nerdexam
Check_Point

156-215.76 · Question #263

John Adams is an HR partner in the ACME organization. ACME IT wants to limit access to HR servers to designated IP addresses to minimize malware infection and unauthorized access risks. Thus, the…

The correct answer is D. The firewall admin should install the Security Policy. See the full explanation below for the reasoning.

Question

John Adams is an HR partner in the ACME organization. ACME IT wants to limit access to HR servers to designated IP addresses to minimize malware infection and unauthorized access risks. Thus, the gateway policy permits access only from John's desktop which is assigned a static IP address 10.0.0.19. John received a laptop and wants to access the HR Web Server from anywhere in the organization. The IT department gave the laptop a static IP address, but that limits him to operating it only from his desk. The current Rule Base contains a rule that lets John Adams access the HR Web Server from his laptop with a static IP (10.0.0.19). He wants to move around the organization and continue to have access to the HR Web Server. To make this scenario work, the IT administrator:

(1) Enables Identity Awareness on a gateway, selects AD Query as one of the Identity Sources installs the policy. (2) Adds an access role object to the Firewall Rule Base that lets John Adams PC access the HR Web Server from any machine and from any location. John plugged in his laptop to the network on a different network segment and he is not able to connect. How does he solve this problem?

Options

  • AJohn should lock and unlock the computer
  • BInvestigate this as a network connectivity issue
  • CJohn should install the Identity Awareness Agent
  • DThe firewall admin should install the Security Policy

How the community answered

(37 responses)
  • A
    3% (1)
  • B
    16% (6)
  • C
    8% (3)
  • D
    73% (27)

Community Discussion

No community discussion yet for this question.

Full 156-215.76 Practice