Pass4itsure > CheckPoint > Checkpoint Certifications > 156-215.81 > 156-215.81 Online Practice Questions and Answers

156-215.81 Online Practice Questions and Answers

Questions 4

A stateful inspection firewall works by registering connection data and compiling this information. Where is the information stored?

A. In the system SMEM memory pool.

B. In State tables.

C. In the Sessions table.

D. In a CSV file on the firewall hard drive located in $FWDIR/conf/.

Buy Now
Questions 5

Which of the following is an identity acquisition method that allows a Security Gateway to identify Active Directory users and computers?

A. Active Directory Query

B. User Directory Query

C. Account Unit Query

D. UserCheck

Buy Now
Questions 6

If the Active Security Management Server fails or if it becomes necessary to change the Active to Standby, the following steps must be taken to prevent data loss. Providing the Active Security Management Server is responsible, which of these steps should NOT be performed:

A. Rename the hostname of the Standby member to match exactly the hostname of the Active member.

B. Change the Standby Security Management Server to Active.

C. Change the Active Security Management Server to Standby.

D. Manually synchronize the Active and Standby Security Management Servers.

Buy Now
Questions 7

Identity Awareness allows easy configuration for network access and auditing based on what three items?

A. Client machine IP address.

B. Network location, the identity of a user and the identity of a machine.

C. Log server IP address.

D. Gateway proxy IP address.

Buy Now
Questions 8

Choose what BEST describes the reason why querying logs now is very fast.

A. New Smart-1 appliances double the physical memory install

B. Indexing Engine indexes logs for faster search results

C. SmartConsole now queries results directly from the Security Gateway

D. The amount of logs been store is less than the usual in older versions

Buy Now
Questions 9

Which tool is used to enable ClusterXL?

A. SmartUpdate

B. cpconfig

C. SmartConsole

D. sysconfig

Buy Now
Questions 10

What is true about the IPS-Blade?

A. in R80, IPS is managed by the Threat Prevention Policy

B. in R80, in the IPS Layer, the only three possible actions are Basic, Optimized and Strict

C. in R80, IPS Exceptions cannot be attached to "all rules"

D. in R80, the GeoPolicy Exceptions and the Threat Prevention Exceptions are the same

Buy Now
Questions 11

In HTTPS Inspection policy, what actions are available in the "Actions" column of a rule?

A. "Inspect", "Bypass"

B. "Inspect", "Bypass", "Categorize"

C. "Inspect", "Bypass", "Block"

D. "Detect", "Bypass"

Buy Now
Questions 12

When comparing Stateful Inspection and Packet Filtering, what is a benefit that Stateful Inspection offers over Packer Filtering?

A. Stateful Inspection offers unlimited connections because of virtual memory usage.

B. Stateful Inspection offers no benefits over Packet Filtering.

C. Stateful Inspection does not use memory to record the protocol used by the connection.

D. Only one rule is required for each connection.

Buy Now
Questions 13

When configuring Spoof Tracking, which tracking actions can an administrator select to be done when spoofed packets are detected?

A. Log, send snmp trap, email

B. Drop packet, alert, none

C. Log, alert, none

D. Log, allow packets, email

Buy Now
Exam Code: 156-215.81
Exam Name: Check Point Certified Security Administrator - R81 (CCSA)
Last Update:
Questions: 400
10%OFF Coupon Code: SAVE10

PDF (Q&A)

$49.99

VCE

$55.99

PDF + VCE

$65.99