ExamGecko
Home / Checkpoint / 156-215.81 / List of questions
Ask Question

Checkpoint 156-215.81 Practice Test - Questions Answers, Page 5

List of questions

Question 41

Report Export Collapse

Which firewall daemon is responsible for the FW CLI commands?

fwd
fwd
fwm
fwm
cpm
cpm
cpd
cpd
Suggested answer: A
Explanation:

The correct answer is A because the fwd daemon is responsible for the FW CLI commands3. The fwm daemon handles the communication between the Security Management server and the GUI clients. The cpm daemon handles the communication between the Security Management server and SmartConsole. The cpd daemon monitors the status of critical processes on the Security Gateway.

Reference:Check Point Firewall Processes and Daemons

asked 16/09/2024
Manuel Ortega
48 questions

Question 42

Report Export Collapse

If the Active Security Management Server fails or if it becomes necessary to change the Active to Standby, the following steps must be taken to prevent data loss. Providing the Active Security Management Server is responsible, which of these steps should NOT be performed:

Rename the hostname of the Standby member to match exactly the hostname of the Active member.
Rename the hostname of the Standby member to match exactly the hostname of the Active member.
Change the Standby Security Management Server to Active.
Change the Standby Security Management Server to Active.
Change the Active Security Management Server to Standby.
Change the Active Security Management Server to Standby.
Manually synchronize the Active and Standby Security Management Servers.
Manually synchronize the Active and Standby Security Management Servers.
Suggested answer: A
Explanation:

The correct answer is A because renaming the hostname of the Standby member to match exactly the hostname of the Active member is not a recommended step to prevent data loss.The hostname of the Standby member should be different from the hostname of the Active member1.The other steps are necessary to ensure a smooth failover and synchronization between the Active and Standby Security Management Servers2.

Reference:Check Point R81.20 Administration Guide,156-315.81 Checkpoint Exam Info and Free Practice Test

asked 16/09/2024
Andre Passos
44 questions

Question 43

Report Export Collapse

Using R80 Smart Console, what does a ''pencil icon'' in a rule mean?

I have changed this rule
I have changed this rule
Someone else has changed this rule
Someone else has changed this rule
This rule is managed by check point's SOC
This rule is managed by check point's SOC
This rule can't be changed as it's an implied rule
This rule can't be changed as it's an implied rule
Suggested answer: A
Explanation:

The correct answer is A because a pencil icon in a rule means that you have changed this rule3. The pencil icon indicates that the rule has been modified but not published yet.You can hover over the pencil icon to see who made the change and when3. The other options are not related to the pencil icon.

Reference:Check Point Learning and Training Frequently Asked Questions (FAQs)

asked 16/09/2024
AHMED MAHMOUD NASR Hassan
38 questions

Question 44

Report Export Collapse

Which method below is NOT one of the ways to communicate using the Management API's?

Typing API commands using the ''mgmt_cli'' command
Typing API commands using the ''mgmt_cli'' command
Typing API commands from a dialog box inside the SmartConsole GUI application
Typing API commands from a dialog box inside the SmartConsole GUI application
Typing API commands using Gaia's secure shell (clash)19+
Typing API commands using Gaia's secure shell (clash)19+
Sending API commands over an http connection using web-services
Sending API commands over an http connection using web-services
Suggested answer: D
Explanation:

The correct answer is D because sending API commands over an http connection using web-services is not one of the ways to communicate using the Management API's3.The Management API's support HTTPS protocol only, not HTTP3.The other methods are valid ways to communicate using the Management API's3.

Reference:Check Point Learning and Training Frequently Asked Questions (FAQs)

asked 16/09/2024
ftere yagoglu
35 questions

Question 45

Report Export Collapse

Session unique identifiers are passed to the web api using which http header option?

X-chkp-sid
X-chkp-sid
Accept-Charset
Accept-Charset
Proxy-Authorization
Proxy-Authorization
Application
Application
Suggested answer: A
Explanation:

The correct answer is A because session unique identifiers are passed to the web api using the X-chkp-sid http header option1.The X-chkp-sid header is used to authenticate and authorize API calls1. The other options are not related to session unique identifiers.

Reference:Check Point R81 Security Management Administration Guide

asked 16/09/2024
Roberto Recine
52 questions

Question 46

Report Export Collapse

What is the main difference between Threat Extraction and Threat Emulation?

Threat Emulation never delivers a file and takes more than 3 minutes to complete
Threat Emulation never delivers a file and takes more than 3 minutes to complete
Threat Extraction always delivers a file and takes less than a second to complete
Threat Extraction always delivers a file and takes less than a second to complete
Threat Emulation never delivers a file that takes less than a second to complete
Threat Emulation never delivers a file that takes less than a second to complete
Threat Extraction never delivers a file and takes more than 3 minutes to complete
Threat Extraction never delivers a file and takes more than 3 minutes to complete
Suggested answer: B
Explanation:

The correct answer is B because Threat Extraction always delivers a file and takes less than a second to complete2.Threat Extraction removes exploitable content from files and delivers a clean and safe file to the user2.Threat Emulation analyzes files in a sandbox environment and delivers a verdict of malicious or benign2.Threat Emulation can take more than 3 minutes to complete depending on the file size and complexity2.

Reference:Check Point R81 Threat Prevention Administration Guide

asked 16/09/2024
Robert Andrade
54 questions

Question 47

Report Export Collapse

Which one of these features is NOT associated with the Check Point URL Filtering and Application Control Blade?

Detects and blocks malware by correlating multiple detection engines before users are affected.
Detects and blocks malware by correlating multiple detection engines before users are affected.
Configure rules to limit the available network bandwidth for specified users or groups.
Configure rules to limit the available network bandwidth for specified users or groups.
Use UserCheck to help users understand that certain websites are against the company's security policy.
Use UserCheck to help users understand that certain websites are against the company's security policy.
Make rules to allow or block applications and Internet sites for individual applications, categories, and risk levels.
Make rules to allow or block applications and Internet sites for individual applications, categories, and risk levels.
Suggested answer: A
Explanation:

The correct answer is A because detecting and blocking malware by correlating multiple detection engines before users are affected is not a feature of the Check Point URL Filtering and Application Control Blade3.This feature is part of the Check Point Anti-Virus and Anti-Bot Blades3.The other options are features of the Check Point URL Filtering and Application Control Blade3.

Reference:Check Point R81 URL Filtering and Application Control Administration Guide

asked 16/09/2024
Lawrence Acherman
48 questions

Question 48

Report Export Collapse

You want to store the GAiA configuration in a file for later reference. What command should you use?

write mem <filename>
write mem <filename>
show config -f <filename>
show config -f <filename>
save config -o <filename>
save config -o <filename>
save configuration <filename>
save configuration <filename>
Suggested answer: D
Explanation:

The correct answer is D because the commandsave configuration <filename>stores the Gaia configuration in a file for later reference1.The other commands are not valid in Gaia Clish1.

Reference:Gaia R81.10 Administration Guide

asked 16/09/2024
Timothy Luisterburg
36 questions

Question 49

Report Export Collapse

Traffic from source 192.168.1.1 is going to www.google.com. The Application Control Blade on the gateway is inspecting the traffic. Assuming acceleration is enable which path is handling the traffic?

Slow Path
Slow Path
Medium Path
Medium Path
Fast Path
Fast Path
Accelerated Path
Accelerated Path
Suggested answer: A
Explanation:

The correct answer is A because the traffic from source 192.168.1.1 to www.google.com is handled by the Slow Path if the Application Control Blade on the gateway is inspecting the traffic2.The Slow Path is used when traffic requires inspection by one or more Software Blades2.The other paths are used for different scenarios2.

Reference:Check Point R81 Performance Tuning Administration Guide

asked 16/09/2024
Sukhpal Singh
38 questions

Question 50

Report Export Collapse

From SecureXL perspective, what are the tree paths of traffic flow:

Initial Path; Medium Path; Accelerated Path
Initial Path; Medium Path; Accelerated Path
Layer Path; Blade Path; Rule Path
Layer Path; Blade Path; Rule Path
Firewall Path; Accept Path; Drop Path
Firewall Path; Accept Path; Drop Path
Firewall Path; Accelerated Path; Medium Path
Firewall Path; Accelerated Path; Medium Path
Suggested answer: D
Explanation:

The correct answer is D because from SecureXL perspective, the three paths of traffic flow are Firewall Path, Accelerated Path, and Medium Path3.The Firewall Path is used when SecureXL is disabled or traffic is not eligible for acceleration3.The Accelerated Path is used when SecureXL handles the entire connection and bypasses the Firewall kernel3.The Medium Path is used when SecureXL handles part of the connection and forwards packets to the Firewall kernel for further inspection3.The other options are not valid paths of traffic flow from SecureXL perspective3.

Reference:Check Point R81 Performance Tuning Administration Guide

asked 16/09/2024
Richard Villanueva
39 questions
Total 401 questions
Go to page: of 41