Pass4sure contains all of the necessary Check Point Check Point training materials that you need to make complete preparation for the real exam. We have earned any high reputation compared to some other competitors in the identical market. Pass4sures This professional experts write and revise our Check Point Check Point 156-115.77 exam braindumps periodically in order to keep speed with the most recent Check Point 156-115.77 exam questions and answers.

2021 Nov 156-115.77 free practice questions

Q1. - (Topic 9) 

You are troubleshooting an issue for your HR team. One of the users is using IP 

10.10.10.24. They having been trying to access the vacation servers but all connections are failing. You have checked the logs and do not see any dropped traffic. You have a suspicion that the drop is not being logged. What command could you use to confirm this? 

A. fw -t connections -s 

B. fw ctl zdebug + log dynlog 

C. You cannot run a command for this; you must enable logging on all rules 

D. fw ctl pstat host 10.10.10.24 

Answer:


Q2. - (Topic 1) 

What command would give you a summary of all the tables available to the firewall kernel? 

A. fw tab 

B. fw tab -s 

C. fw tab -h 

D. fw tab -o 

Answer:


Q3. - (Topic 4) 

Which command displays compression/decompression statistics? 

A. vpn ver –k 

B. vpn compstat 

C. vpn compreset 

D. vpn crlview 

Answer:


Q4. - (Topic 11) 

What is the limit to the number of VPN directions that can be configured in a single rule? 

A. There is no limit. 

B. It is limited to the number of communities that exist in your dashboard. 

C. You may only configure one direction per rule. 

D. After configuring ten you must use a standard bi-directional condition. 

Answer:


Q5. - (Topic 3) 

Which command clears all the connection table entries on a Security Gateway? 

A. fw tab –t connetion –u 

B. fw ctl tab –t connetions –u 

C. fw tab –t connetion -s 

D. fw tab –t connections -x 

Answer:


Rebirth 156-115.77 study guide:

Q6. - (Topic 2) 

In your SecurePlatform configuration you need to set up a manual static NAT entry. After creating the proper NAT rule what step needs to be completed? 

A. Edit or create the file local.arp. 

B. No further actions are required. 

C. Edit or create the file discntd.if. 

D. Edit the file netconf.conf. 

Answer:


Q7. - (Topic 4) 

Which program could you use to analyze Phase I and Phase II packet exchanges? 

A. vpnView 

B. Check PointView 

C. IKEView 

D. vpndebugView 

Answer:


Q8. - (Topic 9) 

“If the machine is under stress, we do not want to leave the stress condition due to a single measurement (which could be an anomaly), but rather wait for a given length of time, before changing the condition.” …describes which of the following “Bypass under Load” setting kernel parameters? 

A. ids_assume_stress 

B. ide_tolerance_no_stress 

C. ids_tolerance_stress 

D. ids_timeout 

Answer:


Q9. - (Topic 11) 

In Wire mode. if a packet reaches the gateway from a trusted source and is destined to a trusted destination, will the firewall do stateful inspection? 

A. No, but IPS inspection will still be enforced. 

B. Yes, the Firewall always performs stateful inspection. 

C. Yes, but only if SecureXL is disabled. 

D. No 

Answer:


Q10. - (Topic 4) 

In a VPN configuration, the following mode can be used to increase throughput by 

bypassing firewall enforcement. 

A. Virtual Tunnel Interface (VTI) Mode can bypass firewall for all encrypted traffic 

B. Hub Mode can be used to bypass stateful inspection 

C. There is no such mode that can bypass firewall enforcement 

D. Wire mode can be used to bypass stateful inspection 

Answer: