wayground logo

Free Printable Worksheets

NEW

Font size

S
M
L
XL
Worksheets

CCSA-3

Total questions: 31

Worksheet time: 16mins

Name
Class
Date
1.

SmartConsole provides a consolidated solution for everything that is necessary for the security of an organization, such as the following:

a)

Security Policy Management and Log Analysis.

b)

Security Policy Management, Log Analysis, System Health Monitoring, Multi-Domain Security Management.

c)

Security Policy Management, Log Analysis and System Health Monitoring.

d)

Security Policy Management, Threat Prevention rules, System Health Monitoring and Multi-Domain Security Management.

2.

Which of the following is NOT a tracking log option in R80.x?

a)

Full Log

b)

Detailed Log

c)

Log

d)

Extended Log

3.

Where can alerts be viewed?

a)

Alerts can be seen in SmartView Monitor

b)

Alerts can be seen in the Threat Prevention policy

c)

Alerts can be seen in SmartUpdate

d)

Alert can be seen from the CLI of the gateway

4.

Which of the following is NOT a valid application navigation tab in SmartConsole?

a)

Manage and Command Line

b)

Logs and Monitor

c)

Gateway and Servers

d)

Security Policies

5.

Fill in the blank: An identity server uses a _________ to trust a Terminal Server Identity Agent.

a)

One-time password

b)

Shared secret

c)

Certificate

d)

Token

6.

John is the administrator of a Security Management server managing a Check Point Security Gateway. John is currently updating the network objects and amending the rules using SmartConsole. To make John’s changes available to other administrators before installing a policy, what should John do?

a)

File > Save

b)

Install database.

c)

Logout of the session.

d)

Publish the session.

7.

What technologies are used to deny or permit network traffic?

a)

Stateful Inspection, Firewall Blade, and URL/Application Blade

b)

Packet Filtering, Stateful Inspection, and Application Layer Firewall

c)

Firewall Blade, URL/Application Blade, and IPS

d)

Stateful Inspection, URL/Application Blade, and Threat Prevention

8.

When connected to the Check Point Management Server using the SmartConsole the first administrator to connect has a lock on:

a)

only the objects being modified in his session of the Management Database and other administrators can connect to make changes using different sessions.

b)

the entire Management Database and other administrators can connect to make changes only if the first administrator switches to Read-only.

c)

the entire Management Database and all sessions and other administrators can connect only as Read-only.

d)

only the objects being modified in the Management Database and other administrators can connect to make changes using a special session as long as they all connect from the same LAN network.

9.

Using AD Query, the security gateway connections to the Active Directory Domain Controllers using what protocol?

a)

Windows Management Instrumentation (WMI)

b)

Hypertext Transfer Protocol Secure (HTTPS)

c)

Lightweight Directory Access Protocol (LDAP)

d)

Remote Desktop Protocol (RDP)

10.

Bob and Joe both have Administrator Roles on their Gaia Platform. Bob logs in on the WebUI and then Joe logs in through CLI. Choose what BEST describes the following scenario, where Bob and Joe are both logged in:

a)

Since they both are logged in on different interfaces, they will both be able to make changes.

b)

When Joe logs in, Bob will be logged out automatically.

c)

The database will be locked by Bob and Joe will not be able to make any changes.

d)

Bob will receive a prompt that Joe has logged in.

11.

If there is an Accept Implied Policy set to “First", what is the reason Jorge cannot see any logs?

a)

Log Implied Rule was not set correctly on the track column on the rules base.

b)

Track log column is set to Log instead of Full Log.

c)

Track log column is set to none.

d)

Log Implied Rule was not selected on Global Properties.

12.

Which Threat Prevention Software Blade provides comprehensive protection against malicious and unwanted network traffic, focusing on application and server vulnerabilities?

a)

IPS

b)

Anti-Virus

c)

Anti-Spam

d)

Anti-bot

13.

What is the purpose of a Stealth Rule?

a)

A rule that allows administrators to access SmartConsole from any device.

b)

To drop any traffic destined for the firewall that is not otherwise explicitly allowed.

c)

A rule at the end of your policy to drop any traffic that is not explicitly allowed.

d)

A rule used to hide a server's IP address from the outside world.

14.

Which one of the following is the preferred licensing model? (Choose the best answer.)

a)

Local licensing because it ties the package license to the IP-address of the gateway and has no dependency of the Security Management Server.

b)

Central licensing because it ties the package license to the IP-address of the Security Management Server and has no dependency on the gateway.

c)

Central licensing because it ties the package license to the MAC-address of the Security Management Server’s Mgmt-interface and has no dependency on the gateway.

d)

Local licensing because it ties the package license to the MAC-address of the gateway management interface and has no Security Management Server dependency.

15.

Fill in the blanks: Default port numbers for an LDAP server is____ for standard connections and____ SSL connections.

a)

636; 8080

b)

290; 3389

c)

389; 636

d)

443, 389

16.

Identity Awareness allows the Security Administrator to configure network access based on which of the following?

a)

Identity of the machine, username, and certificate

b)

Network location, identity of a user, and identity of a machine

c)

Name of the application, identity of the user, and identity of the machine

d)

Browser-Based Authentication, identity of a user, and network location

17.

Using the SmartConsole, which pre-defined Permission Profile should be assigned to an administrator that requires full access to audit all configurations without modifying them?

a)

Full Access

b)

Read Only All

c)

Super User

d)

Editor

18.

Which command shows the installed licenses in Expert mode?

a)

print cplic

b)

show licenses

c)

fwlic print

d)

cplic print

19.

Which type of attack can a firewall NOT prevent?

a)

Buffer Overflow

b)

SYN Flood

c)

SQL Injection

d)

Network Bandwidth Saturation

20.

What object type would you use to grant network access to an LDAP user group?

a)

User Group

b)

SmartDirectory Group

c)

Access Role

d)

Group Template

21.

In the Check Point Security Management Architecture, which component(s) can store logs?

a)

Security Management Server

b)

SmartConsole and Security Management Server

c)

SmartConsole

d)

Security Management Server and Security Gateway

22.

Choose what BEST describes a Session.

a)

Sessions ends when policy is pushed to the Security Gateway.

b)

Starts when an Administrator logs in through SmartConsole and ends when the Administrator logs out.

c)

Sessions locks the policy package for editing.

d)

Starts when an Administrator publishes all the changes made on SmartConsole.

23.

Which Check Point Application Control feature enables application scanning and detection?

a)

CPApp

b)

AppWiki

c)

Application Library

d)

Application Dictionary

24.

Fill in the blank: In order to install a license, it must first be added to the ______.

a)

License and Contract repository

b)

Package repository

c)

Download Center Web site

d)

User Center

25.

Which software blade does NOT accompany the Threat Prevention policy?

a)

IPS

b)

Application Control and URL Filtering

c)

Threat Emulation

d)

Anti-virus

26.

Which of the following is an authentication method used for Identity Awareness?

a)

RSA

b)

PKI

c)

Captive Portal

d)

SSL

27.

In the Check Point three-tiered architecture, which of the following is NOT a function of the Security Management Server?

a)

Display policies and logs on the administrator’s workstation.

b)

Processing and sending alerts such as SNMP traps and email notifications.

c)

Verify and compile Security Policies.

d)

Store firewall logs to hard drive storage.

28.

Fill in the blank: RADIUS Accounting gets ____ data from requests generated by the accounting client.

a)

Location

b)

Payload

c)

Destination

d)

Identity

29.

When a gateway requires user information for authentication, what order does it query servers for user information?

a)

First - Internal user database, then LDAP servers in order of priority, finally the generic external user profile.

b)

First the Internal user database, then generic external user profile, finally LDAP servers in order of priority.

c)

First the highest priority LDAP server, then the internal user database, then lower priority LDAP servers, finally the generic external profile.

d)

The external generic profile, then the internal user database, finally the LDAP servers in order of priority.

30.

Which Threat Tool within SmartConsole provides a list of trusted files for the administrator so they can specify to the Threat Prevention blade that these files do not need to be scanned or analyzed?

a)

AppWiki

b)

ThreatWiki

c)

IPS Protections

d)

Whitelist Files

31.

In HTTPS Inspection policy, what actions are available in the "Actions" column of a rule?

a)

"Inspect", "Bypass", "Block"

b)

"Inspect", "Bypass", "Categorize"

c)

"Inspect", "Bypass"

d)

"Detect", "Bypass"