Exam Code : 156-587
Exam Name : Check Point Certified Troubleshooting Expert (CCTE) - R81.20
Vendor Name :
"Checkpoint"
156-587 Dumps
156-587 Braindumps
156-587 Real Questions
156-587 Practice Test
156-587 Actual Questions
killexams.com Checkpoint 156-587
Check Point Certified Troubleshooting Expert (CCTE)
- R81.20
https://killexams.com/pass4sure/exam-detail/156-587
Where will the usermode core files be located?
/var/log/dump/usermode
/var/suroot
SFWDlR/var'log/dump/usermode
SCPDIR/var/log/dump/usermode
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92764
When running a debug with fw monitor, which parameter will create a more verbose output?
-i
-i
-0
-d
PostgreSQL is a powerful, open source relational database management system Check Point offers a command for viewing the database to interact with Postgres interactive shell
Which command do you need to enter the PostgreSQL interactive shell?
psql_client cpm postgres
mysql_client cpm postgres
psql_c!ieni postgres cpm
mysql -u root
Answer: A
Question: 29
Check Point Access Control Daemons contains several daemons for Software Blades and features. Which Daemon is used for Application & Control URL Filtering?
rad
cprad
pepd
pdpd
Answer: A
Question: 30
Your fwm constantly crashes and is restarted by the watchdog. You can't find any coredumps related to this process, so you need to check If coredumps are enabled at all.
How can you achieve that?
in dish run show core-dump status
in expert mode run show core-dump status
in dish run set core-dump status
in dish run show coredumb status
Which of the following is NOT a valid "fwaccel" parameter?
stat
stats
templates
packets
Answer: D
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk41397
Troubleshooting issues with Mobile Access requires the following:
Standard VPN debugs, packet captures, and debugs of cvpnd' process on Security Gateway
Standard VPN debugs and packet captures on Security Gateway, debugs of "cvpnd' process on Security Management
'ma_vpnd' process on Secunty Gateway
Debug logs of FWD captured with the command - 'fw debug fwd on TDERROR_MOBILE_ACCESS=5'
After kernel debug with "fw ctl debug" you received a huge amount of information It was saved in a very large file that is difficult to open and analyze with standard text editors Suggest a solution to solve this issue.
Use "fw ctl zdebug' because of 1024KB buffer size
Divide debug information into smaller files Use "fw ctl kdebug -f -o "filename" -m 25 - s "1024"
Reduce debug buffer to 1024KB and run debug for several times
Use Check Point InfoView utility to analyze debug output
Which of the following inputs is suitable for debugging HTTPS inspection issues?
vpn debug cptls on
fw ctl debug Cm fw + conn drop cptls
fw diag debug tls enable
fw debug tls on TDERROR_ALL_ALL=5
Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal? eventSubmit_doGoviewsolutiondetails=&solutionid=sk108202
Which command can be run in Expert mode lo verify the core dump settings?
grep cdm /config/db/coredump
grep cdm /config/db/initial
grep SFWDlR/config/db/initial
cat /etc/sysconfig/coredump/cdm conf
What does SIM handle?
Accelerating packets
FW kernel to SXL kernel hand off
OPSEC connects to SecureXL
Hardware communication to the accelerator
Which file is commonly associated with troubleshooting crashes on a system such as the Security Gateway?
core dump
CPMIL dump
fw monitor
tcpdump
Answer: A
Question: 38
Vanessa is reviewing ike.elg file to troubleshoot failed site-to-site VPN connection After sending Mam Mode Packet 5 the response from the peer is PAYLOAD-MALFORMED"
What is the reason for failed VPN connection?
The authentication on Phase 1 is causing the problem. Pre-shared key on local gateway encrypted by the hash algorithm created in Packet 3 and Packet 4 doesn't match with the hash on the peer gateway generated by encrypting its pre-shared key
The authentication on Phase 2 is causing the problem Pre-shared key on local gateway encrypted by the hash algorithm created in Packets 1 and 2 doesn't match with the hash on the peer gateway generated by encrypting its pre-shared key
The authentication on Quick Mode is causing the problem Pre-shared key on local gateway encrypted by the hash algorithm
created in Packets 3 and 4 doesn't match with the hash on the peer gateway generated by encrypting its pre-shared key
The authentication on Phase 1 is causing the problem Pre-shared key on local gateway encrypted by the hash algorithm doesn't match with the hash on the peer gateway generated by encrypting its pre-shared key created in Packet 1 and Packet 2
For TCP connections, when a packet arrives at the Firewall Kemel out of sequence or fragmented, which layer of IPS corrects this lo allow for proper inspection?
Passive Streaming Library
Protections
Protocol Parsers
Context Management
Answer: A
Question: 40
What is the correct syntax to turn a VPN debug on and create new empty debug files?
vpn debug truncon
vpndebug trunc on
vpn kdebug on
vpn debug trunkon