156-585 Check Point Certified Troubleshooting Expert

Loading demo links...

Showing 1–3 of 10 questions

Question 1

The two procedures available for debugging in the firewall kernel are: i. fw ctl zdebug ii. fw ctl debug/kdebug

Choose the correct statement explaining the difference in the two.

Select an option, then click Submit answer.

  • (i) Is used for general debugging, has a small buffer and is a quick way to set kernel debug flags to get an output via command line whereas (ii) is useful when there is a need for detailed debugging and requires additional steps to set the buffer and get an output via command line

  • (i) is used to debug the access control policy only, however (ii) can be used to debug a unified policy

  • (i) is used to debug only issues related to dropping traffic, however (ii) can be used for any firewall issue including NATing, clustering etc.

  • (i) is used on a Security Gateway, whereas (ii) is used on a Security Management Server

Question 2

Where do Protocol parsers register themselves for IPS?

Select an option, then click Submit answer.

  • Passive Streaming Library

  • Other handlers register to Protocol parser

  • Protections database

  • Context Management Infrastructure

Question 3

What is the best way to resolve an issue caused by a frozen process?

Select an option, then click Submit answer.

  • Reboot the machine

  • Restart the process

  • Kill the process

  • Power off the machine