Summer Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpt65

156-585 Questions and Answers

Note! Following 156-585 Exam is Retired now. Please select the alternative replacement for your Exam Certification. The new exam code is 156-587

156-585 Questions and Answers

Question # 6

What is NOT a benefit of the fw ctl zdebug command?

A.

Cannot be used to debug additional modules

B.

Collect debug messages from the kernel

C.

Clean the buffer

D.

Automatically allocate a 1MB buffer

Full Access
Question # 7

During firewall kernel debug with fw ctl zdebug you received less information than expected. You noticed that a lot of messages were lost since the time the debug was started. What should you do to resolve this issue?

A.

Increase debug buffer; Use fw ctl debug –buf 32768

B.

Redirect debug output to file; Use fw ctl zdebug –o ./debug.elg

C.

Increase debug buffer; Use fw ctl zdebug –buf 32768

D.

Redirect debug output to file; Use fw ctl debug –o ./debug.elg

Full Access
Question # 8

Which Daemon should be debugged for HTTPS Inspection related issues?

A.

FWD

B.

HTTPD

C.

WSTLSO

D.

VPND

Full Access
Question # 9

An administrator receives reports about issues with log indexing and text searching regarding an existing Management Server. In trying to find a solution she wants to check if the process responsible for this feature is running correctly. What is true about the related process?

A.

fwm manages this database after initialization of the ICA

B.

cpd needs to be restarted manual to show in the list

C.

fwssd crashes can affect therefore not show in the list

D.

solr is a child process of cpm

Full Access
Question # 10

What file contains the RAD proxy settings?

A.

rad_settings.C

B.

rad_services.C

C.

rad_scheme.C

D.

rad_control.C

Full Access
Question # 11

Which command is most useful for debugging the fwaccel module?

A.

fw zdebug

B.

securexl debug

C.

fwaccel dbg

D.

fw debug

Full Access
Question # 12

Which situation triggers an IPS bypass under load on a 24-core Check Point appliance?

A.

any of the CPU cores is above the threshold for more than 10 seconds

B.

all CPU core most be above the threshold for more than 10 seconds

C.

a single CPU core must be above the threshold for more than 10 seconds, but is must be the same core during this time

D.

the average cpu utilization over all cores must be above the threshold for 1 second

Full Access
Question # 13

Jenna has to create a VPN tunnel to a CISCO ASA but has to set special property to renegotiate the Phase 2 tunnel after 10 MB of transferee1 data. This can not be configured in the smartconsole, so how can she modify this property?

A.

using GUIDBEDIT located in same directory as Smartconsole on the Windows client

B.

she need to install GUIDBEDIT which can be downloaded from the Usercenter

C.

she need to run GUIDBEDIT from CLISH which opens a graphical window on the smartcenter

D.

this cant be done anymore as GUIDBEDIT is not supported in R80 anymore

Full Access
Question # 14

What is the correct syntax to turn a VPN debug on and create new empty debug files?

A.

vpn debug truncon

B.

vpndebug trunc on

C.

vpn kdebug on

D.

vpn debug trunkon

Full Access
Question # 15

How many tiers of pattern matching can a packet pass through during IPS inspection?

A.

2

B.

1

C.

5

D.

9

Full Access
Question # 16

After kernel debug with "fw ctl debug" you received a huge amount of information It was saved in a very large file that is difficult to open and analyze with standard text editors Suggest a solution to solve this issue.

A.

Use "fw ctl zdebug' because of 1024KB buffer size

B.

Divide debug information into smaller files Use "fw ctl kdebug -f -o "filename" -m 25 - s "1024"

C.

Reduce debug buffer to 1024KB and run debug for several times

D.

Use Check Point InfoView utility to analyze debug output

Full Access
Question # 17

What is the main SecureXL database for tracking acceleration status of traffic?

A.

cphwd_db

B.

cphwd_tmp1

C.

cphwd_dev_conn_table

D.

cphwd_dev_identity_table

Full Access