156-215.75 Exam Questions
526 real 156-215.75 exam questions with expert-verified answers and explanations. Page 4 of 11.
- Question #151
Which Check Point address translation method is necessary if you want to connect from a host on the Internet via HTTP to a server with a reserved (RFC 1918) IP address on your DMZ?
- Question #152
You want to implement Static Destination NAT in order to provide external, Internet users access to an internal Web Server that has a reserved (RFC 1918) IP address. You have an un...
- Question #153
After implementing Static Address Translation to allow Internet traffic to an internal Web Server on your DMZ, you notice that any NATed connections to that machine are being dropp...
- Question #154
Which NAT option applicable for Automatic NAT applies to Manual NAT as well?
- Question #155
Your main internal network 10.10.10.0/24 allows all traffic to the Internet using Hide NAT. You also have a small network 10.10.20.0/24 behind the internal router. You want to conf...
- Question #156
You have three servers located in a DMZ, using private IP addresses. You want internal users from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10...
- Question #157
Gateway. The initiating traffic is an example of __________.
- Question #158
A host on the Internet initiates traffic to the Static NAT IP of your Web server behind the Security Gateway. With the default settings in place for NAT, the initiating packet will...
- Question #159
A Web server behind the Security Gateway is set to Automatic Static NAT. Client side NAT is not checked in the Global Properties. A client on the Internet initiates a session to th...
- Question #160
When translation occurs using automatic Hide NAT, what also happens?
- Question #161
The fw monitor utility is used to troubleshoot which of the following problems?
- Question #162
Check Point 156-215.75 Exam The fw monitor utility would be best to troubleshoot which of the following problems?
- Question #163
Looking at the SYN packets in the Wireshark output, select the statement that is true about NAT.
- Question #164
In SmartDashboard, Translate destination on client side is checked in Global Properties. When Network Address Translation is used:
- Question #165
Secure Internal Communications (SIC) is completely NAT-tolerant because it is based on:
- Question #166
Static NAT connections, by default, translate on which inspection point of the firewall kernel?
- Question #167
In a Hide NAT connection outbound, which portion of the packet is modified?
- Question #168
You are MegaCorp's Security Administrator. There are various network objects which must be NATed. Some of them use the Automatic Hide NAT method, while others use the Automatic Sta...
- Question #169
Which answers are TRUE? Automatic Static NAT CANNOT be used when:
- Question #170
In order to have full control, you decide to use Manual NAT entries instead of Automatic NAT rules. Which is of the following is NOT true?
- Question #171
After filtering a fw monitor trace by port and IP, a packet is displayed three times; in the i, I, and o inspection points, but not in the O inspection point. Which is the likely s...
- Question #172
A marketing firm's networking team is trying to troubleshoot user complaints regarding access to audio-streaming material from the Internet. The networking team asks you to check t...
- Question #173
Which statement below describes the most correct strategy for implementing a Rule Base?
- Question #174
Which of the following is a viable consideration when determining Rule Base order?
- Question #175
Which of the following is a viable consideration when determining Rule Base order?
- Question #176
Which of the following is a viable consideration when determining Rule Base order?
- Question #177
You would use the Hide Rule feature to:
- Question #178
When you add a resource object to a rule, which of the following occurs?
- Question #179
You are a Security Administrator using one Security Management Server managing three different firewalls. One of the firewalls does NOT show up in the dialog box when attempting to...
- Question #180
Your shipping company uses a custom application to update the shipping distribution database. The custom application includes a service used only to notify remote sites that the di...
- Question #181
The fw stat -l command includes all of the following except:
- Question #182
Which command allows verification of the Security Policy name and install date on a Security Gateway?
- Question #183
You have two rules, ten users, and two user groups in a Security Policy. You create database version 1 for this configuration. You then delete two existing users and add a new user...
- Question #184
Which feature or command provides the easiest path for Security Administrators to revert to earlier versions of the same Security Policy and objects configuration?
- Question #185
Your Security Management Server fails and does not reboot. One of your remote Security Gateways managed by the Security Management Server reboots. What occurs with the remote Gatew...
- Question #186
How can you configure an application to automatically launch on the Security Management Server when traffic is dropped or accepted by a rule in the Security Policy?
- Question #187
Which of the following is NOT useful to verify whether or NOT a Security Policy is active on a Gateway?
- Question #188
Of the following, what parameters will not be preserved when using Database Revision Control? 1) Simplified mode Rule Bases 2) Traditional mode Rule Bases 3) Secure Platform WebUI...
- Question #189
Which of the following describes the default behavior of an R75 Security Gateway?
- Question #190
When you use the Global Properties' default settings on R75, which type of traffic will be dropped if no explicit rule allows the traffic?
- Question #191
You have installed a R75 Security Gateway on SecurePlatform. To manage the Gateway from the enterprise Security Management Server, you create a new Gateway object and Security Poli...
- Question #192
Select the correct statement about Secure Internal Communications (SIC) Certificates. SIC Certificates:
- Question #193
John is the Security Administrator in his company. He installs a new R75 Security Management Server and a new R75 Gateway. He now wants to establish SIC between them. After enterin...
- Question #194
A _______ rule is used to prevent all traffic going to the R75 Security Gateway.
- Question #195
In a distributed management environment, the administrator has removed the default check from Accept Control Connections under the Policy / Global Properties / FireWall tab. In ord...
- Question #196
Your internal network is configured to be 10.1.1.0/24. This network is behind your perimeter R75 Gateway, which connections to your ISP provider. How do you configure the Gateway t...
- Question #197
Which specific R75 GUI would you use to add an address translation rule?
- Question #198
You are a Security Administrator who has installed Security Gateway R75 on your network. You need to allow a specific IP address range for a partner site to access your intranet We...
- Question #199
You enable Automatic Static NAT on an internal host node object with a private IP address of 10.10.10.5, which is NATed into 216.216.216.5. (You use the default settings in Global...
- Question #200
You have configured a remote site Gateway that supports your boss's access from his home office using a DSL dialup connection. Everything worked fine yesterday, but today all conne...