New Year Special Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: clap70

156-582 Check Point Certified Troubleshooting Administrator - R81.20 (CCTA) Questions and Answers

Questions 4

You want to work with a license for your gateway in User Center portal, but all options are greyed out. What is the reason?

Options:

A.

Your account has classification permission to Viewer

B.

Your account has classification permission to Licenser

C.

You are not defined as Support Contact

D.

Your account does not have any rights

Buy Now
Questions 5

When managing the disk space for locally stored logs, the Delete threshold for the gateway cannot be more than what percentage of the total disk space?

Options:

A.

10%

B.

75%

C.

50%

D.

25%

Buy Now
Questions 6

For Threat Prevention, which process is enabled when the Policy Conversion process has debug turned on using the INTERNAL_POLICY_LOADING=1 command?

Options:

A.

fwm

B.

cpm

C.

solr

D.

dlpd

Buy Now
Questions 7

After deploying a new Static NAT configuration, traffic is not getting through. What command would you use to troubleshoot internal problems with the NAT traffic?

Options:

A.

fw ctl kdebug + xlate xltrc nat

B.

cp ctl zdebug + xlate xltrc nat

C.

fw ctl zdebug + xlate xltrc nat

D.

cp ctl kdebug + xlate xltrc nat

Buy Now
Questions 8

When is the Enable Bypass Under Load used in IPS?

Options:

A.

When the threshold is reached for connections and throughput

B.

When there is a problem with IPS and connectivity cannot be guaranteed

C.

When the threshold is reached for CPU and memory

D.

When there is an ongoing attack, the Security Gateway puts its state to maintenance mode to prevent attackers from breaching the network

Buy Now
Questions 9

The Check Point FW Monitor tool captures and analyzes incoming packets at multiple points in the traffic inspections. Which of the following is the correct inspection flow for traffic?

Options:

A.

(i) - pre-inbound, (I) - post-inbound, (o) - pre-outbound, (O) - post-outbound

B.

(o) - pre-outbound, (O) - post-inbound, (i) - pre-inbound, (I) - post-inbound

C.

(O) - post-outbound, (o) - pre-outbound, (I) - post-inbound, (i) - pre-inbound

D.

(1) - pre-inbound, (i) - post-inbound, (O) - pre-outbound, (o) - post-outbound

Buy Now
Questions 10

After deploying a Hide NAT for a new network, users are unable to access the Internet. What command would you use to check the internal NAT behavior?

Options:

A.

cp ctl kdebug + xlate xltrc nat

B.

fw ctl zdebug + xlate xltrc nat

C.

cp ctl zdebug + xlate xltrc nat

D.

fw ctl kdebug + xlate xltrc nat

Buy Now
Questions 11

What does the FWD daemon instruct the gateway to do when communication issues between the gateway and SMS/Log Server occur?

Options:

A.

It instructs the gateway to continue forwarding logs to SMS/Log Server and the logs will be stored in a holding queue for the server until communication is restored.

B.

It instructs the gateway to stop logging until it can restore communication.

C.

It instructs the gateway to store logs locally as it continues to try to restore communication.

D.

It instructs the gateway to only log a specified number of logs as defined in the Security Policy.

Buy Now
Questions 12

Which of the following System Monitoring Commands (Linux) shows process resource utilization, as well as CPU and memory utilization?

Options:

A.

df

B.

free

C.

ps

D.

top

Buy Now
Questions 13

How do you verify that Proxy ARP entries are loaded into the kernel?

Options:

A.

fw ctl arp

B.

show arp dynamic all

C.

This information can be viewed in the logs, under NAT section of log, field: Proxy ARP entry

D.

fw ctl get arp list all

Buy Now
Questions 14

Which of the following is true about tcpdump?

Options:

A.

The tcpdump can only capture TCP packets and not UDP packets

B.

A tcpdump session can be initiated from the SmartConsole

C.

The tcpdump has to be run from clish mode in Gaia

D.

Running tcpdump without the correct switches will negatively impact the performance of the Firewall

Buy Now
Questions 15

Where can a Check Point customer find information about product licenses they own, download product manuals, and get information about product support expiration?

Options:

A.

Smart Console

B.

PartnerMAP portal

C.

UserCenter portal

D.

In security management server via CLI and executing command cplic print

Buy Now
Questions 16

Customer wants to use autonomous threat prevention. How do you enable it?

Options:

A.

Enable Autonomous Threat Prevention on the Security Gateway from the SmartConsole: Gateway and Servers view and enable IPS on the Security Gateway by the command: ips on.

B.

Enable Autonomous Threat Prevention on the Security Gateway from the SmartConsole:Gateway and Servers view, the default profile Strict Security will be selected.

C.

Enable Autonomous Threat Prevention on the Security Gateway from the SmartConsole: Gateway and Servers view, inspection profile is not needed, the Security Gateway will automatically select the best profile according to deployment.

D.

Enable Autonomous Threat Prevention on the Security Gateway from the SmartConsole: Gateway and Servers view, then select inspection profile.

Buy Now
Questions 17

Which type of NAT allows both incoming and outgoing connections?

Options:

A.

Both Static and Hide NAT

B.

Hide NAT

C.

Static NAT

D.

Port NAT

Buy Now
Questions 18

What is the most efficient way to view large fw monitor captures and run filters on the file?

Options:

A.

snoop

B.

CLI

C.

CLISH

D.

Wireshark

Buy Now
Questions 19

What is the impact of an expired or missing contract file?

Options:

A.

The existing protection settings will be removed in SmartConsole but protections are still being enforced by the Security Gateway.

B.

The existing protection settings display in SmartConsole remain and during policy install the Security Gateway asks the administrator to put a new contract file during policy install.

C.

The existing protection settings display in SmartConsole remain and the Security Gateway will use a 14-day EVAL free license instead.

D.

The existing protection settings display in SmartConsole remain but are not being enforced by the Security Gateway.

Buy Now
Questions 20

What is the difference between the “Super User" and “Read Write All" SmartConsole permission profiles?

Options:

A.

“Read Write All" has the extra ability to make changes within the Gaia operating system

B.

“Super User” has the extra ability to administer other administrative accounts

C.

“Super User” has the extra ability to make changes within the Gaia operating system

D.

“Super User" had the extra ability of being able to use the Management API

Buy Now
Questions 21

During a problem isolation with the OSI model, what layer will you investigate when the issue is ARP or MAC address?

Options:

A.

Network level

B.

Layer 2

C.

Physical

D.

Layer 3

Buy Now
Questions 22

What is the default protection profile for Autonomous Threat Prevention?

Options:

A.

Perimeter

B.

Guest

C.

Internal

D.

Bypass

Buy Now
Exam Code: 156-582
Exam Name: Check Point Certified Troubleshooting Administrator - R81.20 (CCTA)
Last Update: Jan 4, 2025
Questions: 75
156-582 pdf

156-582 PDF

$25.5  $84.99
156-582 Engine

156-582 Testing Engine

$30  $99.99
156-582 PDF + Engine

156-582 PDF + Testing Engine

$40.5  $134.99