Vendor: Checkpoint
Exam Code: 156-115.77
Exam Name: Check Point Certified Security Master
Date: Feb 28, 2019
File Size: 6 MB
Question 1
What command would you use for a packet capture on an absolute position for TCP streaming (out) 1ffffe0
  1. fw ctl chain -po 1ffffe0 -o monitor.out
  2. fw monitor -po -0x1ffffe0 -o monitor.out
  3. fw monitor -e 0x1ffffe0 -o monitor.out
  4. fw monitor -pr 1ffffe0 -o monitor.out
Correct answer: B
Question 2
The command fw monitor -p all displays what type of information?
  1. It captures all points of the chain as the packet goes through the firewall kernel.
  2. This is not a valid command.
  3. The -p is used to resolve MAC address in the firewall capture.
  4. It does a firewall monitor capture on all interfaces.
Correct answer: A
Question 3
What does the IP Options Strip represent under the fw chain output?
  1. IP Options Strip is not a valid fw chain output.
  2. The IP Options Strip removes the IP header of the packet prior to be passed to the other kernel functions.
  3. The IP Options Strip copies the header details to forward the details for further IPS inspections.
  4. IP Options Strip is only used when VPN is involved.
Correct answer: B

