156-585 Actual Exam Questions

Last updated on Dec. 16, 2024.
Vendor:Checkpoint
Exam Code:156-585
Exam Name:Check Point Certified Troubleshooting Expert
Exam Questions:75
 

Topic 1 - Exam A

Question #1 Topic 1

What are some measures you can take to prevent IPS false positives?

  • A. Exclude problematic services from being protected by IPS (sip, H.323, etc.)
  • B. Use IPS only in Detect mode
  • C. Use Recommended IPS profile
  • D. Capture packets, Update the IPS database, and Back up custom IPS files
Reveal Solution Hide Solution   Discussion   4

Correct Answer: D 🗳️

Question #2 Topic 1

VPN issues may result from misconfiguration, communication failure, or incompatible default configurations between peers. Which basic command syntax needs to be used for troubleshooting Site-to-Site VPN issues?

  • A. vpn debug truncon
  • B. fw debug truncon
  • C. cp debug truncon
  • D. vpn truncon debug
Reveal Solution Hide Solution   Discussion   2

Correct Answer: A 🗳️

Question #3 Topic 1

What are the maximum kernel debug buffer sizes, depending on the version?

  • A. 8MB or 32MB
  • B. 8GB or 64GB
  • C. 4MB or 8MB
  • D. 32MB or 64MB
Reveal Solution Hide Solution   Discussion   1

Correct Answer: A 🗳️

Question #4 Topic 1

Which daemon governs the Mobile Access VPN blade and works with VPND to create Mobile Access VPN connections? It also handles interactions between HTTPS and the Multi-Portal Daemon.

  • A. Connectra VPN Daemon - cvpnd
  • B. Mobile Access Daemon - MAD
  • C. mvpnd
  • D. SSL VPN Daemon - sslvpnd
Reveal Solution Hide Solution   Discussion   1

Correct Answer: A 🗳️

file Viewing page 1 out of 19 pages.
Viewing questions 1-4 out of 75 questions
Next Questions
Browse atleast 50% to increase passing rate cup
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago