CheckPoint Check Point Certified Troubleshooting Administrator - R81 - 156-581 Exam Practice Test

Which of the following allows you to capture packets at four inspection points as they traverse a Check Point gateway?
Correct Answer: C
Which command do you need to execute to insert fw monitor after TCP streaming (out) in the outbound chain using absolute position? Given the chain was 1ffffe0, select the correct answer.
Correct Answer: D
For Threat Prevention, which process is enabled when the Policy Conversion process has debug turned on using the INTERNAL_POLICY_LOADING=.1 command?
Correct Answer: D
After manipulating the rulebase and objects with SmartConsole the application crashes and closes immediately. To troubleshoot you will need to review the crash report. In which directory on the host PC will you find this report?
Correct Answer: A
The IPS detection incorporates four layers. Which one of these four layers performs various security checks to ensure compliance to protocol standards checking for any existing anomalies?
The checks usually involve RFC compliance. It also logically segments the data into contexts that may be taken from the request header and body
Correct Answer: D
Where do Protocol parsers register themselves for IPS?
Correct Answer: C
Which command shows the installed licenses and contracts on a Check Point device?
Correct Answer: D
Johnny has connectivity issues on datacenter firewall. His access to Finance department server suddenly stopped working. He is constantly redirected to Captive Portal and asked to login. After some research he gets information that the Windows administrator had to reinstall one of the DCs because of hardware failure. How can Johnny check what is causing connectivity problems between gateway and this DC?
Correct Answer: A
Which of the following would be the most appropriate command in debugging a HideNAT issue?
Correct Answer: A
Which of the following is NOT a way to insert fw monitor into the chain when troubleshooting packets throughout the chain?
Correct Answer: B