When configuring VPN High Availability (HA) with MEP, which of the following is correct?
A. The decision on which MEP Security Gateway to use is made on the remote gateway's side (non-MEP side).
B. MEP Gateways must be managed by the same SmartCenter Server.
C. MEP VPN Gateways cannot be geographically separated machines.
D. If one Gateway fails, the synchronized connection fails over to another Gateway and the connection continues
You are a Security Administrator preparing to deploy a new HFA (Hotfix Accumulator) to ten Security Gateways at five geographically separated locations What is the BEST method to implement this HFA?
A. Send a Certified Security Engineer to each site to perform the update
B. Use a SSH connection to SCP the HFA to each Security Gateway. Once copied locally, initiate a remote installation command and monitor the installation progress with SmartView Monitor.
C. Use SmartUpdate to install the packages to each of the Security Gateways remotely
D. Send a CDROM with the HFA to each location and have local personnel install it
Where do you enable popup alerts for SmartDefense settings that have detected suspicious activity?
A. In SmartView Monitor, select Tools > Alerts
B. In SmartView Tracker, select Tools > Custom Commands
C. In SmartDashboard, edit the Gateway object, select SmartDefense > Alerts
D. In SmartDashboard, select Global Properties > Log and Alert > Alert Commands
When launching SmartDashboard, what information is required to log into VPN-1 NGX R65?
A. User Name, Password, SmartCenter Server IP
B. User Name, SmartCenter Server IP, certificate fingerprint file
C. Password, SmartCenter Server IP, LDAP Server
D. Password, SmartCenter Server IP
Which of these components does NOT require a VPN-1 NGX R65 license?
A. Check Point Gateway
B. SmartCenterServer
C. SmartConsole
D. SmartUpdate upgrading/patching
When synchronizing clusters, which of the following statements is NOT true?
A. User Authentication connections will be lost by the cluster.
B. Only cluster members running on the same OS platform can be synchronized.
C. In the case of a failover, accounting information on the failed member may be lost despite a properly working synchronization
D. An SMTP resource connection using CVP will be maintained by the cluster.
Which of these components does NOT require a VPN-1 NGX R65 license?
A. Check Point Gateway
B. SmartCenterServer
C. SmartConsole
D. SmartUpdate upgrading/patching
Which Check Point product is used to create and save changes to a Log Consolidation Policy?
A. Eventia Reporter Client
B. SmartDashboard Log Consolidator
C. SmartCenterServer
D. Eventia Reporter Server
Multi-Corp wants to implement IKE DoS protection to prevent a denial-of-service (DoS) attack from paralyzing its VPN Communities. Jerry needs to minimize the performance impact of implementing this new protection. Which of the following configurations would BEST enable this new protection with minimal impact to the organization?
A. Set "Support IKE DoS protection from identified source" to "Puzzles", and "Support IKE DoS protection from unidentified source" to "Stateless".
B. Set both "Support IKE Dos protection from identified source", and "Support IKE DoS protection from unidentified source" to "Puzzles".
C. Set both "Support IKE DoS protection from identified source", and "Support IKE DoS protection from unidentified source" to "Stateless"
D. Set "Support IKE DoS protection from identified source" to "Stateless", and "Support IKE DoS protection from unidentified source" to "None".
Which of the following would NOT be a function of the Check Point license-upgrade tool?
A. Upgrade locally managed licenses.
B. Simulate the license-upgrade process.
C. Manually upgrade a specific license.
D. View the status of the currently installed licenses.