ExamGecko
Home Home / Checkpoint / 156-315.81

Checkpoint 156-315.81 Practice Test - Questions Answers, Page 44

Question list
Search
Search

CoreXL is NOT supported when one of the following features is enabled: (Choose three)

A.
Route-based VPN
A.
Route-based VPN
Answers
B.
IPS
B.
IPS
Answers
C.
IPv6
C.
IPv6
Answers
D.
Overlapping NAT
D.
Overlapping NAT
Answers
Suggested answer: A, C, D

Explanation:

CoreXL is not supported when one of the following features is enabled: Check Point QoS (Quality of Service), Route-based VPN, IPv6 on IPSO, or Overlapping NAT. CoreXL is a performance-enhancing technology that allows multiple CPU cores to concurrently handle network traffic. IPS is supported by CoreXL and can benefit from its acceleration.

Reference: : Check Point Software, Getting Started, CoreXL; : Check Point Software, Getting Started, IPS.

Which is the correct order of a log flow processed by SmartEvent components?

A.
Firewall > Correlation Unit > Log Server > SmartEvent Server Database > SmartEvent Client
A.
Firewall > Correlation Unit > Log Server > SmartEvent Server Database > SmartEvent Client
Answers
B.
Firewall > SmartEvent Server Database > Correlation Unit > Log Server > SmartEvent Client
B.
Firewall > SmartEvent Server Database > Correlation Unit > Log Server > SmartEvent Client
Answers
C.
Firewall > Log Server > SmartEvent Server Database > Correlation Unit > SmartEvent Client
C.
Firewall > Log Server > SmartEvent Server Database > Correlation Unit > SmartEvent Client
Answers
D.
Firewall > Log Server > Correlation Unit > SmartEvent Server Database > SmartEvent Client
D.
Firewall > Log Server > Correlation Unit > SmartEvent Server Database > SmartEvent Client
Answers
Suggested answer: D

Explanation:

The correct order of a log flow processed by SmartEvent components is: Firewall > Log Server > Correlation Unit > SmartEvent Server Database > SmartEvent Client. The Firewall generates logs for traffic and security events. The Log Server receives and stores the logs from the Firewall. The Correlation Unit analyzes the logs and generates SmartEvent events based on predefined or custom rules. The SmartEvent Server Database stores the events generated by the Correlation Unit. The SmartEvent Client displays the events and reports from the SmartEvent Server Database.

Reference: : Check Point Resource Library, Certified Security Expert (CCSE) R81.20 Course Overview, page 12; : Check Point Software, Training & Certification, SmartEvent Introduction.

Choose the correct syntax to add a new host named ''emailserver1'' with IP address 10.50.23.90 using GAiA Management CLI?

A.
mgmt_cli add host name ''myHost12 ip'' address 10.50.23.90
A.
mgmt_cli add host name ''myHost12 ip'' address 10.50.23.90
Answers
B.
mgmt_cli add host name ip-address 10.50.23.90
B.
mgmt_cli add host name ip-address 10.50.23.90
Answers
C.
mgmt_cli add host ''emailserver1'' address 10.50.23.90
C.
mgmt_cli add host ''emailserver1'' address 10.50.23.90
Answers
D.
mgmt_cli add host name ''emailserver1'' ip-address 10.50.23.90
D.
mgmt_cli add host name ''emailserver1'' ip-address 10.50.23.90
Answers
Suggested answer: D

Explanation:

The correct syntax to add a new host named ''emailserver1'' with IP address 10.50.23.90 using GAiA Management CLI ismgmt_cli add host name 'emailserver1' ip-address 10.50.23.90. The name and ip-address parameters are required and must be enclosed in double quotes.The other options are missing the double quotes or have incorrect parameter names1.

Reference:1: Check Point Software, Getting Started, Adding a Host.

The back-end database for Check Point R81 Management uses:

A.
DBMS
A.
DBMS
Answers
B.
MongoDB
B.
MongoDB
Answers
C.
PostgreSQL
C.
PostgreSQL
Answers
D.
MySQL
D.
MySQL
Answers
Suggested answer: C

Explanation:

The back end database for Check Point R81 Management uses PostgreSQL, which is an open source relational database management system2.MongoDB, MySQL, and DBMS are not used by Check Point R81 Management.

Reference:2: Check Point Software, Getting Started, Database.

By default how often updates are checked when the CPUSE Software Updates Policy is set to Automatic?

A.
Six times per day
A.
Six times per day
Answers
B.
Seven times per day
B.
Seven times per day
Answers
C.
Every two hours
C.
Every two hours
Answers
D.
Every three hours
D.
Every three hours
Answers
Suggested answer: D

Explanation:

By default, when the CPUSE Software Updates Policy is set to Automatic, updates are checked every three hours3. This means that the CPUSE agent will automatically download and install updates that match the policy settings every three hours.The other options are not the default values for the CPUSE Software Updates Policy.

Reference:3: Check Point Software, Getting Started, CPUSE Software Updates Policy.

By default, the R81 web API uses which content-type in its response?

A.
Java Script
A.
Java Script
Answers
B.
XML
B.
XML
Answers
C.
Text
C.
Text
Answers
D.
JSON
D.
JSON
Answers
Suggested answer: D

Explanation:

By default, the R81 web API uses JSON as the content-type in its response. JSON stands for JavaScript Object Notation and is a lightweight data-interchange format that is easy to read and write. XML, Java Script, and Text are not the default content-types for the R81 web API.

Reference: : Check Point Software, Getting Started, Web API; : JSON.org, Introducing JSON.

What is the best sync method in the ClusterXL deployment?

A.
Use 1 cluster + 1st sync
A.
Use 1 cluster + 1st sync
Answers
B.
Use 1 dedicated sync interface
B.
Use 1 dedicated sync interface
Answers
C.
Use 3 clusters + 1st sync + 2nd sync + 3rd sync
C.
Use 3 clusters + 1st sync + 2nd sync + 3rd sync
Answers
D.
Use 2 clusters +1st sync + 2nd sync
D.
Use 2 clusters +1st sync + 2nd sync
Answers
Suggested answer: B

Explanation:

The best sync method in the ClusterXL deployment is to use one dedicated sync interface. This means that one interface on each cluster member is used exclusively for synchronization traffic, which improves performance and security. Using multiple clusters or sync interfaces is not recommended, as it can cause network congestion or synchronization issues.

Reference: : Check Point Resource Library, Certified Security Expert (CCSE) R81.20 Course Overview, page 8.

Kurt is planning to upgrade his Security Management Server to R81.X. What is the lowest supported version of the Security Management he can upgrade from?

A.
R76 Splat
A.
R76 Splat
Answers
B.
R77.X Gaia
B.
R77.X Gaia
Answers
C.
R75 Splat
C.
R75 Splat
Answers
D.
R75 Gaia
D.
R75 Gaia
Answers
Suggested answer: D

Explanation:

The lowest supported version of the Security Management that can be upgraded to R81.X is R75 Gaia. This means that the Security Management Server must be running on the Gaia Operating System and have a version of R75 or higher.R76 Splat, R77.X Gaia, and R75 Splat are not supported for upgrading to R81.X1.

Reference:1: Check Point Software, Getting Started, Supported Upgrade Paths.

Which process is used mainly for backward compatibility of gateways in R81.X? It provides communication with GUI-client, database manipulation, policy compilation and Management HA synchronization.

A.
cpm
A.
cpm
Answers
B.
fwd
B.
fwd
Answers
C.
cpd
C.
cpd
Answers
D.
fwm D18912E1457D5D1DDCBD40AB3BF70D5D
D.
fwm D18912E1457D5D1DDCBD40AB3BF70D5D
Answers
Suggested answer: D

Explanation:

The process that is used mainly for backward compatibility of gateways in R81.X is fwm. The fwm daemon handles communication with GUI-client, database manipulation, policy compilation and Management HA synchronization for legacy gateways that do not support the cpm daemon. The cpm daemon is the new Check Point Management Server daemon that handles these tasks for R80 and higher gateways. The cpd daemon is the Check Point Management daemon that handles communication between SmartConsole applications and Security Management Servers.The fwd daemon is the Firewall Daemon that handles communication between Security Gateways and Security Management Servers2.

Reference:2: Check Point Software, Getting Started, Processes.

What CLI utility runs connectivity tests from a Security Gateway to an AD domain controller?

A.
test_connectivity_ad --d <domain>
A.
test_connectivity_ad --d <domain>
Answers
B.
test_ldap_connectivity --d <domain>
B.
test_ldap_connectivity --d <domain>
Answers
C.
test_ad_connectivity --d <domain>
C.
test_ad_connectivity --d <domain>
Answers
D.
ad_connectivity_test --d <domain>
D.
ad_connectivity_test --d <domain>
Answers
Suggested answer: C

Explanation:

The CLI utility that runs connectivity tests from a Security Gateway to an AD domain controller istest_ad_connectivity -d <domain>. This command tests the connectivity between the gateway and the domain controller using LDAP, Kerberos, and WMI protocols.It also verifies the identity awareness configuration and shows the relevant logs3.The other options are not valid commands for testing AD connectivity.

Reference:3: Check Point Software, Getting Started, Testing Active Directory Connectivity.

Total 626 questions
Go to page: of 63