View Shopping Cart
Member Login
RedmondInstitute.com
Try Out Our Free Demo
 

PayPal—eBay's service to make fast, easy, and secure payments for your eBay purchases!
128-bit Encryption
Secure Transactions

Check Point® EXAMS

CCSA
156-210.4

Just Released!

 
On Sale!

$49

$29

Number of questions: 273
Explanations: Yes
Download: Yes


 

Below you will find general Information regarding the Check Point certifications exams provided by the Redmond Exams CCSA Pracitce Exam Author. This information is included as PDF with the Redmond Exams CCSA Practice Exam.

 

Introduction:
This product aims to provide a preparation guide for the CCSA NG (156-210.4) certification test. This introduction explains the Check Point certifications in general.

This product will assist you in preparing for CCSA NG certification exam and it is aimed strictly at test preparation and review. They do not teach you everything you need to know about a topic nor can it be used as an administration guide in its entirety for the Firewall-1. Instead it presents and dissects the questions and problems that you are likely to encounter in a test. We have worked with Check Point's own training materials, preparation guides, and tests. Our aim is to bring together as much information as possible about Check Point's CCSA certification exam.

CCSA certification is designed for partners, customers and professionals seeking to validate their knowledge of Check Point's Firewall-1 products. This certification confirms that an individual has passed the CCSA exam and demonstrated the knowledge required to configure and implement a standard Firewall-1 installation.

Certification exams are designed around standard testing procedures and cover skills needed to effectively implement and manage Check Point's products. Taking courses is the best way to prepare for these exams. Check Point Certified Professionals have exclusive access to the Certified Professional Only Resource Site (www.checkpoint.com/services/education/cpo/index.html) site, which provides access to transcripts, program logos, SecureKnowledge, and other relevant materials.

The prerequisites for taking CCSA NG course:
Check Point strongly suggests that you have the following knowledge base:
. General Knowledge of TCP/IP
. Working knowledge of Windows or Unix
. Working knowledge of network technology
. Working knowledge of the Internet


Description of Security certifications:

Check Point Certified Security Principles Associate - CCSPA
CCSPA is an entry-level certification that validates a students' proficiency in security fundamentals, concepts, and best practices.

To earn CCSPA certification, candidates must pass: Exam #156-110

Check Point Certified Security Administrator - CCSA
CCSA is a foundation level certification that validates a candidates ability to configure and manage fundamental implementations of Check Point's flagship product, FireWall-1, as an enterprise level Internet security solution to protect corporate networks.
To earn CCSA NG certification, candidates must pass: Exam #156-210.4

Check Point Certified Security Expert - CCSE NG
CCSE certification is recognized as the industry standard for Internet security certifications. CCSEs possess the knowledge and expertise to configure VPN-1/FireWall-1 as an Internet security solution and virtual private network (VPN) that securely connects corporate offices and remote workers, protecting information exchange and granting access to network resources.

To earn CCSE NG certification, candidates must pass: Exam #156-210.4 and Exam #156-310.4


Check Point Certified Security Expert Plus - CCSE Plus
CCSE Plus certification is an advanced certification built on CCSA and CCSE certifications that validates in depth technical expertise with Check Point's VPN-1/FireWall-1.
To earn CCSE Plus NG certification, candidates must pass: Exam #156-210.4, Exam #156-310.4 and Exam #156-510.4.

Management Certifications include:

Check Point Certified Managed Security Expert - CCMSE
This certification validates your expertise in implementing VPN-1/FireWall-1 as an enterprise security solution and deploying Provider-1 in a Network Operating Center environment as a centralized policy management solution.

As an advanced certification, CCMSE certification has both CCSA NG and CCSE NG certifications as prerequisites.

To earn CCSE Plus NG certification, candidates must pass: Exam #156-210.4, Exam #156-310.4 and Exam #156-810.4.

Check Point Certified Managed Security Expert Plus VSX - CCMSE Plus VSX
This certification validates your expertise in deploying VSX as an enterprise security solution. Security Administrators with a CCMSE Plus VSX certification are the premier experts for managed security services based on Check Point solutions.
As an advanced certification, CCMSE Plus VSX certification has CCSA NG, CCSE NG, and CCMSE NG certifications as prerequisites.
To earn CCSE Plus NG certification, candidates must pass: Exam #156-210.4, Exam #156-310.4, Exam #156-810.4 and Exam #156-811.4


To prepare for an Exam:
One of the most important keys to success on CCSA test is hand-on experience. Installing and configuring VPN-1 will stand you in a very good stead. Preparing for a CCSA test requires that you obtain and study the following materials:
. Classroom Training
Most of Check Point Authorized resellers offer training in Check Point product.

. The Check Point Security Courseware
The official student study guide is very helpful in preparing; however, its content is inadequate for preparation. Do not use the guide alone to prepare for CCSA test. Relying on the official study guide alone is not recommended as a prelude to CCSA exam success.

. Evaluation CDROM
You can obtain a copy of the NG evaluation CDROM from the Check Point authorized reseller. The CD includes lots of information that can be very useful for the test as a study guide.

. Third Party software
You can obtain exam preparatory guide in software form from www.RedmondExams.com. This company sells the practicing tests and they are available from their website mentioned above.

Register for Check Point Exams:
Check Point evaluates candidates using a computer-based testing service operated by the Virtual University Enterprises (VUE) testing centers. The Check Point exams are administered worldwide through VUE testing centers, and generally in the same town as a prospective candidate.

To sign up for a test, you must possess a valid credit, or contact either company for mailing instruction to send them a check (in the U.S). Only when payment is verified or check is cleared, can you actually registered for the test.

For United States and Canadian candidates, call VUE free on (877) 733-8378 (different for non-US candidates) to register, reschedule or cancel an exam. Candidates (all US and non-US alike) can also do this via the VUE web site on www.pearsonvue.com/checkpoint or through VUE testing centers.

Retesting:
You can retake the test for as many times as you like. The fee is different for non-US candidates.

Format of the tests:
CCSA NG exam are multiple-choice traditional type, which allows the candidates to review and revise their answers during the tests. Most multiple-choice questions have five possible responses. There is no partial credit for incorrectly marked questions. The exams do not come in adaptive format at all.


Native English speakers (Australia, UK, US, Canada, New Zealand, Ireland, South Africa) are given 90 minutes to complete exams. For all other candidates, the certification tests are 120 minutes long. The total number of points that can be achieved in an exam is 100. Candidates must earn at least 70 in an exam to pass.

All exams are closed book, and you will not be permitted to take anything with you into the testing area but you will be furnished with a blank sheet of paper and a pen.

The number of questions in CCSA exam is usually 98 and the duration or testing time is 90 minutes. Testing time is displayed in the corner of the testing screen along with the number of remaining questions. If time expires during an exam, the test terminates, and incomplete answers are counted as incorrect.

Typical test question are depicted below. The first is a multiple-choice question and the second is True/False type. You will get 20-40 question of True/False type. You will also get questions with graphics as shown in the last diagram below.


Multiple Choice types:

"Choose the correct answer" format where the candidate must select a single answer from a list of five choices. The diagram below shows a sample of this.


For the Client Authentication rule to work, you will have to place it above the Stealth Rule, so answer D is the right choice. You will therefore tick the round box to select your answer.

You will also get "Choose the three correct answers" format. In this case multiple answers must be provided. All the correct answers must be selected otherwise the question is considered incorrect.

Choices are presented in a check box format, allowing more than one answer to be selected.


Of all Authentication schemes, only RADIUS and TACACS require authentication servers. Answers B and E are correct. You will tick the boxes in B and E to answer the question correctly.

You will get "True/False format" as shown below:


The correct answer is True, so you will tick the square box close to True. If false, tick the square close to the False answer.

"Fill in the blank" format questions are less common in the CCSA exam.

The normal line of questioning tests a candidate's "book knowledge" and familiarity with the Firewall-1 products while 'real' scenarios add a level of complexity. Rather than just asking technical questions, they apply the candidate's knowledge to real-world situations.

"Scenarios" format consist of one or two paragraphs and an exhibit that describes a company's needs or network configuration. The description is followed by a series of questions and problems that challenges the candidate's ability to address the situation. The question below outlines a typical scenario format question.

CheckPoint NG is deployed in Client/Server manner. Enforcement Module and SmartCenter Server are located in different buildings. Severe flooding and UPS malfunctioning caused your Enforcement Module to reboot, and hurricane wrecked the building where your SmartCenter Server was .



Distributed Deployment - Enforcement Module and SmartCenter Server are deployed on different machines.

If your SmartCenter Server was defined as Master. Which of the following is true of the Enforcement Module, Security Policy and SmartCenter Server? Select the best three answers.

A. Once the Enforcement Module reboots, it will stop to enforce the Security policy
B. Once the Enforcement Module reboots, it will start to enforce the Security policy
irrespective of the situation of the SmartCenter Server
C . Once the Enforcement Module reboots, it will stop to enforce the Security policy
until the SmartCenter Server becomes available
D. Unavailability of the SmartCenter Server will not prevent the Enforcement Module
from enforcing the Security Policy
E. Enforcement Module can log locally if its Master is unavailable

The correct answers are B, D and E


Topics covered in the CCSA exam:
. Describe the purpose of a firewall
. Describe and compare firewall architecture
. Identify the different components of VPN-1/FireWall-1 NG
. Explain the function and operation of a Security Policy
. Demonstrate the creation of network objects and groups using the SmartDashboard
. Demonstrate the setup of anti-spoofing on the firewall
. Demonstrate the setup and operation of an active Security Policy
. Demonstrate how to hide and unhide rules, view hidden rules, define a rule mask, and apply a rule mask
. Show how to install and uninstall a Security Policy
. List the guidelines for improving VPN-1/FireWall-1 NG performance using a Security Policy
. Identify the three display modes of the SmartView Tracker
. Identify and define SmartView Status Icons
. Specify selection criteria and save log files
. Describe the steps needed to block an intruder
. List three blocking scope options and their uses
. Describe how block request is used
. Understand Application Intelligence technologies
. Understand active-defense technologies
. Configure VPN-1/FireWall-1 NG, to block common categories of attacks
. Enable SmartDefense global protection mechanisms
. Monitor the Security Policy with the SmartView Status
. Demonstrate how to implement authentication
. Demonstrate the process for creating users and groups
. Demonstrate the setup of authentication parameters
. Demonstrate how to implement User Authentication using various authentication schemes
. List types of services supported by VPN-1/FireWall-1 NG requiring username and password
. Demonstrate how to implement Client Authentication
. Demonstrate how to implement Session Authentication
. List the reasons and methods for Network Address Translation
. Demonstrate how to set up Static NAT
. Demonstrate how to set up Hide NAT
. Describe basic network configurations using NAT
. Describe the process of protecting your protected network with backups
. Install and upgrade the VPN-1/FireWall-1 NG software
. Describe the process of licensing VPN-1/FireWall-1 NG
. Describe how VPN-1/FireWall-1 NG licensing works

Strategy for handling CCSA exam:
. At the bottom or top of each question, you will find a checkbox that permits you to mark that question for a later visit. So mark all the questions you are not sure of, and concentrate on all the ones you are sure of. In fact you may find information in later questions that shed more light on earlier ones. Also information you read on later questions may jog your memory about VPN-1/Firewall-1 facts, figures, behavior that also will help with earlier questions.

. Watch out for bizarre or irregular or unfamiliar terminology, as this probably indicate a totally bogus answer.

. Try to decipher the question in your own words as your read. This should assist in picking the correct answer.

. Be sure that you read every word in the question. If you find yourself jumping ahead impatiently, try to go back and start over.

. Do not leave questions blank or unanswered at the end of your test period. You are better off guessing the answers than leaving these blank.

. If you return to a question after initial read through, re-read every word again. Sometimes seeing a question afresh after turning your attention elsewhere lets you see something you missed before.


After the Exam:
At the end of your exam, your test is immediately graded, and the results are displayed on the screen. A report is automatically printed at the administrator's desk for your files. The test score is electronically transmitted back to Check Point. According to VUE, your result is transmitted to Check Point within 24-72 hours.


 
Order Online Now
Member Login
Login Here
Listen to the Experts

"Redmond Exams Microsoft and Cisco practice tests are excellent prep tests. The students in my certification training courses only use Redmond Exams Practice Tests."
- Todd Lammle, author of over 30 award winning SYBEX study guides on the Cisco and Microsoft networking environments.

"Redmond Exams offers some of the best Microsoft and Cisco study tools available, and for the price, they are simply unbeatable!"
- James Chellis, author of over 20 best-selling MCSE Study Guides.

"The Redmond Exam was the best study tool for my time & money. I took the 2003 Server practice test, reviewed all of the answer choices & explanations thoroughly, then aced the test the next day. You can save a lot of time, money, & effort just like I did.
- Suzan Rupp, Senior Network Administrator, San Francisco, CA.
Become an Affiliate
 
 
Privacy Policy © 2001-2008 Redmond Exams

MCSE Practice Exams
| MCSE Demo Test | MCSE Sample Test Questions | Sybex MCSE Virtual Lab Kit
Sybex MCSA Virtual Lab Kit | Microsoft Certification Study Kits | CCNA Practice Tests | CCNA Demo Test | MCSE 2003 Exams
CCNA Sample Test Questions | FAQ | Test Pass Guarantee | Microsoft Certification Practice Tests | Cisco Certification Practice Tests
Partner Sites

    Website developed by WaveRider Design