How should you configure the VPN match rule?
You want VPN traffic to match packets from internal interfaces. You also want the traffic to exit the Security Gateway, bound for all site-to-site VPN Communities, including Remote Access Communities. How should you configure the VPN match rule?
VPN-1 NGX supports VoIP traffic in all of the following environments, EXCEPT which environment?
VPN-1 NGX supports VoIP traffic in all of the following environments, EXCEPT which environment?
Which Check Point QoS feature is used to dynamically allocate relative portions of available bandwidth?
Which Check Point QoS feature is used to dynamically allocate relative portions of available bandwidth?
If traffic passing through the QoS Module matches both rules, which of the following statements is true?
You configure a Check Point QoS Rule Base with two rules: an H.323 rule with a weight of 10, and the Default Rule with a weight of 10. The H.323 rule includes a per-connection guarantee of 384 Kbps, and a per-connection limit of 512 Kbps. The per-connection guarantee is for four connections, and no additional connections are allowed in the Action properties. If traffic passing through the QoS Module matches both rules, which of the following statements is true?
Regarding QoS guarantees and limits, which of the following statements is FALSE?
Regarding QoS guarantees and limits, which of the following statements is FALSE?
What is the correct upgrade procedure?
You want to upgrade a cluster with two members to VPN-1 NGX. The SmartCenter Server and both members are version VPN-1/FireWall-1 NG FP3, with the latest Hotfix.
What is the correct upgrade procedure?
1. Change the version, in the General Properties of the gateway-cluster object.
2. Upgrade the SmartCenter Server, and reboot after upgrade.
3. Run cpstop on one member, while leaving the other member running. Upgrade one member at a time,
and reboot after upgrade.
4. Reinstall the Security Policy.
what configuration change must be made?
To change an existing ClusterXL cluster object from Multicast to Unicast mode, what configuration change must be made?
Which of the following is a possible cause?
Robert has configured a Common Internet File System (CIFS) resource to allow access to the public partition of his company’s file server, on eriscogoldenapplefilespublic.
Robert receives reports that users are unable to access the shared partition, unless they use the file server’s IP address. Which of the following is a possible cause?
How do you configure the VPN Community?
You set up a mesh VPN Community, so your internal networks can access your partner’s network, and vice versa. Your Security Policy encrypts only FTP and HTTP traffic through a VPN tunnel. All other traffic among your internal and partner networks is sent in clear text.
How do you configure the VPN Community?
If you check the box “Use Aggressive Mode”, in the IKE Properties dialog box:
If you check the box "Use Aggressive Mode", in the IKE Properties dialog box: