156-315.77 Check Point Certified Security Expert Exam Set 16

When you use SmartProvisioning Wizard to create a new profile, you can not continue, because there is no equipment to choose from. What is the possible reason? i) All equipment is already in those profile ii) Catering blade is not enabled devices iii) Non UTM 1/1 Power / secure platform devices defined in the Smart Dashboard iv) SIC is not set up devices.


Options are :

  • (Ii), (iii) or (iv)
  • (Ii) only
  • (I) or (iii)
  • (Iii) or (iv)
  • None

Answer : (I) or (iii)

London office just upgraded their server name so the Gateway needs to be updated with the new settings. What would be the best way to Henry to change the DNS settings for the London Gateway?


Options are :

  • DNS settings that Gateway can not be changed
  • To customize the profile of Canada
  • None
  • Gateway to edit DNS settings Edit Gateway, then click the DNS tab
  • Europe edit profile

Answer : Europe edit profile

Your client wants to use the Smart Workflow Software Blade, but he also wants to install practical in an emergency without approval. Is it possible?


Options are :

  • A.Yes, it is possible, but the operator must pay particular administrator authority, that can be installed in an emergency. You can use the GUI to set a new government security setting.
  • No, if the customer uses the Smart Workflow Software Blade, the policy is acceptable.
  • Yes, it is possible, but this feature is determined by the Global Properties. The administrator is given a special password and the reason for this emergency equipment.
  • None
  • Yes, it is possible, but this feature is determined by the Global Real Estate and the administrator is given a special password.

Answer : Yes, it is possible, but this feature is determined by the Global Properties. The administrator is given a special password and the reason for this emergency equipment.

156-315.77 Check Point Certified Security Expert Exam Set 17

What is the supported troops Connectra of the following?


Options are :

  • VMware ESX
  • Windows Server 2007
  • None
  • Solaris 10
  • IPSO 4.9 build 88

Answer : VMware ESX

In the Smart Workflow, which is not a valid opportunity?


Options are :

  • Task Flow without a hearing but Role Segregation
  • Task Flow session and the role of Segregation
  • None
  • Task Flow session without the Role Segregation
  • Task Flow without a hearing and without the role of Segregation

Answer : Task Flow without a hearing but Role Segregation

You need to remove Check Point Smart Workflow Software Blade is a Secure Platform system. How do you do this procedure?


Options are :

  • None
  • If you want to remove Smart Workflow Software Blade, you're using Smart Update. Click the symbol Security Management Server, right-click, select Get Data Gateway, select Smart Workflow, right - click Remove Smart Workflow. You can see the progress Opera rationStatus windows.
  • If you want to remove Smart Workflow Software Blade, you must first connect to your Security Management System on the command line level. Then, in the directory / opt / CPuninstall / Check_Point_Workflow, run the command ./UnixInstallScript -u.
  • If you want to remove Smart Workflow Software Blade you can connect to Secure platform web UI () and select: Device> Update. You'll be asked if you want to remove Smart Workflow Software Blade.
  • If you want to remove Smart Workflow Software Blade you must first connect to your Security Management System on the command line level. Then, in the directory / opt / CPUninstall / Check_Point_Workflow, run the command ./UnixInstallScript -u. After that, follow the instructions and change the directory to / opt / CPUninstall / R70_HFA_10 and repeat the previous command.

Answer : If you want to remove Smart Workflow Software Blade you must first connect to your Security Management System on the command line level. Then, in the directory / opt / CPUninstall / Check_Point_Workflow, run the command ./UnixInstallScript -u. After that, follow the instructions and change the directory to / opt / CPUninstall / R70_HFA_10 and repeat the previous command.

156-315.77 Check Point Certified Security Expert Exam Set 18

What is the possible cause of a gray version of the Restore button in the screenshot Database Version control systems when trying to restore the old structure?


Options are :

  • Not Smart Workflow session is started.
  • With Smart Workflow only active Smart Workflow amendments could be restored.
  • None
  • self-created versions can not be restored if there are newer versions created Smart Workflow.
  • The old structure was not accepted Smart Workflow

Answer : Not Smart Workflow session is started.

To begin the installation Connecter, which of the following statements is true?


Options are :

  • You need to configure Connecter user name and password before running the start guide.
  • .It is possible to drive the first time, a wizard Expert Mode Connecter server.
  • None
  • There is no need to set up a rule base before completing the installation of the connector.
  • .It is not possible to use the sysconfig and cpconfig utilities until the start guide is a browser-based administration is successfully completed.

Answer : .It is not possible to use the sysconfig and cpconfig utilities until the start guide is a browser-based administration is successfully completed.

Where Gateways manages SmartProvisioning pick up their assigned profiles?


Options are :

  • Independent SmartProvisioning server
  • SmartView Monitor
  • These must be applied locally in a single device
  • Security Management server or CMA
  • None

Answer : Security Management server or CMA

156-315.77 Check Point Certified Security Expert Exam Set 19

How Smart Workflow Session data Put in place?


Options are :

  • In SmartDashboard, click View> Smart Workflow> Show Session Information box
  • .In cpconfig, select the Enable Session Information Pane menu
  • In SmartDashboard, click on the Smart Workflow> Show Session Information box
  • None
  • In SmartViewTracker onSmartWorkflow Choose View> Show Session Information box

Answer : In SmartDashboard, click on the Smart Workflow> Show Session Information box

You can configure the client properly and the user log on to the portal using a certificate, the administrator must:


Options are :

  • Create a user within the admin portal.
  • Store the client certificate SSL VPN gateway.
  • Install the R71 internal Certificate Authority certificate.
  • Create a client certificate Smart Dashboard.
  • None

Answer : Create a user within the admin portal.

The customer asks for Check Point Smart Workflow. His company must comply with various laws and regulations, and therefore it is important that he be able to see changes made to a particular object.How the customer can get the necessary information?


Options are :

  • You may check compliance. This function compares the compliance with the requirements of all logs and reports to automatically which part of the selected compliance is met, and who is not.
  • The client can use Check Point SmartViewTracker view the required information. He selects the log class objects changed.
  • The client can use Check Point's SmartView Tracker directly to obtain the necessary information. He selects the log class Smart Workflow.
  • The customer can use the record. This feature allows administrators to keep track of changes that have been made of objects over a longer period of time. These changes are recorded in the SmartView Tracker as audit logs.
  • None

Answer : The customer can use the record. This feature allows administrators to keep track of changes that have been made of objects over a longer period of time. These changes are recorded in the SmartView Tracker as audit logs.

156-315.77 Check Point Certified Security Expert Exam Set 2

You are logged in firewall and found that the scheduled backup is mentioned modified.Which the options below is not the reason for the change?


Options are :

  • None
  • Another administrator logged WebUI and changed the setting without your knowledge
  • Another administrator updated the backup schedule using the Smart Update
  • Another administrator pushed the firewall profile SmartProvisioning
  • Another administrator gave new backup command from the command line

Answer : Another administrator updated the backup schedule using the Smart Update

Smart Provisioning management concept is based on:


Options are :

  • None
  • element
  • profiles
  • areas
  • Zones

Answer : profiles

A domain name can not change the Smart Provisioning and the domain name is grayed out out.What is the possible reason?


Options are :

  • None
  • Profile nothing is connected to Gateway
  • The domain name settings are always retrieved from the firewall object.
  • There is no Smart Provisioning license installed.
  • Skip the profile setting of the device is made mandatory.

Answer : Skip the profile setting of the device is made mandatory.

156-315.77 Check Point Certified Security Expert Exam Set 20

SSL Termination occurs:


Options are :

  • DMZ deployment is Connecter Gateway
  • None
  • LAN deployment is a Security Gateway
  • DMZ and LAN deployment model has a Security Gateway
  • DMZ and LAN deployment scenario is the Gateway Connecter

Answer : DMZ and LAN deployment model has a Security Gateway

Which of the following software blades can be used to provide centralized backup management?


Options are :

  • Smart Backup
  • Smart Gateway
  • None
  • SmartDashboard
  • Smart Provisioning

Answer : Smart Provisioning

You have configured LDAP unit blocks and confirmed the use Fetch & Branches option for SSL VPN works, but end users still can not be authenticated.What is the most likely cause?


Options are :

  • LDAP server is configured incorrectly.
  • The user is not defined in Active Directory.
  • An administrator login is incorrect.
  • None
  • LDAP account login unit distinguished name is incorrectly specified,

Answer : LDAP account login unit distinguished name is incorrectly specified,

156-315.77 Check Point Certified Security Expert Exam Set 21

Forcing customers to use the Integrity Secure Workspace reading-intensive applications, the administrator can configure Connectra:


Options are :

  • Without special setting. Secure Workspace is automatically configured.
  • Forcing the user to re-log in logging
  • Via Security Levels
  • To implement the Integrity Clientless Security
  • None

Answer : Via Security Levels

You are SSL VPN administrator. Users complain that their Outlook Web Access runs very slowly, and their overall browsing experience continues to get worse. You suspect that it could be logging problem.Which following logs is not recommended to turn off the Check Point?


Options are :

  • Trace
  • None
  • transport
  • alarm
  • Event

Answer : Trace

You can set the Security Management Server SSL VPN Gateway, you can configure a log forwarding from the Gateway. All of the following tasks are required to achieve this, except:


Options are :

  • None
  • The establishment of SIC Security between the Management Server and SSL VPN Gateway
  • Defining the remote log server "Remote Syslog server" box.
  • In order to facilitate .Initiating put the key process in the Secure Internal Communications (SIC).
  • Providing Security Management IP address.

Answer : Defining the remote log server "Remote Syslog server" box.

156-315.77 Check Point Certified Security Expert Exam Set 22

What is the port typically used for SSL Network Extender, if Connecter portal also use the same IP address?


Options are :

  • SSL (TCP / 900)
  • SSL (TCP / 443
  • SSL (TCP / 444)
  • SSL (TCP / 80)
  • None

Answer : SSL (TCP / 444)

Can end users need to authenticate using client certificates and username / password credentials?


Options are :

  • No, the R71 only supports authentication of client certificates
  • SSL VPN only supports server certificates.
  • Yes, by modifying the protection-level settings.
  • None
  • Yes, but by manually changing the parameter: Does Password Alert true FWDIR $ / conf / objects_5_0.C file, in order to clean the LDAP password; and the challenge of using multiple sign-in pages.

Answer : Yes, by modifying the protection-level settings.

When the conversion Gateways Smart LSM Security Gateway, you can:


Options are :

  • convert the security gateway, or UTM-1 Edge Gateway is managed by Smart Smart Dashboard
  • None
  • Remove the device and install it on Smart Provisioning.
  • SIC reset and restore the connection to the new Smart Provisioning
  • do nothing, the conversion is automatic.

Answer : convert the security gateway, or UTM-1 Edge Gateway is managed by Smart Smart Dashboard

156-315.77 Check Point Certified Security Expert Exam Set 23

How to use intelligent workflow?


Options are :

  • In cpconfig Select Delete Smart Workflow menu
  • In SmartViewTracker, click on the Smart Workflow> Delete Smart Workflow
  • None
  • Open the Smart Workflow administrator. Create a new session, and the name of it SmartWorkflow.In SmartDashboard click Remove Smart Workflow> Disable Smart Workflow, OK the warning box, click Save and continue
  • Smart Dashboard, click View> Smart Workflow> Delete Smart Workflow

Answer : Open the Smart Workflow administrator. Create a new session, and the name of it SmartWorkflow.In SmartDashboard click Remove Smart Workflow> Disable Smart Workflow, OK the warning box, click Save and continue

When using Smart Workflow, how many sessions can be running at the same time?


Options are :

  • 2
  • None
  • 3
  • As many as you want
  • 1

Answer : 1

When you connect to the SSL VPN portal, you get a pop-up message that indicates that the server name does not match the certificate host name and the certificate is not signed by a known Certificate Authority (CA). How do I solve this problem?


Options are :

  • Administration GUI shows the wrong certificate host name of the location.
  • Obtain and install an SSL server certificate from a known CA.
  • None
  • Leave a message. It only takes place before the portal is synchronized with the GUI.
  • Solve the certificate host name of a conflict Connectra portal and the administration GUI.

Answer : Obtain and install an SSL server certificate from a known CA.

156-315.77 Check Point Certified Security Expert Exam Set 24

Who tracked changes in the Smart Work Flow?


Options are :

  • Users, Administrators, groups and VPN Communities
  • SmartDashboard, SmartView Monitor SmartView Tracker and check-in and check outs
  • Security policy and rule base, Network Objects, Network, VPN Communities.
  • Security policy and rule base, Network Objects, network services, resources, users, system administrators, groups, communities and VPN Servers and OPSEC Applications.
  • None

Answer : Security policy and rule base, Network Objects, network services, resources, users, system administrators, groups, communities and VPN Servers and OPSEC Applications.

The company is planning to moving to a new server farm data center, which will require important changes in IP network services such as DNS, DHCP, and TFTP. Instead of manually logging into all your firewalls and modifying them one by one, you decide to purchase and take SmartProvisioning. Assuming that all firewalls are SPLAT, what is the minimum version via the firewalls needed for DNS updates, and backup settings SmartProvisioning?


Options are :

  • None
  • R65 HFA 40
  • R71
  • R62
  • R60 HFA 02

Answer : R65 HFA 40

You start assembling Smart Workflow. Smart Workflow is enabled, but you can choose to open a new session, since it is grayed out out.What have to do to open a new session? Choose the best answer.


Options are :

  • The rule, which allows the Smart Work Flow traffic is placed on top of the rule base.
  • Access training should be using the CLI command: SWF_session start.
  • Manage sessions SmartDashboard menu must be selected and enabled
  • None
  • The work sessions with the Global must be set.

Answer : The work sessions with the Global must be set.

156-315.77 Check Point Certified Security Expert Exam Set 3

Comment / Suggestion Section
Point our Mistakes and Post Your Suggestions