156-115 Check Point Certified Security Master Practice Exam

Table of Contents
Description
Pattern Questions:
What kind(s) of VTI interfaces do Edge gateways assist?
Each numbered and unnumbered
Unnumbered interfaces
Numbered interfaces
Neither numbered and unnumbered
What does the command vpn shell interface add numbered 192.168.0.1 192.168.0.2 Gateway_A to_B accomplish?
Between Security Gateways A and B, 192.168.0.1 is assigned because the endpoint IP tackle to Gateway A. 192.168.0.2 is assigned to Gateway B. Between Security Gateways A and B 192.168.0.2 is assigned because the endpoint IP tackle to Gateway A. 192.168.0.1 is assigned to Gateway B. shell will not be a sound possibility for the command vpn.
This command can be utilized to create a VPN tunnel from the command line with out having any VPN configuration in Good Dashboard (though “IPSec VPN†should nonetheless be enabled on the gateway).
You’re configuring a VTI in a clustered setting. Which of the next have to be TRUE?
Each interface on every member requires a singular IP tackle.
Every member should have the identical supply IP tackle.
You don’t want to have cluster IP addresses.
You can not arrange a VTI in a clustered setting.
You’re configuring VTIs in a clustered setting. On Peer A the VTI identify is VT_Cluster_GWA and on Peer B the VTI identify is VT_Cluster_GWB. You discover that the route primarily based tunnel will not be developing. What might be the trigger?
The names to your friends have been reversed
You haven’t issued the command vpn write config command.
You haven’t licensed your gateways for VTIs.
All VTIs going to the identical distant peer should have the identical identify.
What are the widespread Finest Practices for configuring QoS over a route-based VPN?
IKE site visitors should have a minimal Assure of fifty% of the exterior interface throughput.
QoS will not be supported
Make sure the VTI is numbered
Make sure the VTI is unnumbered
You need to allow OSPF on Safe Platform, however you discover that the required gated daemon will not be working. How are you going to allow this?
Enter cpconfig, kind Y to allow OSPF, kind Y to restart Check Point companies
Enter cpconfig, kind Y to allow Superior Routing, kind Y to restart Check Point companies
On the command immediate enter tellpm gated.
Add an OSPF rule to your Rule Base
You’re configuring OSPF in your Safe Platform firewall. You’re in skilled mode and run the instructions: interface vt-Gateway_C IP ospf 1 space 0.0.0.0 exit If you run present running-config you don’t see your OSPF configuration listed Why?
You didn’t run command save working config earlier than you exited.
You shouldn’t have moved to skilled mode to make these configurations.
You didn’t run command save configuration earlier than you exited.
You didn’t run command allow earlier than you exited.