Your primary Security Gateway runs on SecurePlatform. What is the easiest way to back up your Security
Gateway R76 configuration, including routing and network configuration files?
You need to back up the routing, interface, and DNS configuration information from your R76 GAiA Security
Gateway. Which backup-and-restore solution do you use?
You are running a R76 Security Gateway on SecurePlatform. In case of a hardware failure, you have a
server with the exact same hardware and firewall version installed. What back up method could be used to
quickly put the secondary firewall into production?
Before upgrading SecurePlatform, you should create a backup. To save time, many administrators use the
command backup. This creates a backup of the Check Point configuration as well as the system
configuration.
An administrator has installed the latest HFA on the system for fixing traffic problem after creating a backup
file. There is a mistake in the very complex static routing configuration. The Check Point configuration has
not been changed. Can the administrator use a restore to fix the errors in static routing?
You intend to upgrade a Check Point Gateway from R71 to R76. Prior to upgrading, you want to back up
the Gateway should there be any problems with the upgrade. Which of the following allows for the Gateway
configuration to be completely backed up into a manageable size in the least amount of time?
You want to establish a VPN, using certificates. Your VPN will exchange certificates with an external
partner. Which of the following activities should you do first?
Your company is still using traditional mode VPN configuration on all Gateways and policies. Your manager
now requires you to migrate to a simplified VPN policy to benefit from the new features. This needs to be
done with no downtime due to critical applications which must run constantly.
How would you start such a migration?
Your manager requires you to setup a VPN to a new business partner site. The administrator from the
partner site gives you his VPN settings and you notice that he setup AES 128 for IKE phase 1 and AES 256
for IKE phase 2. Why is this a problematic setup?