(156-210) Check Point - NG Management
SYNOPSIS • CCMSE • CCSA • CCSE Plus
It is designed for security professionals who “possess the requisite skills to define and configure security policies that enable secure access to information across corporate networks†and “have the ability to monitor network security activity and implement measures to block intruder access to networks.†There is no prerequisite for this exam; however, Check Point recommends that candidates have “at least 6 months to 1 year experience of the product on which you are seeking certification.â€
This exam costs $150 USD and may be taken from Pearson Vue. Version “156-210.4†of the exam is offered in English and is referred to as “NG with Application Intelligenceâ€, while version “156-210.3†of the exam is offered in Japanese and is referred to as “NG feature pack 3.â€
The pass score for this form-based multiple choice and scenario exam is 69%. There are 75 questions and the exam lasts 90 minutes for candidates from Australia, Bermuda, Canada, Japan, New Zealand, Ireland, South Africa, UK, and US. For all other candidates, the exam is 120 minutes long.
The topics covered by this exam include:
- Describe the purpose of a firewall
- Describe and compare firewall architecture
- Identify the different components of VPN-1/FireWall-1 NG
- Explain the function and operation of a Security Policy
- Demonstrate the creation of network objects and groups using the SMARTClient
- Demonstrate the setup of anti-spoofing on the firewall
- Demonstrate the setup and operation of an active Security Policy
- Demonstrate how to hide and unhide rules, view hidden rules, define a rule mask, and apply a rule mask
- Show how to install and uninstall a Security Policy
- List the guidelines for improving VPN-1/FireWall-1 NG performance using a Security Policy
- Identify the three display modes of the SmartView Tracker
- Identify and define SmartView Status Icons
- Specify selection criteria and save log files
- Describe the steps needed to block an intruder
- List three blocking scope options and their uses
- Describe how block request is used
- Understand Application Intelligence technologies
- Understand active-defense technologies
- Configure VPN-1/FireWall-1 NG, to block common categories of attacks
- Enable SmartDefense global protection mechanisms
- Monitor the Security Policy with the SmartView Status
- Demonstrate how to implement authentication
- Demonstrate the process for creating users and groups
- Demonstrate the setup of authentication parameters
- Demonstrate how to implement User Authentication using various authentication schemes
- List types of services supported by VPN-1/FireWall-1 NG requiring username and password
- Demonstrate how to implement Client Authentication
- Demonstrate how to implement Session Authentication
- List the reasons and methods for Network Address Translation
- Demonstrate how to set up Static NAT
- Demonstrate how to set up Hide NAT
- Describe basic network configurations using NAT
- Describe the process of protecting your protected network with backups
- Install and upgrade the VPN-1/FireWall-1 NG software
- Describe the process of licensing VPN-1/FireWall-1 NG
- Describe how VPN-1/FireWall-1 NG licensing works
http://www.checkpoint.com/services/education/certification/exams/156-210.html