Q) Suppose you have a rule that allows HTTP traffic on port 80, to a specific Web servers in a demilitarized zone (DMZ). If an external host port analyzes the IP address of the Web server, which information will be revealed?
a) Anything; NGX Security Server automatically block all port scans.
b) All doors are open to the Security Server.
c) All ports are open on the Web server.
d) structure of the web file server is revealed.
e) The port 80 is open on Web servers.
Q) Which of the following types of information should an administrator use tcpdump to see?
a) Analysis of DECnet traffic
b) VLAN trunking analysis
c) Analysis of NAT traffic
d) Packet-header analysis
e) AppleTalk traffic analysis
Q) Which statement is true for VPN-based path?
a) IP Pool NAT must be configured on each gateway
b) VPN route-based VPN replace the domain-based
c) Route-based VPNs are a form of partial overlapping domain VPN
d) Packages are automatically encrypt or decrypt
e) Dynamic-routing protocols are not required
Q) The following list provides all Check Point recommends actions to resolve a problem with a product NGX. A. List Possible causes B. identifying information Problem C. related D. Collect Consult Various sources of reference E. test is independently and logically select the answer that shows the order of the recommended actions that make Check Point'stroubleshooting guidelines?
a) B, C, A, E, D
b) A, E, B, D, C
c) A, B, C, D, E
d) B, A, D, E, C
e) D, B, A, C, E
Q) Wire Mode allows NGX:
a) peer gateway to establish a VPN connection automatically by default presharedsecrets.
b) The administrators verify that each VPN-1 SecureClient is configured properly before allowing itaccess the secure domain.
c) Peer gateway for failover of existing VPN traffic, avoiding stateful inspection.
d) Administrators to monitor the VPN traffic for troubleshooting.
e) For administrators to limit the number of simultaneous VPN connections, to reduce traffic loadpassing through a security gateway.