Exam Code: 156-315.77 (Practice Exam Latest Test Questions VCE PDF)
Exam Name: Check Point Security Expert R77
Certification Provider: Check Point
Free Today! Guaranteed Training- Pass 156-315.77 Exam.
2021 Jul 156-315.77 practice test
Q381. - (Topic 6)
Which Remote Desktop protocols are supported natively in SSL VPN?
A. Microsoft RDP only
B. AT&T VNC and Microsoft RDP
C. Citrix ICA and Microsoft RDP
D. AT&T VNC, Citrix ICA and Microsoft RDP
Answer: C
Q382. - (Topic 6)
The Management Portal Software Blade allows users to
A. View Security Policies
B. Monitor traffic flows
C. Add/Delete rules
D. Create/Modify objects
Answer: A
Q383. - (Topic 2)
Included in the client's network are some switches, which rely on IGMP snooping. You must find a solution to work with these switches. Which of the following answers does NOT lead to a successful solution?
A. Set the value of fwha_enable_igmp_snooping module configuration parameter to 1.
B. Configure static CAMs to allow multicast traffic on specific ports.
C. ClusterXL supports IGMP snooping by default. There is no need to configure anything.
D. Disable IGMP registration in switches that rely on IGMP packets
Answer: C
Q384. - (Topic 4)
You use the snapshot feature to store yourConnecterSSL VPN configuration. What do you expect to find?
A. Nothing; snapshot is not supported inConnectorSSL VPN.
B. The management configuration of the current product, on a management or stand-alone machine
C. A complete image of the local file system
D. Specified directories of the local file system.
Answer: C
Q385. - (Topic 4)
When migrating theSmart Eventdata base from one server to another, the first step is to back up the files on the original server. Which of the following commands should you run to back up theSmart Eventdata base?
A. migrate export
B. snapshot
C. backup
D. eva_db_backup
Answer: D

Down to date 156-315.77 exam fees:
Q386. CORRECT TEXT - (Topic 8)
In a zero downtime scenario, which command do you run manually after all cluster members are upgraded?
Answer: cphaconf set_ccp multicast
Q387. - (Topic 5)
Yoav is a Security Administrator preparing to implement a VPN solution for his multi-site organization. To comply with industry regulations, Yoav's VPN solution must meet the following requirements:
Portability: Standard
Key management: Automatic, external PKI
Session keys: Changed at configured times during a connection's lifetime
Key length: No less than 128-bit
Data integrity: Secure against inversion andbruteforce attacks
What is the most appropriate setting Yoav should choose?
A. IKE VPNs: AES encryption for IKE Phase 1, and DES encryption for Phase 2; SHA1 hash
B. IKE VPNs: SHA1 encryption for IKE Phase 1, and MD5 encryption for Phase 2; AES hash
C. IKE VPNs: CAST encryption for IKE Phase 1, and SHA1 encryption for Phase 2; DES hash
D. IKE VPNs: AES encryption for IKE Phase 1, and AES encryption for Phase 2; SHA1 hash
E. IKE VPNs: DES encryption for IKE Phase 1, and 3DES encryption for Phase 2; MD5 hash
Answer: D
Q388. - (Topic 2)
John is configuring a new R76Gateway cluster but he can not configure the cluster as Third Party IP Clustering because this option is not available in Gateway Cluster Properties.
What's happening?
A. Third Party Clustering is not available for R76Security Gateways.
B. John is not using third party hardware as IP Clustering is part of Check Point's IP Appliance.
C. ClusterXL needs to be unselected to permit 3rd party clustering configuration.
D. John has an invalid ClusterXL license.
Answer: C
Q389. - (Topic 5)
When synchronizing clusters, which of the following statements are true?
Select all that apply.
A. Only cluster members running on the same OS platform can be synchronized.
B. Client Auth or Session Auth connections through a cluster member will be lost of the cluster member fails.
C. The state of connections using resources is maintained by a Security Server, so these connections cannot be synchronized.
D. In the case of a failover, accounting information on the failed member may be lost despite a properly
Answer: A,B,C
Q390. - (Topic 3)
How can you disable SecureXL via the command line (it does not need to survive a reboot)?
A. cphaprob off
B. fw ctl accel off
C. securexl off
D. fwaccel off
Answer: D