CheckPoint 156-915 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| NGX Architecture & Deployment | 20% | - Upgrade from NG with AI R55 - VPN-1 NGX components - Distributed deployment - SecurePlatform & Windows installation |
| VPN & Remote Access | 20% | - LDAP integration & authentication - Certificate-based authentication - Remote Access VPN - Site-to-site VPN tunnels |
| Monitoring & Troubleshooting | 20% | - Common issues resolution - SmartView Tracker logging - Traffic monitoring & analysis - Command-line administration |
| Security Policy Management | 25% | - NAT configuration - Object management - Policy installation & verification - Rule base configuration |
| High Availability & Performance | 15% | - SecureXL acceleration - Backup & restore procedures - ClusterXL configuration - SmartUpdate & upgrades |
CheckPoint Accelerated CCSE NGX (156-915.1) Sample Questions:
Question #1
The following diagram illustrates how a VPN-1 SecurieClient user tries to establish a VPN with hosts in the external_net and internal_net from the Internal. How is the Security Gateway VPN Domain created?
A. Internal Gateway VPN Domain = internal_net;
External Gateway VPN Domain = internal VPN Domain + internal gateway object + external_net
B. Internal Gateway VPN Domain = internal_net;
External Gateway VPN Domain = internal_net + external_net
C. Internal Gateway VPN Domain = internal_net;
External Gateway VPN Domain = external_net + internal gateway object
D. Internal Gateway VPN Domain = internal_net;
External VPN Domain = external net + external gateway object + internal_net
Question #2
Which command allows you to view the contents of an NGX table?
A. fw tab -t <tablename>
B. fw tab -x <tablename>
C. fw tab -u <tablename>
D. fw tab -a <tablename>
E. fw tab -s <tablename>
Question #3
How does a standby SmartCenter Server receive logs from all Security Gateways, when an active SmartCenter Server fails over?
A. The remote Gateways must set up SIC with the secondary SmartCenter Server, for logging.
B. Create a Check Point host object to represent the standby SmartCenter Server. Then select "Secondary SmartCenter Server" and Log Server", from the list of Check Point Products on the General properties screen.
C. On the Log Servers screen (from the Logs and Masters tree on the gateway object's General Properties screen), add the secondary SmartCenter Server object as the additional log server. Reinstall the Securtiy Policy.
D. The secondary Server's host name and IP address must be added to the Masters file, on the remote Gateways.
E. Establish Secure Internal Communications (SIC) between the primary and secondary Servers. The secondary Server can then receive logs from the Gateways, when the active Server fails over.
Question #4
You want upgrade a SecurePlatform NG with Application Intelligence (AI) R55 Gateway to SecurePlatform NGX R60 via SmartUpdate. Which package is needed in the repository before upgrading?
A. SVN Foundation
B. VPN-1 Pro/Express NGX R60
C. SecurePlatform NGX R60
D. SVN Foundation and VPN-1 Express/Pro
E. VPN-1 and FireWall-1
Question #5
You want to establish a VPN, using Certificates. Your VPN will exchange Certificates with an external partner.
Which of the following activities should you do first?
A. Exchange exported CA keys and use them to create a new server object, to represent your partner's Certificate Authority (CA)
B. Create a new logical-server object, to represent your partner's CA
C. Exchange a shared secret, before importing Certificates.
D. Manually import your partner's Access Control List.
E. Manually import your partner's Certificate Revocation List
Solutions:
| Question #1 Answer: A | Question #2 Answer: A | Question #3 Answer: C | Question #4 Answer: C | Question #5 Answer: A |














854 Customer Reviews
Quality and ValueITCertKing Practice Exams are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development - no all study materials.
Tested and ApprovedWe are committed to the process of vendor and third party approvals. We believe professionals and executives alike deserve the confidence of quality coverage these authorizations provide.
Easy to PassIf you prepare for the exams using our ITCertKing testing engine, It is easy to succeed for all certifications in the first attempt. You don't have to deal with all dumps or any free torrent / rapidshare all stuff.
Try Before BuyITCertKing offers free demo of each product. You can check out the interface, question quality and usability of our practice exams before you decide to buy.
