PrepAway - Latest Free Exam Questions & Answers

If you run fw monitor without any parameters, what does the output display?

If you run fw monitor without any parameters, what does the output display?

PrepAway - Latest Free Exam Questions & Answers

A.
In /var/adm/monitor. Out

B.
On the console

C.
In /tmp/log/monitor � out

D.
In / var/log/monitor. out

Explanation:
From user guide:
ExampleThe easiest way to usefw monitoris to invoke it without any parameter. This will output every packet from every interface that passes (or at least reaches) the Check Point gateway. Please note that the same packet is appearing several times (two times in the example below). This is caused byfw monitorcapturing the packets at different capture points.

Output
cpmodule]# fw monitor
monitor: getting filter (from command line)
monitor: compiling
monitorfilter:
Compiled OK.
monitor: loading
monitor: monitoring (control-C to stop)
eth0:i[285]: 172.16.1.133 -> 172.16.1.2 (TCP) len=285 id=1075 TCP: 1050 -> 18190 …PA. seq=bf8bc98e ack=941b05bc
eth0:I[285]: 172.16.1.133 -> 172.16.1.2 (TCP) len=285 id=1075 TCP: 1050 -> 18190 …PA. seq=bf8bc98e ack=941b05bc
eth0:o[197]: 172.16.1.2 -> 172.16.1.133 (TCP) len=197 id=44599 TCP: 18190 -> 1050 …PA. seq=941b05bc ack=bf8bca83
eth0:O[197]: 172.16.1.2 -> 172.16.1.133 (TCP) len=197 id=44599 TCP: 18190 -> 1050 …PA. seq=941b05bc ack=bf8bca83
eth0:o[1500]: 172.16.1.2 -> 172.16.1.133 (TCP) len=1500 id=44600 TCP
^C
18190 -> 1050 ….A. seq=941b0659 ack=bf8bca83
monitor: caught sig 2
monitor: unloading


Leave a Reply