156-215.71 Exam Questions
574 real 156-215.71 exam questions with expert-verified answers and explanations. Page 10 of 12.
- Question #453
John currently administers a network using single CPU single core servers for the Security Gateways and is running R71. His company is now going to implement VOIP and needs more pe...
- Question #454
You are running a R71 Security Gateway on SecurePlatform. In case of a hardware failure, you have a server with the exact same hardware and firewall version installed. What backup...
- Question #455
Before upgrading SecurePlatform, you should create a backup. To save time, many administrators use the command backup. This creates a backup of the Check Point configuration as wel...
- Question #456
Where can you find the Check Point's SNMP MIB file?
- Question #457
Many companies have defined more than one administrator. To increase security, only one administrator should be able to install a Rule Base on a specific Firewall. How do you confi...
- Question #458
Check Point 156-215.71 Exam Which command enables IP forwarding on IPSO?
- Question #459
You want to create an ASCII formatted output file of the fw monitor command. What is the correct syntax to accomplish this task?
- Question #460
When you run the fw monitor -e "accept;" command, what type of traffic is captured?
- Question #461
The Get Address button, found on the Host Node Object / General Properties page, will retrieve what?
- Question #462
Anti-Spoofing is typically set up on which object type?
- Question #463
How can you activate the SNMP daemon on a Check Point Security Gateway?
- Question #464
Which of the below is the MOST correct process to reset SIC from SmartDashboard?
- Question #465
What are the two basic rules which should be used by all Security Administrators?
- Question #466
All of the following are Security Gateway control connections defined by default implied rules, EXCEPT:
- Question #467
Which rules are not applied on a first-match basis?
- Question #468
Installing a policy usually has no impact on currently existing connections. Which statement is TRUE?
- Question #469
You enable Hide NAT on the network object, 10.1.1.0 behind the Security Gateway's external interface. You browse to from host, 10.1.1.10 successfully. You enable a log on the rule...
- Question #470
NAT can NOT be configured on which of the following objects?
- Question #471
Which NAT option applicable for Automatic NAT applies to Manual NAT as well?
- Question #472
The fw monitor utility is used to troubleshoot which of the following problems?
- Question #473
Secure Internal Communications (SIC) is completely NAT-tolerant because it is based on:
- Question #474
In a Hide NAT connection outbound, which portion of the packet is modified?
- Question #475
Which of the following is a viable consideration when determining Rule Base order?
- Question #476
Which of the following is a viable consideration when determining Rule Base order?
- Question #477
When you add a resource object to a rule, which of the following occurs?
- Question #478
You are a Security Administrator using one Security Management Server managing three different firewalls. One of the firewalls does NOT show up in the dialog box when attempting to...
- Question #479
Your Security Management Server fails and does not reboot. One of your remote Security Gateways managed by the Security Management Server reboots. What occurs with the remote Gatew...
- Question #480
What information is found in the SmartView Tracker Management log?
- Question #481
What information is found in the SmartView Tracker Management log?
- Question #482
Where is the best place to find information about connections between two machines?
- Question #483
External commands can be included in SmartView Tracker via the menu Tools / Custom Commands. The Security Management Server is running under SecurePlatform, and the GUI is on a sys...
- Question #484
You want to display log entries containing information from a specific column in the SmartView Tracker. If you want to see ONLY those entries, what steps would you take?
- Question #485
A security audit has determined that your unpatched Web application server is accessing a SQL server. You believe that you have enabled the proper IPS setting but would like to ver...
- Question #486
Which SmartConsole tool would you use to see the last policy pushed in the audit log?
- Question #487
What are the results of the command: fw sam [Target IP Address]?
- Question #488
You are the Security Administrator for MegaCorp and are enjoying your holiday. One day, you receive a call that some connectivity problems have occurred. Before the holiday, you co...
- Question #489
In SmartDashboard, you configure 45 MB as the required free hard-disk space to accommodate logs. What can you do to keep old log files, when free space falls below 45 MB? Check Poi...
- Question #490
You are Security Administrator for a large call center. The management team is concerned that employees may be installing and attempting to use peer-to-peer file-sharing utilities,...
- Question #491
How do you configure an alert in SmartView Monitor?
- Question #492
True or False: SmartView Monitor can be used to create alerts on a specified Gateway.
- Question #493
Which R71 SmartConsole tool would you use to verify the installed Security Policy name on a Security Gateway?
- Question #494
Where can an administrator configure the notification action in the event of a policy install time change?
- Question #495
Where are custom queries stored in R71 SmartView Tracker?
- Question #496
How do you view a Security Administrator's activities with SmartConsole?
- Question #497
Where do you enable popup alerts for IPS settings that have detected suspicious activity?
- Question #498
The R71 fw monitor utility is used to troubleshoot which of the following problems? Check Point 156-215.71 Exam
- Question #499
You are the Security Administrator for MegaCorp. In order to see how efficient your firewall Rule Base is, you would like to see how often the particular rules match. Where can you...
- Question #500
A company has disabled logging for some of the most commonly used Policy rules. This was to decrease load on the Security Management Server and to make tracking dropped connections...
- Question #501
Which feature in R71 permits blocking specific IP addresses for a specified time period?
- Question #502
Your company enforces a strict change control policy. Which of the following would be MOST effective for quickly dropping an attacker's specific active connection? Check Point 156-...