The purpose of the Communication Initialization process is to establish a trust between the Security Management Server and the Check Point gateways. Which statement best describes this Secure Internal Communication (SIC)?
A.
After successful initialization, the gateway can communicate with any Check Point node that possesses a SIC certificate signed by the same ICA.
B.
Secure Internal Communications authenticates the security gateway to the SMS before http communications are allowed.
C.
A SIC certificate is automatically generated on the gateway because the gateway hosts a subordinate CA to the SMS ICA.
D.
New firewalls can easily establish the trust by using the expert password defined on the SMS and the SMS IP address.
The correct answer is:
A. After successful initialization, the gateway can communicate with any Check Point node that possesses a SIC certificate signed by the same ICA.
This statement best describes Secure Internal Communication (SIC). After the initial trust is established, the Security Gateway can securely communicate with other Check Point components that have a SIC certificate signed by the same Internal Certificate Authority (ICA).
Check Point Certified Security Administrator (CCSA) R81.10 Guide (page 111):
"The purpose of the communication initialization process is to establish a trust between the Security Management Server and Check Point Gateways. This trust lets these components communicate freely and securely. Trust can only be established when the Gateways and the Security Management Server have been issued SIC certificates. After successful initialization, the Gateway can communicate with any Check Point node that possesses a SIC certificate signed by the same ICA."
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
keikei1228
1 day, 21 hours agoethan882
1 year, 7 months agoNineInchName
1 year, 10 months agomonkemann21
2 years ago