Summer Sale Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: xmas50

Checkpoint 156-590 - Check Point Certified Threat Prevention Specialist (CTPS)

Page: 1 / 3
Total 75 questions

You have been asked to inform your CEO about last week's security incident.

What SmartEvent mechanism are you going to use?

A.

You have to use Smart Event threat prevention View to get the information then extract it to csv format and then generate a pdf with this info.

B.

The executive reports generally contain abstract information without much technical detail. You have to use Smart Event Threat Prevention Report filtered for last week data.

C.

From the smart log you filter out traffic for last week and export it to a special report generate tool.

D.

You have to build a view for last week and submit it to your CEO.

At what point is the Anti-Bot blade enforced?

A.

Pre-infection

B.

Post-infection

C.

Pre-inspection

D.

Post-inspection

Which protection setting is generally the MOST resource intensive?

A.

Inactive

B.

Prevent

C.

Inspect

D.

Detect

What Track - Settings Forensics does not?

A.

When enabled, advanced forensics detailed information is included in logs.

B.

Check Point researchers use advanced forensics details for troubleshooting and attack analysis.

C.

Forensics details also include Security Gateway statistics, which are sent to the Check Point Cloud.

D.

Communicate forensics data collected to Government Agencies.

Which is NOT true of Threat Prevention policy application?

A.

Only applied after traffic is accepted by Access Control Policy

B.

Traffic is matched against all applicable layers at the same time

C.

Only applies first matched rule

D.

Applied as ordered layer

Which protection setting is generally the LEAST resource intensive?

A.

Prevent

B.

Inspect

C.

Detect

D.

Inactive

What is necessary to do in order for the IPS Core Protection to take effect?

A.

Nothing is to be done, since the Core Protection settings are immediately active.

B.

Install the Access Control Policy.

C.

Install the Threat Prevention Policy.

D.

Perform "Install Database" on the Management Server.

Using IPS can send a large part of traffic to F2F path.

Which command can you use to enforce traffic quotas?

A.

fw dos rate

B.

fwaccel rate

C.

fw ctl dos

D.

fwaccel dos rate

What does not belong to types of exceptions?

A.

IPS Settings Exceptions.

B.

QoS Policy exemptions.

C.

Core Activations Exceptions.

D.

Implied IPS Exceptions.

Protections with a High Protection Impact rating go through which path?

A.

PXL

B.

SXL

C.

CPASXL

D.

F2F