Winter Sale - Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: dpm65

156-582 Check Point Certified Troubleshooting Administrator - R81.20 (CCTA) Questions and Answers

Questions 4

Which of the following System Monitoring Commands (Linux) shows process resource utilization, as well as CPU and memory utilization?

Options:

A.

df

B.

free

C.

ps

D.

top

Buy Now
Questions 5

Where would you look to find the error log file to investigate a logging issue on the Security Management Server?

Options:

A.

SFWDIR/log/fwd.elg

B.

SCPDIR/log/cpd.elg

C.

SMDS_FWDIR/log/cpm.elg

D.

SFWDIR/log/fwm.elg

Buy Now
Questions 6

Which of the following allows you to capture packets at four inspection points as they traverse a Check Point gateway?

Options:

A.

tcpdump

B.

Firewall logs

C.

Kernel debugs

D.

fw monitor

Buy Now
Questions 7

Which of the following is NOT an account user classification?

Options:

A.

Licensers

B.

Manager

C.

Viewer

D.

Administrator

Buy Now
Questions 8

Running tcpdump causes a significant increase on CPU usage, what other option should you use?

Options:

A.

fw monitor

B.

Wait for out of business hours to do a packet capture

C.

cppcap

D.

You need to use tcpdump with -e option to decrease the length of packet in captures and it will utilize the less CPU

Buy Now
Questions 9

When running the cplic command, what argument is used to show the Signature key?

Options:

A.

-x

B.

-rn

C.

-s

D.

-yall

Buy Now
Questions 10

Which of the following is true about tcpdump?

Options:

A.

The tcpdump can only capture TCP packets and not UDP packets

B.

A tcpdump session can be initiated from the SmartConsole

C.

The tcpdump has to be run from clish mode in Gaia

D.

Running tcpdump without the correct switches will negatively impact the performance of the Firewall

Buy Now
Questions 11

After deploying a new Static NAT configuration, traffic is not getting through. What command would you use to verify that the proxy ARP configuration has been loaded?

Options:

A.

fw ctl conn

B.

fw ctl arp

C.

fw arp ctl

D.

cp ctl arp

Buy Now
Questions 12

Running tcpdump causes a significant increase in CPU usage, what other option should you use?

Options:

A.

o

B.

O

C.

I

D.

i

Buy Now
Questions 13

To verify that communication is working between the Security Management Server and the Security Gateway, which service port should be checked?

Options:

A.

257

B.

18209

C.

259

D.

19009

Buy Now
Questions 14

What is the correct process for GUI connectivity issues with SmartConsole troubleshooting?

Options:

A.

Processes (FWM and CPM), Connectivity, GUI clients, Certificate, Authentication

B.

First troubleshoot Authentication and then the rest

C.

Reinstall the SmartConsole and check if it's running properly

D.

Connectivity, Processes (FWM and CPM), GUI clients, Certificate, Authentication

Buy Now
Questions 15

Which of the following files is commonly associated with troubleshooting crashes on a system such as SmartConsole?

Options:

A.

CPMILdump

B.

fw monitor

C.

crash dump

D.

tcpdump

Buy Now
Questions 16

What is the most efficient way to view large fw monitor captures and run filters on the file?

Options:

A.

snoop

B.

CLI

C.

CLISH

D.

Wireshark

Buy Now
Questions 17

Check Point's self-service knowledge base of technical documents and tools covers everything from articles describing how to fix specific issues, understand error messages and to how to plan and perform product installation and upgrades. This knowledge base is called:

Options:

A.

SupportCenterBase

B.

SecureDocs

C.

SupportDocs

D.

SecureKnowledge

Buy Now
Questions 18

Select the correct statement about service contracts.

Options:

A.

Valid service contracts must be stored only on the Security Gateways that have Threat Prevention blades enabled

B.

Service contracts are provided on paper only

C.

Valid service contracts are only stored and required on the Primary Security Management Server and never downloaded on any other system

D.

Valid service contracts must be stored on the Security Management Server before they can be downloaded to a Security Gateway

Buy Now
Questions 19

What are the available types of licenses in Check Point?

Options:

A.

Evaluation, Perpetual, Trial, Subscription

B.

Evaluation, Perpetual, Test, Free

C.

Free, Evaluation, Annual, Lifetime

D.

Annual, Perpetual, Test, Free

Buy Now
Questions 20

What does the FWD daemon instruct the gateway to do when communication issues between the gateway and SMS/Log Server occur?

Options:

A.

It instructs the gateway to continue forwarding logs to SMS/Log Server and the logs will be stored in a holding queue for the server until communication is restored.

B.

It instructs the gateway to stop logging until it can restore communication.

C.

It instructs the gateway to store logs locally as it continues to try to restore communication.

D.

It instructs the gateway to only log a specified number of logs as defined in the Security Policy.

Buy Now
Questions 21

You were asked to set up logging for a rule to log a full list of URLs when the rule hits in the Rule Base. How do you accomplish that?

Options:

A.

Set Extended logging under rule log type

B.

Click on the rule, column logging and set "log URL" under application control blade layer

C.

All URLs are logged by default

D.

For URL logging you need to modify blade settings of URL filtering blade under SmartConsole, Manage & Settings, blades, URL filtering

Buy Now
Questions 22

What are two types of SAs in the VPN negotiation?

Options:

A.

IKE and VPND SA

B.

IKE SA and VPN SA

C.

IKE SA and IPsec SA

D.

VPN SA and Main SA

Buy Now
Exam Code: 156-582
Exam Name: Check Point Certified Troubleshooting Administrator - R81.20 (CCTA)
Last Update: Jan 16, 2025
Questions: 75

PDF + Testing Engine

$57.75  $164.99

Testing Engine

$43.75  $124.99
buy now 156-582 testing engine

PDF (Q&A)

$36.75  $104.99
buy now 156-582 pdf
dumpsmate guaranteed to pass
24/7 Customer Support

DumpsMate's team of experts is always available to respond your queries on exam preparation. Get professional answers on any topic of the certification syllabus. Our experts will thoroughly satisfy you.

Site Secure

mcafee secure

TESTED 18 Jan 2025