CheckPoint Check Point Certified Security Administrator R71 Sample Questions:
1. What is used to validate a digital certificate?
A) CRL
B) S/MIME
C) IPsec
D) PKCS
2. You want to reset SIC between smberlin and sgosaka.
In SmartDashboard, you choose sgosaka, Communication, Reset. On sgosaka, you start cpconfig, choose Secure Internal Communication and enter the new SIC Activation Key. The screen reads The SIC was successfully initialized and jumps back to the cpconfig menu. When trying to establish a connection, instead of a working connection, you receive this error message:
What is the reason for this behavior?
A) You must first initialize the Gateway object in SmartDashboard (i.e., right-click on the object, choose Basic Setup / Initialize).
B) The activation key contains letters that are on different keys on localized keyboards. Therefore, the activation can not be typed in a matching fashion.
C) The Check Point services on the Gateway were not restarted because you are still in the cpconfig utility.
D) The Gateway was not rebooted, which is necessary to change the SIC key.
3. Although SIC was already established and running, Joe reset SIC between the Security Management Server and a remote Gateway. He set a new activation key on the Gateway's side with the cpconfig command and put in the same activation key in the Gateway's object on the Security Management Server Unfortunately SIC cannot be established. What is a possible reason for the problem?
A) The old Gateway object should have been deleted and recreated.
B) Joe forgot to reboot the Gateway.
C) Joe forgot to exit from cpconfig.
D) The installed policy blocks the communication.
4. Where is the best place to find information about connections between two machines?
A) On a Security Gateway using the command fw log.
B) On a Security Management Server, using SmartView Tracker
C) All options are valid.
D) On a Security Gateway Console interface; it gives you detailed access to log files and state table information
5. What is the difference between Standard and Specific Sign On methods?
A) Standard Sign On allows the user to be automatically authorized for all services that the rule allows. Specific Sign On requires that the user re-authenticate for each service and each host to which he is trying to connect.
B) Standard Sign On allows the user to be automatically authorized for all services that the rule allows, but re-authenticate for each host to which he is trying to connect. Specific Sign On requires that the user re-authenticate for each service.
C) Standard Sign On allows the user to be automatically authorized for all services that the rule allows. Specific Sign On requires that the user re-authenticate for each service specifically defined in the window Specific Action Properties.
D) Standard Sign On requires the user to re-authenticate for each service and each host to which he is trying to connect. Specific Sign On allows the user to sign on only to a specific IP address.
Solutions:
| Question # 1 Answer: A | Question # 2 Answer: C | Question # 3 Answer: C | Question # 4 Answer: B | Question # 5 Answer: A |

We're so confident of our products that we provide no hassle product exchange.


By Nelson


