Multiple Choice
Pamela is Cyber Security Engineer working for Global Instance Firm with large scale deployment of Check Point Enterprise Appliances using GAiA/R80.10. Company's Developer Team is having random access issue to newly deployed Application Server in DMZ's Application Server Farm Tier and blames DMZ Security Gateway as root cause. The ticket has been created and issue is at Pamela's desk for an investigation. Pamela decides to use Check Point's Packet Analyzer Tool-fw monitor to iron out the issue during approved Maintenance window. What do you recommend as the best suggestion for Pamela to make sure she successfully captures entire traffic in context of Firewall and problematic traffic?
A) Pamela should check SecureXL status on DMZ Security gateway and if it's turned ON. She should turn OFF SecureXL before using fw monitor to avoid misleading traffic captures.
B) Pamela should check SecureXL status on DMZ Security Gateway and if it's turned OFF. She should turn ON SecureXL before using fw monitor to avoid misleading traffic captures.
C) Pamela should use tcpdump over fw monitor tool as tcpdump works at OS-level and captures entire traffic.
D) Pamela should use snoop over fw monitor tool as snoop works at NIC driver level and captures entire traffic.
Correct Answer:

Verified
Correct Answer:
Verified
Q321: If an administrator wants to add manual
Q322: Which command shows the current connections distributed
Q323: Which one of the following is true
Q324: The Firewall Administrator is required to create
Q325: After verifying that API Server is not
Q327: When simulating a problem on ClusterXL cluster
Q328: What traffic does the Anti-bot feature block?<br>A)
Q329: What CLI command compiles and installs a
Q330: What are the attributes that SecureXL will
Q331: SmartEvent uses it's event policy to identity