Security Gateway to perform a URL lookup when a client makes a URL request, where is the sync-request forwarded from if a sync-request is required?
What version of Check Point can Security Gateways begin dynamically distributing Logs between log servers?
What is the name of the VPN kernel process?
What is the proper command for allowing the system to create core files?
When a User Mode process suddenly crashes, it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root cause of the crash?
i. Program Counter
ii. Stack Pointer
iii. Memory management information
iv. Other Processor and OS flags / information
When dealing with monolithic operating systems such as Gaia where are system calls initiated from to achieve a required system level function?
What Check Point process controls logging?
During firewall kernel debug with fw ctl zdebug you received less information that expected. You noticed that a lot of messages were lost since the time the debug was started. What should you do to
resolve this issue?
The FileApp parser in the Content Awareness engine does not extract text from which of the following file types?
You receive reports that Users cannot browse internet sites. You are using identity awareness with AD Query and Identity Collector in addition you have the Browser Based Authentication Enabled. What command can be used to debug the problem?