CCSA Flashcards

Pass the CheckPoint CCSA certification test

1
Q

What are the three main components in Check Point Security Architecture?

A
  • SmartConsole - GUI for connection to the mgmt section of the security mgmt servers
  • Security Management Server - Manages Security Gateways with defined security policies and monitors security events on the network.
  • Security Gateways - Which serve as entry points and cyber barriers to traffic.
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What can the SmartConsole interface provide for necessarey monitoring and and configurations?

4 main areas

A
  • Security Policy Management
  • Log Analysis
  • System Health Monitoring
  • Multi-Domain Security Management
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the 7 layers of the OSI model?

A

Application - 7
Presentation - 6
Session - 5
Transportation - 4
Network - 3
Data Link - 2
Physical - 1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are the 4 layers of the TCP/IP model?

A

Application - 4
Transport - 3
Internet - 2
Network interface - 1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which three technologies are used to deny or permit network traffic?

A
  • Packet Filtering
  • Stateful Inspection
  • Application Layer Firewall
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Which of the following is NOT an integral part of VPN communication within a network?

A. VPN key
B. VPN community
C. VPN trust entities
D. VPN domain

A

A

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Why are “State Tables” a key component in the Stateful Inspeciton?

A

They maintain the information needed to correctly inspect packetss.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the purpose of security gateways?

A

It prevents unathourized traffic from entering the companys network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Name 5 Check Point appliances

A
  • Small business and branch office appliances
  • Enterprise network security appliances
  • Data center security systems
  • Chassis systems
  • Rugged Appliances
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

True or False
Licensing can be transferred between old and new hardware.

A

True

Hardware must be supported by Check Point

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the three deployment options?

A
  • Standalone
  • Distributed
  • Bridge mode
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Explain “Standalone Deployment”

A

In a standalone deployment, the Security Management Server and Security Gateway are installed on the same computer or appliance.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Explain “Distributed Deployment”

A

In a distributed deployment, the Security Gateway and Security Management Server are installed on different computers or appliances.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Explain “Bridge Mode Deployment”

A

A bridge mode deployment adds a Security Gateway to an existing enviroment without changing IP routing.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is Gaia?

A

Check Point’s operating system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Name the two main shells for Check Point’s CLI

A

Clish and Expert

17
Q

What are the two default users in Gaia?

A

admin and monitor

18
Q

What are two main hardware options for deploying Check Point technology?

A

Check Point Appliance and Open Server

19
Q

What is a private package?

A

It’s a Hotfix, which is located on the Check Point Support Center, and is only available to limited audiences.

20
Q

What is Secure Internal Communication (SIC)

A

SIC is a certificate-based channel for communications between modules (CP components).

21
Q

What are the three status that SIC can display?

A
  • Communicating - Secure communication is established
  • Unknown - Gateway and Management Server have no connection
  • Not Communicating - Management Server can contact the Gateway but cannot establish SIC
22
Q

What is SmartConsole used for?

A

It’s a GUI that manage:
* Network Elements
* Servers
* Security Gateways

23
Q

What does SmartEvent do?

A

Correlates logs and detects real security threats

24
Q

What is the SmartConsole application called that displays a complete picture of network and security performance, letting you monitor changes to Gateways (FW), tunnels, remote users, and security activities?

A

SmartView Monitor

25
Q

When is a session created in SmartConsole?

A

Each time an administrator logs in

Changes are saved automatically

26
Q

What is a required action that an administrator have to do for making changes available to all administrators and user?

A

The administrator have to publish the session.

27
Q

Name one task that takes place on the Gateway & Servers tab.

A
  • Manage Security Gateways
  • Configure Gateway Blade Activation
  • View Gateway Status

One of these^

28
Q

Name the 2 components that the Check Point License consists of

A
  • Software Blade
  • Software Container
29
Q

What does the Software Blade enable?

A

Specific features or functionalities

Each software blad must be attached to a Software Container

30
Q

What does the Software container do?

A

It houses the Software Blades

31
Q

Name the three types of Software Containers

A
  • Security Management
  • Security Gateway
  • Endpoint Security
32
Q

How long is a Plug-and-Play license valid?

A

15 days

33
Q

What’s the difference between the two different license forms Central and Local?

A
  • Central ties the package license to the IP address och the Management Server and has no dependency on Gateway IP
  • Local license is tied to the IP address of a specific Security Gateway, it cannot be transferred to a Gateway with a different IP
34
Q

What are the three features of automatic licensing?

A
  • Checks periodically to verify licenses
  • Activates new licenses added to the repository
  • Automatically adds new blades to SmartConsole
35
Q
A