It is impossible to pass Check Point 156-115.77 exam without any help in the short term. Come to Ucertify soon and find the most advanced, correct and guaranteed Check Point 156-115.77 practice questions. You will get a surprising result by our Rebirth Check Point Certified Security Master practice guides.

Q145. - (Topic 10) 

Which of these commands can be used to display the IPv6 routes? 

A. show route 

B. show ipv6 route 

C. show routes all D. show route ipv6 

Answer:


Q146. - (Topic 11) 

When configuring a Numbered VPN-Tunnel, what parameters are necessary? 

A. VPN Tunnel ID, Local Address, Remote Address 

B. Peer, Local Address, Remote Address 

C. VPN Tunnel ID, Peer, Local Address, Remote Address 

D. VPN Tunnel ID, Peer, Physical Device 

Answer:


Q147. - (Topic 3) 

Which of the following is NOT a cphaprob status? 

A. “Standby” 

B. “Active” 

C. “Backup” D. “Down Attention” (or “Down!” in VSX mode) 

Answer:


Q148. - (Topic 7) 

Which file holds global Kernel values to survive reboot in a Check Point R77 gateway? 

A. $FWDIR/conf/fwkern.conf 

B. $FWDIR/boot/modules/fwkern.conf 

C. $FWDIR/boot/confwkern.conf 

D. $FWDIR/boot/fwkern.conf 

Answer:


Q149. - (Topic 10) 

True or False: It is possible to operate a Security Gateway entirely with IPv6 addressing. 

A. True: All IPv4 features are supported in IPv6’ 

B. True: Management can occur over IPv4 or IPv6 thus all gateways can have interfaces configured with valid IP addresses of either type’ 

C. False: There are many common IPv4 features that are not supported in IPv6’ 

D. False: Management only occurs over IPv4 thus all gateways are required to have interfaces configured with valid IPv4 addresses’ 

Answer:


Q150. - (Topic 2) 

In your SecurePlatform configuration you need to set up a manual static NAT entry. After creating the proper NAT rule what step needs to be completed? 

A. Edit or create the file local.arp. 

B. No further actions are required. 

C. Edit or create the file discntd.if. 

D. Edit the file netconf.conf. 

Answer:


Q151. - (Topic 8) 

A firewall has 8 CPU cores and the correct license. CoreXL is enabled. How could you set kernel instance #3 to run on processing core #5? 

A. This is not possible CoreXL is best left to manage the Kernel to CPU core mappings. It is only when a daemon is bound to a dedicated core that CoreXL will ignore that CPU core when mapping Kernel instances to CPU cores. 

B. fw ctl affinity -s -k 3 5 

C. Run fwaffinity_apply –t 3 -k 5 and then check that the settings have taken affect with the command fw ctl multik stat. 

D. Edit the file fwaffinity.conf and add the line “k3 cpuid 5” 

Answer:


Q152. - (Topic 9) 

What steps can be taken if IPS is causing a High Performance Impact? 

A. Consider activating the "Bypass under Load" IPS setting on the gateway 

B. Check your IPS configuration assigned to this gateway and deactivate protections with critical or high performance impact 

C. Determine if different or custom IPS profiles are better suited for different gateways in your organization 

D. All options listed 

Answer:

Topic 10, IPV6