156-215.71 Exam Questions
574 real 156-215.71 exam questions with expert-verified answers and explanations. Page 3 of 12.
- Question #101
What information is found in the SmartView Tracker Management log?
- Question #102
If you run fw monitor without any parameters, what does the output display?
- Question #103
Which statement defines Public Key Infrastructure? Security is provided:
- Question #104
As a Security Administrator, you are required to create users for authentication. When you create a user for user authentication, the data is stored in the ___________.
- Question #105
Why are certificates preferred over pre-shared keys in an IPsec VPN?
- Question #106
If you are experiencing LDAP issues, which of the following should you check?
- Question #107
Jeff wanted to upgrade his Security Gateway to R71, but he remembers that he needs to have a contract file from the user centre before he can start the upgrade. If Jeff wants to do...
- Question #108
Choose the BEST sequence for configuring user management in SmartDashboard, Using an LDAP server.
- Question #109
You have configured automatic static NAT on an internal host-node object. You clear the box Translate destination on client site from global properties Nat. assuming all other sett...
- Question #110
Which VPN Community object is used to configure Hub Mode VPN routing in SmartDashboard?
- Question #111
You have blocked an IP address via the Block Intruder feature of SmartView Tracker. How can you view the blocked addresses?
- Question #112
John is the Security Administrator in his company. He installs a new R71 Security Management Server and a new R71 Gateway. He now wants to establish SIC between them. After enterin...
- Question #113
What are you required to do before running upgrade__ export?
- Question #114
You are installing a Security Management Server Your security plan calls for three administrators for this particular server. How many can you create during installation'?
- Question #115
You are installing your R71Security Gateway. Which is NOT a valid option for the hardware platform?
- Question #116
A Security Policy installed by another Security Administrator has blocked all SmartDashboard connections to the stand-alone installation of R71. After running the fw unloadlocal co...
- Question #117
In previous version, the full TCP three-way handshake was sent to the firewall kernel for inspection. How is this improved in current Flows/SecureXL?
- Question #118
Which command displays the installed Security Gateway version?
- Question #119
What is a Consolidation Policy?
- Question #120
What CANNOT be configured for existing connections during a policy install?
- Question #121
Which OPSEC server can be used to prevent users from accessing certain Web sites?
- Question #122
Assume an intruder has compromised your current IKE Phase 1 and Phase 2 keys. Which of the following options will end the intruder's access after the next Phase 2 exchange occurs?...
- Question #123
You are trying to save a custom log query in R71 SmartView Tracker, but getting the following error "Could not save 'query-name' (Error Database is Read only). Which of the followi...
- Question #124
Your company's Security Policy forces users to authenticate to the Gateway explicitly, before they can use any services. The Gateway does not allow the Telnet service to itself fro...
- Question #125
In a distributed management environment, the administrator has removed the default check from Accept Control Connections under the Policy > Global Properties > FireWall tab. In ord...
- Question #126
Check Point 156-215.71 Exam Which rule is responsible for the installation failure?
- Question #127
If you experience unwanted traffic from a specific IP address, how can you stop it most quickly?
- Question #128
You are evaluating the configuration of a mesh VPN Community used to create a site-to-site VPN. This graphic displays the VPN properties in this mesh Community. Check Point 156-215...
- Question #129
You just installed a new Web server in the DMZ that must be reachable from the Internet You create a manual Static NAT rule as follows: Check Point 156-215.71 Exam "web_publicIP" i...
- Question #130
Which of the following SSL Network Extender server-side prerequisites is NOT correct?
- Question #131
You need to determine if your company's Web servers are accessed an excessive number of times from the same host. How would you configure this in the IPS tab?
- Question #132
What does it indicate when a Check Point product name includes the word "SMART"?
- Question #133
How many times is the firewall kernel invoked for a packet to be passed through a VPN connection?
- Question #134
When attempting to connect with SecureClient Mobile the following error message is received. The certificate provided is invalid. Please provide the username and password. What is...
- Question #135
The fw stat -l command includes all of the following except:
- Question #136
Check Point 156-215.71 Exam Although SIC was already established and running, Joe reset SIC between the Security Management Server and a remote Gateway. He set a new activation key...
- Question #137
The TotallyCoolSecurity Company has a large security staff. Bob configured a new IPS Chicago_Profile for fw-chicago using Detect mode. After reviewing logs, Matt noticed that fw- c...
- Question #138
Which statement below describes the most correct strategy for implementing a Rule Base?
- Question #139
An Administrator without access to SmartDashboard installed a new IPSO-based R71 Security Gateway over the weekend. He e-mailed you the SIC activation key. You want to confirm comm...
- Question #140
Which command would provide the most comprehensive diagnostic information to Check Point Technical Support?
- Question #141
R71s INSPECT Engine inserts itself into the kernel between which two layers of the OSl model?
- Question #142
After filtering a fw monitor trace by port and IP, a packet is displayed three times; in the i, I, and o inspection points, but not in the O inspection point. Which is the likely s...
- Question #143
Your company has two headquarters, one in London, one in New York. Each of the headquarters includes several branch offices. The branch offices only need to communicate with the he...
- Question #144
How can you configure an application to automatically launch on the Security Management Server when traffic is dropped or accepted by a rule in the Security Policy?
- Question #145
The command fw fetch causes the:
- Question #146
Check Point 156-215.71 Exam You have configured SNX on the Security Gateway. The client connects to the Security Gateway and the user enters the authentication credential. What mus...
- Question #147
Which authentication type requires specifying a contact agent in the Rule Base?
- Question #148
You find a suspicious FTP connection trying to connect to one of your internal hosts. How do you block it in real time and verify it is successfully blocked?
- Question #149
Your network includes a SecurePlatform machine running NG with Application Intelligence (Al) R55. This configuration acts as both the primary Security Management Server and VPN-1 P...
- Question #151
What port is used for communication to the User Center with SmartUpdate?