Consider a Check Point Security Gateway under high load. What mechanism can be used to confirm that important traffic such as control connections are not dropped?
fw debug fgd50 on OPSEC_DEBUG_LEVEL=3
fw ctl multik prioq
fgate –d load
fw ctl debug –m fg all
Correct answer: A
Question 2
What is the default and maximum number of entries in the ARP Cache Table in a Check Point appliance?
You are working with multiple Security Gateways enforcing an extensive number of rules. To simplify security administration, which action would you choose?
Eliminate all possible contradictory rules such as the Stealth or Cleanup rules
Create a separate Security Policy package for each remote Security Gateway
Create network objects that restrict all applicable rules to only certain networks
Run separate SmartConsole instances to login and configure each Security Gateway directly