2013년 8월 12일 월요일

156-915 덤프 CheckPoint 인증 시험

ITExamDump의CheckPoint 156-915시험자료의 문제와 답이 실제시험의 문제와 답과 아주 비슷합니다. 우리의 짧은 학습가이드로 빠른 시일 내에 관련지식을 터득하여 응시준비를 하게 합니다. 우리는 우리의CheckPoint 156-915인증시험덤프로 시험패스를 보장합니다.


빨리 ITExamDump 덤프를 장바구니에 넣으시죠. 그러면 100프로 자신감으로 응시하셔서 한번에 안전하게 패스하실 수 있습니다. 단 한번으로CheckPoint 156-915인증시험을 패스한다…… 여러분은 절대 후회할 일 없습니다.


시험 번호/코드: 156-915

시험 이름: CheckPoint ( Accelerated CCSE NGX (156-915.1)......)

ITExamDump 에서 제공해드리는 CheckPoint인증156-915시험덤프자료를 구입하시면 퍼펙트한 구매후 서비스를 약속드립니다. ITExamDump에서 제공해드리는 덤프는 IT업계 유명인사들이 자신들의 노하우와 경험을 토대로 하여 실제 출제되는 시험문제를 연구하여 제작한 최고품질의 덤프자료입니다. CheckPoint인증156-915시험은ITExamDump 표CheckPoint인증156-915덤프자료로 시험준비를 하시면 시험패스는 아주 간단하게 할수 있습니다. 구매하기전 PDF버전 무료샘플을 다운받아 공부하세요.


우리ITExamDump의 덤프는 여러분이CheckPoint 156-915인증시험응시에 도움이 되시라고 제공되는 것입니다, 우라ITExamDump에서 제공되는 학습가이드에는CheckPoint 156-915인증시험관연 정보기술로 여러분이 이 분야의 지식 장악에 많은 도움이 될 것이며 또한 아주 정확한CheckPoint 156-915시험문제와 답으로 여러분은 한번에 안전하게 시험을 패스하실 수 있습니다,CheckPoint 156-915인증시험을 아주 높은 점수로 패스할 것을 보장해 드립니다,


ITExamDump의 CheckPoint인증 156-915덤프는 최근 유행인 PDF버전과 소프트웨어버전 두가지 버전으로 제공됩니다.PDF버전을 먼저 공부하고 소프트웨어번으로 PDF버전의 내용을 얼마나 기억하였는지 테스트할수 있습니다. 두 버전을 모두 구입하시면 시험에서 고득점으로 패스가능합니다.


156-915 덤프무료샘플다운로드하기: http://www.itexamdump.com/156-915.html


NO.1 Certkiller needs to back up the routing, interface, and DNS configuration
information from her NGX SecurePlatform Pro Security Gateway. Which
backup-and-restore solution do you recommend for Certkiller?
A. Database Revision Control
B. Manual copies of the $FWDIR/conf directory
C. upgrade_export and upgrade_import commands
D. SecurePlatformbackup utilities
E. Policy Package management
Answer: D

CheckPoint   156-915시험문제   156-915기출문제   156-915 dump

NO.2 Jack's project is to define the backup and restore section of his organization's
disaster recovery plan for his organization's distributed NGX instaliation. Jack
must meet the following required and desired objectives .
* Required Objective The security policy repository must be backed up no less
frequent~ than every 24 hours
* Desired Objective The NGX components that enforce the Security Policies should
be backed up no less frequently than once a week
* Desired Objective Back up NGX logs no less frequently than once a week
Jack's disaster recovery plan is as follows. See exhibit.
Jack's plan:
A. Meets the required objective but does not meet either desired objective
B. Does not meet the required objective
C. Meets the required objective and only one desired objective
D. Meets the required objective and both desired objectives
Answer: D

CheckPoint   156-915   156-915자격증   156-915   156-915   156-915시험문제
Explanation: Logs can be viewed after exported.

NO.3 Gail is the security administrator for a marketing firm. Gail is working with the
networking team, to troubleshoot user complaints regarding access to
audio-streaming material from the internet. The networking team asks Gail to
check the object and rule configuration settings for the perimeter Security Gateway.
Which SmartConsole application should Gail use to check these objects and rules?
A. SmartView Monitor
B. SmartUpdate
C. SmartViewTracker
D. SmartDashboard
E. SmartViewStatus
Answer: A

CheckPoint   156-915   156-915 dump   156-915   156-915

NO.4 Which of the following is the final step in an NGXbackup?
A. Test restoration in a non-production environment, using the upgrade_import command
B. Move the *.tgz file to another location
C. Run the upgrade_export command
D. Copy the conf directory to another location
E. Run the cpstop command
Answer: B

CheckPoint   156-915   156-915

NO.5 , and the Maximal Delay is set below requirements
D. Burst traffic matching the Default Rule is exhausting the Check Point QoS global
packet buffers
E. The guarantee of one of the rule's sub-rules exceeds the guarantee in the rule itself
Answer: B

CheckPoint   156-915   156-915자격증
10.Choose the BEST sequence for configuring user management on Smart Dash board,
for use with an LDAP server
A. Enable LDAP in Global Properties, configure a host-node object for the LDAP Server,
and configure a server object for the LDAP Account Unit
B. Configure a workstation object for the LDAP server, configure a server object for the
LDAP Account Unit, and enable LDAP in Global Properties
C. Configure a server object for the LDAP Account Unit, enable LDAP in Global
Properties, and create an LDAP server using an OPSEC application
D. Configure a server object for the LDAP Account Unit, enable LDAP in Global
Properties, and create an LDAP resource object
E. Configure a server object for the LDAP Account Unit, and create an LDAP resource
object
Answer: A

CheckPoint dump   156-915   156-915최신덤프   156-915자격증

NO.6 Which of the following commands is used to restore NGX configuration
information?
A. cpcontig
B. cpinfo-i
C. restore
D. fwm dbimport
E. upgrade_import
Answer: E

CheckPoint   156-915덤프   156-915 dumps   156-915   156-915 dumps

NO.7 Ophelia is the security Administrator for a shipping company. Her company uses a
custom application to update the distribution database. The custom application
includes a service used only to notify remote sites that the distribution database is
malfunctioning. The perimeter Security Gateways Rule Base includes a rule to
accept this traffic. Ophelia needs to be notified, via atext message to her cellular
phone, whenever traffic is accepted on this rule. Which of the following options is
MOST appropriate for Ophelia's requirement?
A. User-defined alert script
B. Logging implied rules
C. SmartViewMonitor
D. Pop-up API
E. SNMP trap
Answer: A

CheckPoint인증   156-915   156-915기출문제

NO.8 You want VPN traffic to match packets from internal interfaces. You also want the
traffic to exit the Security Gateway, bound for all site-to-site VPN Communities,
including Remote Access Communities. How should you configure the VPN match
rule?
A. Internal_clear>- All_GwToGw
B. Communities >- Communities
C. Internal_clear>- External_Clear
D. Internal_clear>- Communitis
E. Internal_clear>-All_communitis
Answer: E

CheckPoint   156-915자료   156-915

NO.9 You set up a mesh VPN Community, so your internal network can access your
partners network, and vice versa . Your Security Policy encrypts only FTP and
HTTP traffic through a VPN tunnel. All traffic among your internal and partner
networks is sent in clear text. How do you configure VPN Community?
A. Disable 'accept all encrypted traffic', and put FTP and http in the Excluded services in
the Community object Add a rule in the Security Policy for services FTP and http, with
the Community object in the VPN field
B. Disable "accept all encrypted traffic" in the Community, and add FTP and http
services to the Security Policy, with that Community object in the VPN field
C. Enable "accept all encrypted traffic", but put FTP and http in the Excluded services in
the Community. Add a rule in the Security Policy with services FTP and http, and the
Community object in theVPN field
D. Put FTP and http in the Excluded services in the Community object Then add a rule in
the Security Policy to allow any as the service, with the Community object in the VPN
field
Answer: B

CheckPoint dumps   156-915기출문제   156-915   156-915

NO.10 By default, when you click File >- Switch Active File from SmartView Tracker, the
SmartCenter Server
A. Opens a new window with a previously saved log file
B. Purges the current log file, and starts a new log file
C. Purges the current log, and prompts you for the new log's mode
D. Saves the current log file, names the log file by date and time, and starts a new log file
E. Prompts you to enter a filename, then saves the log file
Answer: D

CheckPoint dumps   156-915   156-915

NO.11 You have two Nokia Appliances one IP530 and one IP380. Both Appliances have
IPSO 39 and VPN-1 Pro NGX installed in a distributed deployment Can they be
members of a gateway cluster?
A. No, because the Gateway versions must not be the same on both security gateways
B. Yes, as long as they have the same IPSO version and the same VPN-1 Pro version
C. No, because members of a security gateway cluster must be installed as stand-alone
deployments
D. Yes, because both gateways are from Nokia, whether they have the same VPN-1 PRO
version or not
E. No, because the appliances must be of the same model (Both should be
IP530orIP380.)
Answer: B

CheckPoint   156-915인증   156-915   156-915기출문제   156-915

NO.12 The following is cphaprob state command output from a ClusterXL New mode High
Availability member
When member 192.168.1.2 fails over and restarts, which member will become
actrve?
A. 192.168.1.2
B. 192.168.1.1
C. Both members' state will be standby
D. Both members' state will be active
Answer: B

CheckPoint   156-915   156-915 pdf   156-915   156-915시험문제

NO.13 What do you use to view an NGX Security Gateway's status, including CPU use,
amount of virtual memory, percent of free hard-disk space, and version?
A. SmartLSM
B. SmartViewTracker
C. SmartUpdate
D. SmartViewMonitor
E. SmartViewStatus
Answer: D

CheckPoint dump   156-915   156-915

NO.14 What is the command to see the licenses of the Security Gateway Certkiller from
your SmartCenter Server?
A. print Certkiller
B. fw licprint Certkiller
C. fw tab -t fwlic Certkiller
D. cplic print Certkiller
E. fw lic print Certkiller
Answer: D

CheckPoint최신덤프   156-915   156-915   156-915자료   156-915덤프

NO.15 Which VPN Community object is used to configure VPN routing within the
SmartDashboard?
A. Star
B. Mesh
C. Remote Access
D. Map
Answer: A

CheckPoint인증   156-915최신덤프   156-915   156-915

NO.16 Which mechanism is used to export Check Point logs to third party applications?
A. OPSE
B. CPLogManager
C. LEA
D. SmartViewTracker
E. ELA
Answer: C

CheckPoint dump   156-915인증   156-915   156-915 dumps   156-915   156-915

NO.17 You are reviewing SmartView Tracker entries, and see a Connection Rejection on a
Check Point QoS rule. What causes the Connection Rejection?
A. No QoS rule exists to match the rejected traffic
B. The number of guaranteed connections is exceeded. The rule's action properties are
not set to accept additional connections
C. The Constant Bit Rate for a Low Latency Class has been exceeded by greater than

NO.18 Review the following rules and note the Client Authentication Action properties
screen, as shown in the exhibit.
After being authenticated by the Security Gateway when a user starts an HTTP
connection to a Web site the user tries to FTP to another site using the command
line. What happens to the user?
The....
A. FTP session is dropprd by the implicit Cleanup Rule.
B. User is prompted from the FTP site only, and does not need to enter username nad
password for the Client Authentication.
C. FTP connection is dropped by rule 2.
D. FTP data connection is dropped, after the user is authenticated successfully.
E. User is prompted for authentication by the Security Gateway again.
Answer: B

CheckPoint   156-915최신덤프   156-915

NO.19 You are preparing to configure your VolP Domain Gatekeeper object. Which two
other objects should you have created first?
A. An object to represent the IP phone network, AND an object to represent the host on
which the proxy is installed
B. An object to represent the PSTN phone network, AND an object to represent the IP
phone network
C. An object to represent the IP phone network, AND an object to represent the host on
which the gatekeeper is installed
D. An object to represent the Q931 service origination host, AND an object to represent
the H.245 termination host
E. An object to represent the call manager, AND an object to represent the host on which
the transmission router is installed
Answer: C

CheckPoint   156-915최신덤프   156-915   156-915시험문제

NO.20 After being authenticated by the Security Gateway, When a user starts an HTTP
connection to a Web site, the user tries to FTP to another site using the command
line. What happens to the user? The:
A. FTP session is dropped by the implicit Cleanup Rule
B. user is prompted from that FTP site on~, and does not need to enter username and
password for Client Authentication
C. FTP connection is dropped by rule2
D. FTP data connection is dropped, after the user is authenticated successfully
E. User is prompted for authentication by the Security Gateway aqain
Answer: B

CheckPoint   156-915시험문제   156-915   156-915   156-915

NO.21 Certkiller .com has two headquarters, one in London, one in new York. Each
headquarters includes several branch offices. The branch offices only need to
communicate with the headquarters in their country, not with each other, and only
the headquarters need to communicate directly. What is the BEST configuration for
VPN Communities among the branch offices and their headquarters, and between
the two headquarters? VPN Communities comprised of:
A. Two star and one mesh Community; each star Community is set up for each site, with
headquarters as the center of the Community, and branches as satellites. The mesh
Communities are between the New York and London headquarters
B. Three mesh Communities: one for London headquarters and its branches, one for New
York headquarters and its branches, and one for London and New York headquarters
C. Two mesh Communities, one for each headquarters and their branch offices; and one
star Community, in which London is the center of the Community and New York is the
satellite
D. Two mesh Communities, one for each headquarters and their branch offices; and one
star Community, where New York is the center of the Community and London is the
satellite
Answer: A

CheckPoint자격증   156-915자격증   156-915 pdf   156-915   156-915

NO.22 You want to upgrade a SecurePlatform NG with Application Intelligence (AI) R55
Gateway to SecurePlalform NGX R60 via SmartUpdate. Which package is needed
in the repository before upgrading?
A. SVN Foundation and VPN-1 Express/Pro
B. VPN-1 and FireWall-1
C. SecurePlalform NGX R60
D. SVN Foundation
E. VPN-1 ProfExpress NGX R60
Answer: C

CheckPoint dump   156-915   156-915

NO.23 Select the correct statement about Secure Internal Communications (SIC)
Certificates? SIC Certificates:
A. for the SmartCenter Server are created during the SmartCenter Server configuration
B. decrease network security by securing administrative communication among the
SmartCenter Servers and the Security Gateway
C. for NGX Security Gateways are created during the SmartCenter Server installation
D. uniquely identify Check Point enabled machines; they have the same function as VPN
Certificates
E. are used for securing internal network communications between the SmartView
Tracker and an OPSEC device
Answer: D

CheckPoint   156-915   156-915

NO.24 Which of the following commands shows full synchronizalion status?
A. cphaprob -i list
B. cphastop
C. fw ctl pstat
D. cphaprob -a if
E. fw hastat
Answer: C

CheckPoint pdf   156-915   156-915인증   156-915최신덤프

NO.25 Which command allows you to view the contents of an NGX table?
A. fw tab -s <tablename>-
B. fw tab -t <tablename>-
C. fw tab -u <tablename>-
D. fw tab -a <tablename>-
E. fw tab -x <tablename>-
Answer: B

CheckPoint   156-915덤프   156-915덤프

NO.26 The following is cphaprobstate command output from a New Mode High
Availability cluster member:
Which machine has the highest priority?
A. 192.168.1.2,since its number is 2
B. 192.168.1.1,because its number is 1
C. This output does not indicate which machine has the highest priority
D. 192.168.1.2, because its state is active
Answer: B

CheckPoint덤프   156-915   156-915 dump

NO.27 When you change an implicit rule's order from "last" to "first" in Global
Properties, how do you make the change effective?
A. Close SmartDashboard, and reopen it
B. Select install database from the Policy menu
C. Select save from the file menu
D. Reinstall the Security Policy
E. Run fw fetch from the Security Gateway
Answer: D

CheckPoint덤프   156-915자료   156-915   156-915자격증   156-915 pdf

NO.28 Eric wants to see all URLs' ful destination path in the SmartView Tracker logs, not
just the fully qualified domain name of the web servers. For Example, the
information field of a log entry displays the URL
http://hp.msn.com/css/home/hpcl1012.css. How can Eric best customize SmartView
Tracker to see the logs he wants? Configure the URl resource, and select
A. "transparent" asthe connection method
B. "tunneling"as the connection method
C. "optimize URL logging"; use the URI resource in the rule, with action "accept"
D. "Enforce URI capability"; use the URI resource in the rule,with action "accept"
Answer: C

CheckPoint   156-915기출문제   156-915   156-915

NO.29 You want to upgrade a cluster with two members to VPN-1 NGK The SmartCenter
Server and both members are version VPN-1/FireWall-1 NG FP3, with the latest
Hotfix. What is the correct upgrade procedure?
1. Change the version, in the General Properties of the gateway-cluster object
2. Upgrade the SmartCenter Server, and reboot after upgrade
3. Run cpstop on one member, while leaving the other member running. Upgrade
one member at a time, and reboot after upgrade
4. Reinstall the Security Policy
A. 3,2,1,4
B. 2,4,3,1
C. 1,3,2,4
D. 2,3,1,4
E. 1,2,3,4
Answer: D

CheckPoint인증   156-915 dumps   156-915 dump   156-915

NO.30 In NGX, what happens if a Distinguished Name (ON) is NOT found in LADP?
A. NGX takes the common-name value from the Certificate subject, and searches the
LADP account unit for a matching user id
B. NGX searches the internal database for the username
C. The Security Gateway uses the subject of the Certificate as the ON for the initial
lookup
D. If the first request fails or if branches do not match, NGX tries to map the identity to
the user id attribute
E. When users authenticate with valid Certificates, the Security Gateway tries to map the
identities with users registered in the extemal LADP user database
Answer: D

CheckPoint dumps   156-915   156-915   156-915기출문제

ITExamDump에서는 시장에서 가장 최신버전이자 적중율이 가장 높은 CheckPoint인증 156-915덤프를 제공해드립니다. CheckPoint인증 156-915덤프는 IT업종에 몇십년간 종사한 IT전문가가 실제 시험문제를 연구하여 제작한 고품질 공부자료로서 시험패스율이 장난 아닙니다. 덤프를 구매하여 시험에서 불합격성적표를 받으시면 덤프비용 전액을 환불해드립니다.


댓글 없음:

댓글 쓰기