Spring Sale Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple75

Pass the Checkpoint CTPS 156-590 Questions and answers with Dumpstech

Exam 156-590 Premium Access

View all detail and faqs for the 156-590 exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions
Questions # 1:

What are examples of evidence of compromises from inside network in conjunction with Bot-infected systems?

Options:

A.

Users surfing the website directly by IP address or using domains registered within the last 30 days.

B.

Trying to access web resources using explicit proxy servers instead of transparent ones.

C.

Repetitive access to the same specific Intranet web servers within business hours.

D.

Trying to access a web server via HTTP instead of HTTPS.

Questions # 2:

Which protection setting is generally the LEAST resource intensive?

Options:

A.

Prevent

B.

Inspect

C.

Detect

D.

Inactive

Questions # 3:

Mike wants to block all files in the event of internal failure; what option should he choose?

Options:

A.

open system

B.

fail-close

C.

fail-open

D.

closed system

Questions # 4:

Where is IPS primarily enforced?

Options:

A.

Post-infection

B.

Post-inspection

C.

Pre-infection

D.

Pre-inspection

Questions # 5:

Which mode allows you to tune or troubleshoot the Threat Prevention Blade?

Options:

A.

Observe Mode

B.

Detect Mode

C.

Display Mode

D.

Watch Mode

Questions # 6:

What is the main purpose of IPS Implied Exceptions?

Options:

A.

This defines the handling of traffic if no IPS rule applied to the appropriate packets.

B.

This defines the handling of traffic if you do not have an IPS Policy as part of an ordered layer.

C.

This feature is to prevent IPS Enforcement to interfere with important Security Gateway operations, such as Control Connections.

D.

This defines the handling of traffic if you do not have an IPS Policy as part of an Inline layer.

Questions # 7:

What is/are the enabled by default protocols supported by the Antivirus Blade?

Options:

A.

HTTP/HTTPS, FTP, SMB, SMTP

B.

HTTP/HTTPS, FTP, SMB

C.

HTTP/HTTPS

D.

HTTP/HTTPS, FTP

Questions # 8:

What is the purpose of the Packet Capture Track option?

Options:

A.

You can visualize traffic information with a third-party XDR tool.

B.

The security Gateway sends a packet capture file along with the log file. The former can by analyzed with an external tool, such as WireShark.

C.

You can specify the time after which the connection has to be reinitialized.

D.

You can specify a threshold value which serves as a limit after which the connection will be reset.

Questions # 9:

What is a function of SmartEvent?

Options:

A.

Runs on the Security Gateway generating events

B.

Generates logs for customizable views

C.

A Multi-Domain level log forwarding tool used to forward logs to syslog or similar external tools

D.

Correlates Security Gateway logs into easily understandable events

Questions # 10:

Which process is responsible for communication with the Check Point ThreatCloud for the sake of Anti-Virus Protection Update?

Options:

A.

The CPAS Daemon (cpasd)

B.

The Resource Advisor Daemon (RAD)

C.

The PSL AV-Daemon (pslavd)

D.

The Threat Emulation Daemon "ted"

Viewing page 1 out of 3 pages
Viewing questions 1-10 out of questions