Free 156-315.81 Exam Braindumps (page: 54)

Page 53 of 158

Fill in the blank: Identity Awareness AD-Query is using the Microsoft _______________ API to learn users from AD.

  1. WMI
  2. Eventvwr
  3. XML
  4. Services.msc

Answer(s): A

Explanation:

Identity Awareness AD-Query is using the Microsoft WMI API to learn users from AD. WMI stands for Windows Management Instrumentation, and it is an API that allows remote management and monitoring of Windows systems. Identity Awareness AD-Query is a feature that enables the Security Gateway to query Active Directory servers for user and computer information, such as login events, group membership, and IP addresses. By using the WMI API, Identity Awareness AD-Query can receive real-time notifications from Active Directory servers without installing any agents or scripts on them.



Which is not a blade option when configuring SmartEvent?

  1. Correlation Unit
  2. SmartEvent Unit
  3. SmartEvent Server
  4. Log Server

Answer(s): B

Explanation:

SmartEvent Unit is not a blade option when configuring SmartEvent. SmartEvent is a unified security event management solution that provides visibility, analysis, and reporting of security events across multiple Check Point products. SmartEvent consists of three main components: SmartEvent Server, Correlation Unit, and Log Server. SmartEvent Server is responsible for storing and displaying security events in SmartConsole and SmartEventWeb. Correlation Unit is responsible for collecting and correlating logs from various sources and generating security events based on predefined or custom scenarios. Log Server is responsible for receiving and indexing logs from Security Gateways and other Check Point modules. SmartEvent Unit is not a valid component or blade of SmartEvent.



The essential means by which state synchronization works to provide failover in the event an active member goes down, ____________ is used specifically for clustered environments to allow gateways to report their own state and learn about the states of other members in the cluster.

  1. ccp
  2. cphaconf
  3. cphad
  4. cphastart

Answer(s): A

Explanation:

The essential means by which state synchronization works to provide failover in the event an active member goes down, ccp is used specifically for clustered environments to allow gateways to report their own state and learn about the states of other members in the cluster. Ccp stands for Cluster Control Protocol, and it is a proprietary protocol that runs on UDP port 8116. Ccp is responsible for exchanging state information, health checks, load balancing decisions, and synchronization network configuration between cluster members. The other options are either commands or daemons that are related to cluster operations, but not the protocol itself.



Which statement is most correct regarding about "CoreXL Dynamic Dispatcher"?

  1. The CoreXL FW instanxces assignment mechanism is based on Source MAC addresses, Destination MAC addresses
  2. The CoreXL FW instances assignment mechanism is based on the utilization of CPU cores
  3. The CoreXL FW instances assignment mechanism is based on IP Protocol type
  4. The CoreXl FW instances assignment mechanism is based on Source IP addresses, Destination IP addresses, and the IP `Protocol' type

Answer(s): B

Explanation:

The statement that is most correct regarding about "CoreXL Dynamic Dispatcher" is: The CoreXL FW instances assignment mechanism is based on the utilization of CPU cores. CoreXL Dynamic Dispatcher is a feature that allows the Security Gateway to dynamically assign connections to the most available CoreXL FW instance, based on the CPU core utilization. This improves the performance and load balancing of the Security Gateway, especially when handling connections with different processing requirements. The other statements are either incorrect or describe the CoreXL Static Dispatcher mechanism, which assigns connections based on a hash function of the Source IP, Destination IP, and IP Protocol type.






Post your Comments and Discuss Checkpoint 156-315.81 exam with other Community members:

156-315.81 Exam Discussions & Posts