WorksheetsCCSE-1
Total questions: 30
Worksheet time: 15mins
In order for changes made to policy to be enforced by a Security Gateway, what action must an administrator perform?
Publish changes
Save changes
Install policy
Install database
Name the file that is an electronically signed file used by Check Point to translate the features in the license into a code?
Both License (.lic) and Contract (.xml) files
cp.macro
Contract file (.xml)
license File (.lic)
Which two Identity Awareness daemons are used to support identity sharing?
Policy Activation Point (PAP) and Policy Decision Point (PDP)
Policy Manipulation Point (PMP) and Policy Activation Point (PAP)
Policy Decision Point (PDP) and Policy Enforcement Point (PEP)
Policy Enforcement Point (PEP) and Policy Manipulation Point (PMP)
In which scenario will an administrator need to manually define Proxy ARP?
When they configure an "Automatic Static NAT" which translates to an IP address that does not belong to one of the firewall’s interfaces.
When they configure an "Automatic Hide NAT" which translates to an IP address that does not belong to one of the firewall’s interfaces.
When they configure a "Manual Static NAT" which translates to an IP address that does not belong to one of the firewall’s interfaces.
When they configure a "Manual Hide NAT" which translates to an IP address that belongs to one of the firewall’s interfaces.
Rugged appliances are small appliances with ruggedized hardware and like Quantum Spark appliance they use which operating system?
Centos Linux
Gaia embedded
Gaia
Red Hat Enterprise Linux version 5
For Automatic Hide NAT rules created by the administrator what is a TRUE statement?
Source Port Address Translation (PAT) is enabled by default.
Automatic NAT rules are supported for Network objects only.
Automatic NAT rules are supported for Host objects only.
Source Port Address Translation (PAT) is disabled by default.
What technologies are used to deny or permit network traffic?
Stateful Inspection, Firewall Blade, and URL/Application Blade
Packet Filtering, Stateful Inspection, and Application Layer Firewall
Firewall Blade, URL/Application Blade, and IPS
Stateful Inspection, URL/Application Blade, and Threat Prevention
Identity Awareness allows easy configuration for network access and auditing based on what three items?
Client machine IP address.
Network location, the identity of a user and the identity of a machine.
Log server IP address.
Gateway proxy IP address.
Using AD Query, the security gateway connections to the Active Directory Domain Controllers using what protocol?
Windows Management Instrumentation (WMI)
Hypertext Transfer Protocol Secure (HTTPS)
Remote Desktop Protocol (RDP)
Lightweight Directory Access Protocol (LDAP)
What are the types of Software Containers?
Smart Console, Security Management, and Security Gateway
Security Management, Security Gateway, and Endpoint Security
Security Management, Log & Monitoring, and Security Policy
Security Management, Standalone, and Security Gateway
What are the Threat Prevention software components available on the Check Point Security Gateway?
IPS, Threat Emulation and Threat Extraction
IPS, Anti-Bot, Anti-Virus, SandBlast and Macro Extraction
IPS, Anti-Bot, Anti-Virus, Threat Emulation and Threat Extraction
IDS, Forensics, Anti-Virus, Sandboxing
When using Automatic Hide NAT, what is enabled by default?
Source Port Address Translation (PAT)
Static NAT
Static Route
HTTPS Inspection
In which deployment is the security management server and Security Gateway installed on the same appliance?
Standalone
Remote
Distributed
Bridge Mode
What is the main objective when using Application Control?
To filter out specific content.
To assist the firewall blade with handling traffic.
To see what users are doing.
Ensure security and privacy of information.
Gaia has two default user accounts that cannot be deleted. What are those user accounts?
Admin and Default
Expert and Clish
Control and Monitor
Admin and Monitor
When changes are made to a Rule base, It is important to __________ to enforce changes.
Publish database
Activate policy
Install policy
Save changes
Why is a Central License the preferred and recommended method of licensing?
Central Licensing actually not supported with Gaia.
Central Licensing is the only option when deploying Gala.
Central Licensing ties to the IP address of a gateway and can be changed to any gateway if needed.
Central Licensing ties to the IP address of the management server and is not dependent on the IP of any gateway in the event it changes.
What does the "unknown" SIC status shown on SmartConsole mean?
SIC activation key requires a reset
Administrator input the wrong SIC key
The management can contact the Security Gateway but cannot establish Secure Internal Communication
There is no connection between the Security Gateway and Security Management Server
What are valid authentication methods for mutual authenticating the VPN gateways?
PKI Certificates and Kerberos Tickets
PKI Certificates and DynamicID OTP
Pre-Shared Secrets and Kerberos Ticket
Pre-shared Secret and PKI Certificates
What are the correct steps upgrading a HA cluster (M1 is active, M2 is passive) using Multi-Version Cluster(MVC)Upgrade?
1) Enable the MVC mechanism on both cluster members #cphaprob mvc on
2) Upgrade the passive node M2 to R81.10
3) In SmartConsole, change the version of the cluster object
4) Install the Access Control Policy and make sure that the installation will not stop if installation on one cluster member fails
5) After examine the cluster states upgrade node M1 to R81.10
6) On each Cluster Member, disable the MVC mechanism
123456
321654
321456
321546
Which Operating Systems are supported for the Endpoint Security VPN?
Windows and x86 Solaris
Windows and macOS computers
Windows and SPARC Solaris
Windows and Red Hat Linux
What are the three SecureXL Templates available in R81.10?
PEP Templates, QoS Templates, VPN Templates
Accept Templates, Drop Templates, NAT Templates
Accept Templates, Drop Templates, Reject Templates
Accept Templates, PDP Templates, PEP Templates
Which Queue in the Priority Queue has the maximum priority?
High Priority
Control
Routing
Heavy Data Queue
Which upgrade method you should use upgrading from R80.40 to R81.10 to avoid any downtime?
Zero Downtime Upgrade (ZDU)
Connectivity Upgrade (CU)
Minimal Effort Upgrade (ME)
Multi-Version Cluster Upgrade (MVC)
The Check Point installation history feature in provides the following:
View install changes and install specific version
Policy Installation Date only
Policy Installation Date, view install changes and install specific version
View install changes
What is the SOLR database for?
Writes data to the database and full text search
Enables powerful matching capabilities and writes data to the database
Serves GUI responsible to transfer request to the DLEserver
Used for full text search and enables powerful matching capabilities
Which command lists firewall chain?
fw ctl chain
fw chain module
fw tab -t chainmod
fw list chain
Sand Blast appliances can be deployed in the following modes:
as a Mail Transfer Agent and as part of the we traffic flow only
using a SPAN port to receive a copy of the traffic only
detect only
inline/prevent or detect
Which SmartEvent component is responsible to collect the logs from different Log Servers?
SmartEvent Server
SmartEvent Database
SmartEvent Collector
SmartEvent Correlation Unit
How can you switch the active log file?
Run fw logswitch on the gateway
Run fwm logswitch on the Management Server
Run fwm logswitch on the gateway
Run fw logswitch on the Management Server
