ExamGecko
Home / Checkpoint / 156-215.81 / List of questions
Ask Question

Checkpoint 156-215.81 Practice Test - Questions Answers, Page 2

List of questions

Question 11

Report Export Collapse

Which Check Point software blade provides Application Security and identity control?

Identity Awareness
Identity Awareness
Data Loss Prevention
Data Loss Prevention
URL Filtering
URL Filtering
Application Control
Application Control
Suggested answer: D
Explanation:

The Check Point software blade that provides Application Security and identity control is Application Control3.Application Control enables network administrators to identify, allow, block, or limit usage of thousands of applications and millions of websites3. Therefore, the correct answer is D.Application Control

asked 16/09/2024
55 Cantera Ct. Johnson
44 questions

Question 12

Report Export Collapse

How are the backups stored in Check Point appliances?

Saved as*.tar under /var/log/CPbackup/backups
Saved as*.tar under /var/log/CPbackup/backups
Saved as*tgz under /var/CPbackup
Saved as*tgz under /var/CPbackup
Saved as*tar under /var/CPbackup
Saved as*tar under /var/CPbackup
Saved as*tgz under /var/log/CPbackup/backups
Saved as*tgz under /var/log/CPbackup/backups
Suggested answer: B
Explanation:

The backups are stored in Check Point appliances as *.tgz files under /var/CPbackup. This is the default location for backup files created by the backup command. Therefore, the correct answer is B. Saved as *.tgz under /var/CPbackup

asked 16/09/2024
George Sanchez
44 questions

Question 13

Report Export Collapse

You are going to perform a major upgrade. Which back up solution should you use to ensure your database can be restored on that device?

backup
backup
logswitch
logswitch
Database Revision
Database Revision
snapshot
snapshot
Suggested answer: D
Explanation:

The back up solution that should be used to ensure your database can be restored on that device is snapshot . A snapshot creates a binary image of the entire root (lv_current) disk partition. This includes Check Point products, configuration, and operating system. A snapshot can be used to restore a Security Gateway or Security Management Server to its previous state at any time . Therefore, the correct answer is D. snapshot.

asked 16/09/2024
Mustafa BeΓ…ΕΈparmak
40 questions

Question 14

Report Export Collapse

Fill in the blank: The position of an implied rule is manipulated in the __________________ window.

NAT
NAT
Firewall
Firewall
Global Properties
Global Properties
Object Explorer
Object Explorer
Suggested answer: C
Explanation:

The position of an implied rule is manipulated in the Global Properties window. Implied rules are predefined rules that are not displayed in the rule base. They allow or block traffic for essential services such as communication with Check Point servers, logging, and VPN traffic.The position of an implied rule can be changed in the Global Properties > Firewall > Implied Rules section56.

Reference:How to view Implied Rules in R80.x / R81.x SmartConsole,Implied Rules

asked 16/09/2024
DANNY GARCIA
41 questions

Question 15

Report Export Collapse

How can the changes made by an administrator before publishing the session be seen by a superuser administrator?

By impersonating the administrator with the 'Login as...' option
By impersonating the administrator with the 'Login as...' option
They cannot be seen
They cannot be seen
From the SmartView Tracker audit log
From the SmartView Tracker audit log
From Manage and Settings > Sessions, right click on the session and click 'View Changes...'
From Manage and Settings > Sessions, right click on the session and click 'View Changes...'
Suggested answer: D
Explanation:

The changes made by an administrator before publishing the session can be seen by a superuser administrator from Manage and Settings > Sessions, right click on the session and click 'View Changes...'.This option allows the superuser to review the changes made by another administrator in a pending session1.

Reference:Check Point R81 Security Management Administration Guide

asked 16/09/2024
George Mabry
52 questions

Question 16

Report Export Collapse

Which Check Point software blade monitors Check Point devices and provides a picture of network and security performance?

Application Control
Application Control
Threat Emulation
Threat Emulation
Logging and Status
Logging and Status
Monitoring
Monitoring
Suggested answer: D
Explanation:

The Check Point software blade that monitors Check Point devices and provides a picture of network and security performance is Monitoring. The Monitoring Software Blade presents a complete picture of network and security performance, enabling fast responses to changes in traffic patterns or security events.It centrally monitors Check Point devices and alerts security administrators to changes to gateways, endpoints, tunnels, remote users and security activities234.

Reference:Monitoring Software Blade,Check Point Integrated Security Architecture,Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services

asked 16/09/2024
Soli Rash
37 questions

Question 17

Report Export Collapse

Your internal networks 10.1.1.0/24, 10.2.2.0/24 and 192.168.0.0/16 are behind the Internet Security Gateway. Considering that Layer 2 and Layer 3 setup is correct, what are the steps you will need to do in SmartConsole in order to get the connection working?

1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish and install the policy.
1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish and install the policy.
1. Define an accept rule in Security Policy.2. Define automatic NAT for each network to NAT the networks behind a public IP.3. Publish the policy.
1. Define an accept rule in Security Policy.2. Define automatic NAT for each network to NAT the networks behind a public IP.3. Publish the policy.
1. Define an accept rule in Security Policy.2. Define automatic NAT for each network to NAT the networks behind a public IP.3. Publish and install the policy.
1. Define an accept rule in Security Policy.2. Define automatic NAT for each network to NAT the networks behind a public IP.3. Publish and install the policy.
1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish the policy.
1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish the policy.
Suggested answer: C
Explanation:

The steps you will need to do in SmartConsole in order to get the connection working behind the Internet Security Gateway are:

Define an accept rule in Security Policy. This rule allows the traffic from your internal networks to pass through the Security Gateway.

Define automatic NAT for each network to NAT the networks behind a public IP. This option translates the private IP addresses of your internal networks to a public IP address assigned by your ISP router. This way, your internal networks can communicate with the Internet using a valid IP address.

Publish and install the policy. This step applies the changes you made to the Security Gateway and activates the security and NAT rules.

asked 16/09/2024
Paramdeep Saini
44 questions

Question 18

Report Export Collapse

True or False: The destination server for Security Gateway logs depends on a Security Management Server configuration.

False, log servers are configured on the Log Server General Properties
False, log servers are configured on the Log Server General Properties
True, all Security Gateways will only forward logs with a SmartCenter Server configuration
True, all Security Gateways will only forward logs with a SmartCenter Server configuration
True, all Security Gateways forward logs automatically to the Security Management Server
True, all Security Gateways forward logs automatically to the Security Management Server
False, log servers are enabled on the Security Gateway General Properties
False, log servers are enabled on the Security Gateway General Properties
Suggested answer: B
Explanation:

The destination server for Security Gateway logs depends on a Security Management Server configuration. This is true because the Security Management Server defines the log servers that receive logs from the Security Gateways.The log servers can be either the Security Management Server itself or a dedicated Log Server12.

Reference:Check Point R81 Logging and Monitoring Administration Guide,Check Point R81 Quantum Security Gateway Guide

asked 16/09/2024
Carsten Recker
32 questions

Question 19

Report Export Collapse

Consider the Global Properties following settings:

Checkpoint 156-215.81 image Question 19 11026 09162024015504000000

The selected option ''Accept Domain Name over UDP (Queries)'' means:

UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy.
UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy.
All UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
All UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
No UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
No UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
All UDP Queries will be accepted by the traffic allowed by first explicit rule written by Administrator in a Security Policy.
All UDP Queries will be accepted by the traffic allowed by first explicit rule written by Administrator in a Security Policy.
Suggested answer: A
Explanation:

The selected option ''Accept Domain Name over UDP (Queries)'' means that UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy. This option enables the Security Gateway to accept DNS queries from external hosts and forward them to internal DNS servers. The queries are accepted by an implied rule that is applied before the explicit rules in the Security Policy. The implied rule only allows queries from interfaces that have external anti-spoofing groups defined .

Reference: Check Point R81 Quantum Security Gateway Guide, Implied Rules

asked 16/09/2024
carlos miyares
30 questions

Question 20

Report Export Collapse

How is communication between different Check Point components secured in R80? As with all questions, select the best answer.

By using IPSEC
By using IPSEC
By using SIC
By using SIC
By using ICA
By using ICA
By using 3DES
By using 3DES
Suggested answer: B
Explanation:

The communication between different Check Point components is secured in R80 by using SIC. SIC stands for Secure Internal Communication and it is a mechanism that ensures the authenticity and confidentiality of communication between Check Point components, such as Security Gateways, Security Management Servers, Log Servers, etc.SIC uses certificates issued by the Internal CA (ICA) and encryption algorithms such as AES-25634.

Reference:Check Point R81 Quantum Security Gateway Guide,Check Point R81 Quantum Security Management Administration Guide

asked 16/09/2024
Linda Müller
44 questions
Total 401 questions
Go to page: of 41