156-215.75 Exam Questions
526 real 156-215.75 exam questions with expert-verified answers and explanations. Page 8 of 11.
- Question #353
Which type of R75 Security Server does not provide User Authentication?
- Question #354
Mr. Smith needs access to other networks and should be able to use all services, but session authentication is not suitable. The Security Administrator selects client authenticatio...
- Question #355
You are about to integrate RSA SecurID users into the Check Point infrastructure. What kind of users are to be defined via SmartDashboard?
- Question #356
User Marc is requesting a Website while he is using a computer out of the net_singapore network. What is TRUE about his location restriction?
- Question #357
In the given Rule Base, the client authentication in rule 4 is configured as fully automatic. Eric is a member of the LDAP group, MSAD_Group. When Eric tries to connect to a server...
- Question #358
Assume you are a Security Administrator for ABCTech. You have allowed authenticated access to users from Mkting_net to Finance_net. But in the user's properties, connections are on...
- Question #359
When selecting an authentication scheme for a user, which scheme would you use if you only want the password to be stored locally? (The password is not stored at a third party comp...
- Question #360
For which service is it NOT possible to configure user authentication?
- Question #361
For remote user authentication, which authentication scheme is NOT supported?
- Question #362
For information to pass securely between a Security Management Server and another Check Point component, what would NOT be required?
- Question #363
What is the bit size of a DES key?
- Question #364
What is the size of a hash produced by SHA-1?
- Question #365
Public keys and digital certificates do NOT provide which of the following?
- Question #366
If you check the box Use Aggressive Mode in the IKE Properties dialog box, the standard:
- Question #367
You are concerned that a message may have been intercepted and retransmitted, thus compromising the security of the communication. You attach a code to the electronically transmitt...
- Question #368
Your manager requires you to setup a new corporate VPN between all your branch offices. He requires you to choose the strongest and most secure available algorithms for the headqua...
- Question #369
Whitfield Diffie and martin Hellman gave their names to what standard?
- Question #370
If you need strong protection for the encryption of user data, what option would be the BEST choice?
- Question #371
What is used to validate a digital certificate?
- Question #372
Assume an intruder has compromised your current IKE Phase 1 and Phase 2 keys. Which of the following options will end the intruder's access after the next Phase 2 exchange occurs?
- Question #373
Which statement defines Public Key Infrastructure? Security is provided:
- Question #374
Review the following list of actions that Security Gateway R75 can take when it controls packets. The Policy Package has been configured for Simplified Mode VPN. Select the respons...
- Question #375
Your organization maintains several IKE VPNs. Executives in your organization want to know which mechanism Security Gateway R75 uses to guarantee the authenticity and integrity of...
- Question #376
Which of the following provides confidentiality services for data and messages in a Check Point VPN?
- Question #377
Your company has two headquarters, one in London, and one in New York. Each office includes several branch offices. The branch offices need to communicate with the headquarters in...
- Question #378
Which of these attributes would be critical for a site-to-site VPN? Check Point 156-215.75 Exam
- Question #379
Which of the following is NOT true for Clientless VPN?
- Question #380
You want to establish a VPN, using certificates. Your VPN will exchange certificates with an external partner. Which of the following activities should you do first?
- Question #381
Your company is still using traditional mode VPN configuration on all Gateways and policies. Your manager now requires you to migrate to a simplified VPN policy to benefit from the...
- Question #382
Your manager requires you to setup a VPN to a new business partner site. The administrator from the partner site gives you his VPN settings and you notice that he setup AES 128 for...
- Question #383
Why are certificates preferred over pre-shared keys in an IPsec VPN?
- Question #384
Multi-Corp must comply with industry regulations in implementing VPN solutions among multiple sites. The corporate Information Assurance policy defines the following requirements:...
- Question #385
What happens in relation to the CRL cache after a cpstop and cpstart have been initiated?
- Question #386
Which of the following is TRUE concerning control connections between the Security Management Server and the Gateway in a VPN Community? Control Connections are:
- Question #387
How many times is the firewall kernel invoked for a packet to be passed through a VPN connection?
- Question #388
You have traveling salesmen connecting to your VPN community from all over the world. Which technology would you choose?
- Question #389
You wish to configure a VPN and you want to encrypt not just the data packet, but the original header. Which encryption scheme would you select?
- Question #390
You wish to view the current state of the customer's VPN tunnels, including those that are down Check Point 156-215.75 Exam and destroyed. Which SmartConsole application will provi...
- Question #391
Which VPN Community object is used to configure Hub Mode VPN routing in SmartDashboard?
- Question #392
When a user selects to allow Hot-spot, SecureClient modifies the Desktop Security Policy and/or Hub Mode routing to enable Hot-spot registration. Which of the following is NOT true...
- Question #393
For VPN routing to succeed, what must be configured?
- Question #394
What can NOT be selected for VPN tunnel sharing?
- Question #395
Marc is a Security Administrator configuring a VPN tunnel between his site and a partner site. He just created the partner city's firewall object and a community. While trying to a...
- Question #396
If Henry wanted to configure Perfect Forward Secrecy for his VPN tunnel, in which phase would he be configuring this?
- Question #397
You install and deploy SecurePlatform with default settings. You allow Visitor Mode in the Remote Access properties of the Gateway object and install policy, but SecureClient refus...
- Question #398
With deployment of SecureClient, you have defined in the policy that you allow traffic only to an encrypted domain. But when your mobile users move outside of your company, they of...
- Question #399
What statement is true regarding Visitor Mode?
- Question #400
Phase 1 uses________.
- Question #401
If you were NOT using IKE aggressive mode for your IPsec tunnel, how many packets would you see for normal Phase 1 exchange?
- Question #402
How many packets does the IKE exchange use for Phase 1 Main Mode?