exam questions

Exam 156-587 All Questions

View all questions & answers for the 156-587 exam

Exam 156-587 topic 1 question 21 discussion

Actual exam question from Checkpoint's 156-587
Question #: 21
Topic #: 1
[All 156-587 Questions]

You need to monitor traffic pre-inbound and before the VPN-module in a security gateway. How would you achieve this using fw monitor?

  • A. fw monitor -p all
  • B. fw monitor -pi -vpn
  • C. fw monitor -pi +vpn
  • D. fw monitor-pl +vpn
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
alumast
1 week, 4 days ago
Selected Answer: B
The correct answer is: B. fw monitor -pi -vpn The –pi means Pre-Inbound (in chain). The -vpn means - (minus sign) specifies before the given module (vpn).
upvoted 1 times
...
922f9b2
1 month ago
Selected Answer: B
Its actually B, because -vpn means BEFORE vpn occurs.
upvoted 1 times
...
keikei1228
1 month, 1 week ago
Selected Answer: C
The correct answer is: C. fw monitor -pi +vpn In Check Point, the fw monitor tool captures packets as they pass through various inspection points in the kernel. The common inspection points are: i – Pre-inbound (before Security Policy) I – Post-inbound (after Policy, before forwarding) o – Pre-outbound O – Post-outbound If you want to capture pre-inbound traffic before it enters the VPN module, you must: Include "-pi" to capture pre-inbound Include "+vpn" to capture before VPN decryption occurs
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...