Dumps of 156-215.81 Cover all the requirements of the Real Exam [Q84-Q101]

Share

Dumps of 156-215.81 Cover all the requirements of the Real Exam

Correct Practice Tests of 156-215.81 Dumps with Practice Exam

NEW QUESTION # 84
Consider the Global Properties following settings:

The selected option "Accept Domain Name over UDP (Queries)" means:

  • A. All UDP Queries will be accepted by the traffic allowed by first explicit rule written by Administrator in a Security Policy.
  • B. All UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
  • C. UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy.
  • D. No UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.

Answer: C

Explanation:
Explanation
The selected option "Accept Domain Name over UDP (Queries)" means that UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy. This option enables the Security Gateway to accept DNS queries from external hosts and forward them to internal DNS servers. The queries are accepted by an implied rule that is applied before the explicit rules in the Security Policy. The implied rule only allows queries from interfaces that have external anti-spoofing groups defined . References: Check Point R81 Quantum Security Gateway Guide, Implied Rules


NEW QUESTION # 85
Security Zones do no work with what type of defined rule?

  • A. Application Control rule
  • B. Firewall rule
  • C. IPS bypass rule
  • D. Manual NAT rule

Answer: D


NEW QUESTION # 86
Consider the Global Properties following settings:

The selected option "Accept Domain Name over UDP (Queries)" means:

  • A. All UDP Queries will be accepted by the traffic allowed by first explicit rule written by Administrator in a Security Policy.
  • B. All UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.
  • C. UDP Queries will be accepted by the traffic allowed only through interfaces with external anti-spoofing topology and this will be done before first explicit rule written by Administrator in a Security Policy.
  • D. No UDP Queries will be accepted by the traffic allowed through all interfaces and this will be done before first explicit rule written by Administrator in a Security Policy.

Answer: C


NEW QUESTION # 87
Which type of Check Point license ties the package license to the IP address of the Security Management Server?

  • A. Local
  • B. Central
  • C. Formal
  • D. Corporate

Answer: B

Explanation:
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk62685


NEW QUESTION # 88
Which of these components does NOT require a Security Gateway R77 license?

  • A. SmartConsole
  • B. Check Point Gateway
  • C. Security Management Server
  • D. SmartUpdate upgrading/patching

Answer: A


NEW QUESTION # 89
Which of the following is NOT defined by an Access Role object?

  • A. Source Server
  • B. Source Network
  • C. Source Machine
  • D. Source User

Answer: A


NEW QUESTION # 90
Which one of the following is a way that the objects can be manipulated using the new API integration in R80 Management?

  • A. RC4 Encryption
  • B. Microsoft Word
  • C. Microsoft Publisher
  • D. JSON

Answer: D

Explanation:
Explanation
The way that the objects can be manipulated using the new API integration in R80 Management is JSON.
JSON (JavaScript Object Notation) is a lightweight data-interchange format that is easy for humans and machines to read and write. The R80 Management API uses JSON as the primary data format for requests and responses. Therefore, the correct answer is B. JSON.


NEW QUESTION # 91
Choose what BEST describes a Session

  • A. Sessions locks the policy package for editing.
  • B. Starts when an Administrator publishes all the changes made on SmartConsole
  • C. Starts when an Administrator logs in through SmartConsole and ends when the Administrator logs out.
  • D. Sessions ends when policy is pushed to the Security Gateway.

Answer: C

Explanation:
A session starts when an Administrator logs in through SmartConsole and ends when the Administrator logs out. A session allows multiple administrators to work on the same policy simultaneously, without overwriting each other's changes3.
References: 3: Check Point R81 Security Management Administration Guide, page 17.


NEW QUESTION # 92
What does it mean if Deyra sees the gateway status:

Choose the BEST answer.

  • A. VPN software blade is reporting a malfunction
  • B. SmartCenter Server cannot reach this Security Gateway
  • C. Security Gateway's MGNT NIC card is disconnected.
  • D. There is a blade reporting a problem

Answer: D

Explanation:


NEW QUESTION # 93
The CDT utility supports which of the following?

  • A. Only Jumbo HFA's and hotfixes
  • B. All upgrades
  • C. Major version upgrades to R77.30
  • D. Only major version upgrades to R80.10

Answer: B

Explanation:
Explanation
The CDT utility supports all upgrades, including major version upgrades, Jumbo HFA's, and hotfixes3.
References: Check Point Upgrade Service Engine (CPUSE) - Gaia Deployment Agent


NEW QUESTION # 94
What is the most recommended installation method for Check Point appliances?

  • A. USB media created with Check Point ISOMorphic
  • B. SmartUpdate installation
  • C. Cloud based installation
  • D. DVD media created with Check Point ISOMorphic

Answer: A

Explanation:
USB media created with Check Point ISOMorphic is the most recommended installation method for Check Point appliances, as it provides a fast and easy way to install the Gaia operating system and the latest software version4. SmartUpdate installation requires an existing Gaia installation and does not support fresh installations4. DVD media created with Check Point ISOMorphic is less convenient than USB media, as it requires burning the image to a DVD and inserting it into the appliance4. Cloud based installation is not applicable for Check Point appliances, as it is intended for cloud environments such as AWS or Azure4.
References: INSTALLATION AND UPGRADE GUIDE R81.10, Chassis R81 Installation and Upgrade Guide, Check Point R81.10


NEW QUESTION # 95
When configuring LDAP with User Directory integration, changes applied to a User Directory template are:

  • A. Not reflected for any users unless the local user template is changed.
  • B. Reflected for ail users who are using that template and if the local user template is changed as well.
  • C. Reflected immediately for all users who are using that template.
  • D. Not reflected for any users who are using that template.

Answer: C

Explanation:
You can change the User Directory templates. Users associated with this template get the changes immediately. If you change user definitions manually in SmartConsole, the changes are immediate on the server. https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Managing-Users-on-User-Directory-Server.htm


NEW QUESTION # 96
What is the most complete definition of the difference between the Install Policy button on the SmartConsole' s tab, and the Install Policy within a specific policy?

  • A. The local one does not install the Anti-Malware policy along with the Network policy.
  • B. The Global one also saves and published the session before installation.
  • C. The Global one can install multiple selected policies at the same time.
  • D. The second one pre-select the installation for only the current policy and for the applicable gateways.

Answer: D

Explanation:
The difference between the Install Policy button on the SmartConsole's tab and the Install Policy within a specific policy is that the former installs all the policies that are selected in the Install Policy window, while the latter pre-selects the installation for only the current policy and for the applicable gateways5 . The other options are not accurate differences. References: Installing Policies, [Check Point CCSA - R81: Practice Test
& Explanation]


NEW QUESTION # 97
Vanessa is attempting to log into the Gaia Web Portal. She is able to login successfully. Then she tries the same username and password for SmartConsole but gets the message in the screenshot image below. She has checked that the IP address of the Server is correct and the username and password she used to login into Gaia is also correct.

What is the most likely reason?

  • A. Check Point R80 SmartConsole authentication is more secure than in previous versions and Vanessa requires a special authentication key for R80 SmartConsole. Check that the correct key details are used.
  • B. Authentication failed because Vanessa's username is not allowed in the new Threat Prevention console update checks even though these checks passed with Gaia.
  • C. Check Point Management software authentication details are not automatically the same as the Operating System authentication details. Check that she is using the correct details.
  • D. SmartConsole Authentication is not allowed for Vanessa until a Super administrator has logged in first and cleared any other administrator sessions.

Answer: C

Explanation:
The most likely reason for Vanessa's authentication failure is that she is using the wrong details for SmartConsole. Check Point Management software authentication details are not automatically the same as the Operating System authentication details. She needs to use the credentials that were defined during the initial configuration of the Security Management Server, or the ones that were assigned to her by the administrator12. The other options are not valid reasons for this error. References: SmartConsole Login, Check Point CCSA - R81: Practice Test & Explanation


NEW QUESTION # 98
What are the three deployment considerations for a secure network?

  • A. Bridge Mode, Remote, and Standalone
  • B. Distributed, Bridge Mode, and Remote
  • C. Standalone, Distributed, and Bridge Mode
  • D. Remote, Standalone, and Distributed

Answer: D

Explanation:
Explanation
The three deployment considerations for a secure network are Remote, Standalone, and Distributed3. Remote deployment means that the Security Management Server and Security Gateway are installed on different machines. Standalone deployment means that the Security Management Server and Security Gateway are installed on the same machine. Distributed deployment means that there are multiple Security Gateways managed by one or more Security Management Servers3. Therefore, the correct answer is C. Remote, Standalone, and Distributed.


NEW QUESTION # 99
AdminA and AdminB are both logged in on SmartConsole. What does it mean if AdminB sees a locked icon on a rule? Choose the BEST answer.

  • A. Rule is locked by AdminA, and will make it available if session is published.
  • B. Rule is locked by AdminA, because the save bottom has not been press.
  • C. Rule is locked by AdminA, because an object on that rule is been edited.
  • D. Rule is locked by AdminA, and if the session is saved, rule will be available

Answer: A


NEW QUESTION # 100
SmartEvent does NOT use which of the following procedures to identity events:

  • A. Create an event candidate
  • B. Matching a log against each event definition
  • C. Matching a log against local exclusions
  • D. Matching a log against global exclusions

Answer: C

Explanation:
The procedure that SmartEvent does not use to identify events is matching a log against local exclusions. Local exclusions are used to filter out logs that are not relevant for SmartLog, not SmartEvent12. SmartEvent uses the other procedures to identify events based on event definitions, event candidates, and global exclusions3 . References: SmartLog R81 Administration Guide, Check Point CCSA - R81: Practice Test & Explanation, SmartEvent R81 Administration Guide, [Free Check Point CCSA Sample Questions and Study Guide]


NEW QUESTION # 101
......


Learn the format of the CheckPoint 156-215.81 Exam

  • Exam Format: Multiple choice questions

  • Passing score: 70%

  • Language: English

  • Exam Duration: 90 Minutes

  • Exam Length: 90 Questions

 

Sample Questions of 156-215.81 Dumps With 100% Exam Passing Guarantee: https://www.vcetorrent.com/156-215.81-valid-vce-torrent.html

Pass Key features of 156-215.81 Course with Updated 414 Questions: https://drive.google.com/open?id=1LZ6YWrauCqPryxSlfdVT6rKUBrFkFjJC