Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam 156-586 All Questions

View all questions & answers for the 156-586 exam

Exam 156-586 topic 1 question 13 discussion

Actual exam question from Checkpoint's 156-586
Question #: 13
Topic #: 1
[All 156-586 Questions]

SmartEvent utilizes the Log Server, Correlation Unit and SmartEvent Server to aggregate logs and identify security events. The three main processes that govern these SmartEvent components are:

  • A. cpcu, cplog, cpse
  • B. eventiasv, eventiarp,eventiacu
  • C. cpsemd, cpsead, and DBSync
  • D. fwd, secu, sesrv
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
tonis123
2 months, 3 weeks ago
Selected Answer: C
Correct is C. cpsemd: SmartEvent Daemon, handles event correlation and detection. cpsead: SmartEvent Analyzer Daemon, responsible for analyzing security events. DBSync: Synchronizes the events database. D is incorrect because these processes are not specifically related to SmartEvent.. fwd: This process is related to the Check Point Firewall's logging system, forwarding logs from Security Gateways to the Log Server. secu: This is not a recognized Check Point process related to SmartEvent. It might be a typo or misinterpretation. sesrv: This process is related to the Session Management Server in Check Point, which handles session data, not directly related to SmartEvent’s correlation and event management.
upvoted 2 times
...
sx89andjey
2 months, 4 weeks ago
cpsemd - Responsible for logging into the SmartEvent GUI. cpsead - Responsible for Correlation Unit functionality. dbsync - DBsync enables SmartEvent to synchronize data stored in different parts of the network. In distributed information systems, DBsync provides one-way synchronization of data between the Security Management Server's object database and the SmartEvent computer, and supports configuration and administration of distributed systems. DBsync initially connects to the Management Server, with which SIC is established. It retrieves all the objects and after the initial synchronization it gets updates whenever an object is saved.
upvoted 2 times
sx89andjey
2 months, 4 weeks ago
Answer: D
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...