Free 156-585 Exam Braindumps (page: 6)

Page 5 of 19

When a User Mode process suddenly crashes it may create a core dump file. Which of the following information is available in the core dump and may be used to identify the root cause of the crash?

i Program Counter

ii Stack Pointer

ii. Memory management information

iv Other Processor and OS flags / information

  1. i, ii, lii and iv
  2. i and n only
  3. iii and iv only
  4. D Only iii

Answer(s): C



What is the buffer size set by the fw ctl zdebug command?

  1. 1 MB
  2. 1 GB
  3. 8MB
  4. 8GB

Answer(s): A



You have configured IPS Bypass Under Load function with additional kernel parameters ids_tolerance_no_stress=15 and ids_tolerance_stress-15 For configuration you used the *fw ctl set' command After reboot you noticed that these parameters returned to their default values What do you need to do to make this configuration work immediately and stay permanent?

  1. Set these parameters again with "fw ctl set" and edit appropriate parameters in $FWDIR/boot/modules/ fwkern.conf
  2. Use script $FWDIR/bin IpsSetBypass.sh to set these parameters
  3. Set these parameters again with "fw ctl set" and save configuration with "save config"
  4. Edit appropriate parameters in $FWDIR/boot/modules/fwkern.conf

Answer(s): A

Explanation:

https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolution details=&solutionid=sk62848&partition=Advanced&product=IPS



What are some measures you can take to prevent IPS false positives?

  1. Exclude problematic services from being protected by IPS (sip, H 323, etc )
  2. Use IPS only in Detect mode
  3. Use Recommended IPS profile
  4. Capture packets. Update the IPS database, and Back up custom IPS files

Answer(s): A






Post your Comments and Discuss Checkpoint 156-585 exam with other Community members:

156-585 Discussions & Posts