VPN Terms Correct-- VPN Community - A named collection of VPN domains, each
protected by a VPN gateway
- VPN Trust Entities - Certificate Authorities such as the Checkpoint Internal Certificate
Authority (ICA) used for creating SIC trusted connections and generating internal certificates
- VPN Domain - A group of computers and networks connected to a VPN tunnel by one VPN
gateway that handles encryption and protects VPN members
SIC Encryption Standard Correct-AES128 above R71. R71 or below use 3DES
SecureXL Traffic Flow Modes Correct-- Slow Path - Packets and connections are inspected
by the firewall and are not processed by SecureXL
- Medium Path - Packets that require deeper inspection cannot use the accelerated path.
Firewall offloads these packets. For example IPS inspected packets are offloaded to the IPS
PSL (Passive Streaming Library). SecureXL processes these packets more quickly than the slow
path
, Exam- CCSA R80|Checkpoint CCSA Exam with Solutions
- Accelerated Path - Packets and connections offloaded to SecureXL and not processed by the
firewall
User Directory Correct-Used to obtain ID and security information about network users
AppWiki Correct-enables application scanning and detection of more than 5000 distinct
application and more than 300000 Web 2.0 widgets
Checkpoint Software Blades Correct-- Mobile Access -- Configure how remote users access
internal resources when mobile
- DLP - DLP in a SmartConsole - configure advanced tools to automatically identify data that
must not go outside the network
- Geo Policy - Create a policy for traffic to or from specific geopolitical or political locations
- HTTPS Policy - SSL Inspection (Configured in Smart Dashboard)