Check Point Certified Security Expert (CCSE) R81 — Question 76

If a "ping"-packet is dropped by FW1 Policy – on how many inspection Points do you see this packet in "fw monitor"?

Answer options

Correct answer: A

Explanation

The correct answer is A because if the packet is dropped by the firewall policy, it will only be seen at the 'i' inspection point, which is where incoming packets are monitored. The other options imply visibility at additional points, which do not occur for dropped packets.