Check Point Certified Security Expert (CCSE) R81 — Question 76
If a "ping"-packet is dropped by FW1 Policy – on how many inspection Points do you see this packet in "fw monitor"?
Answer options
- A. "i" only
- B. "i", "l" and "o"
- C. "i" and "l"
- D. I don't see it in fw monitor
Correct answer: A
Explanation
The correct answer is A because if the packet is dropped by the firewall policy, it will only be seen at the 'i' inspection point, which is where incoming packets are monitored. The other options imply visibility at additional points, which do not occur for dropped packets.