nerdexam
Check_Point

156-215.80 · Question #114

Fill in the blanks: In the Network policy layer, the default action for the Implied last rule is ________ all traffic. However, in the Application Control policy layer, the default action is…

The correct answer is D. Drop; accept. This question tests knowledge of Check Point policy layer default behaviors, specifically the implied last rule in Network vs. Application Control layers.

Security Policy Management

Question

Fill in the blanks: In the Network policy layer, the default action for the Implied last rule is ________ all traffic. However, in the Application Control policy layer, the default action is ________ all traffic.

Options

  • AAccept; redirect
  • BAccept; drop
  • CRedirect; drop
  • DDrop; accept

How the community answered

(53 responses)
  • A
    13% (7)
  • B
    6% (3)
  • C
    2% (1)
  • D
    79% (42)

Why each option

This question tests knowledge of Check Point policy layer default behaviors, specifically the implied last rule in Network vs. Application Control layers.

AAccept; redirect

Accept is incorrect for the Network layer default, as the implied last rule drops traffic, not accepts it; redirect is not a standard Check Point default terminating action.

BAccept; drop

Accept is incorrect for the Network layer, which drops unmatched traffic by default, not accepts it.

CRedirect; drop

Redirect is not a valid implied last-rule action in the Network policy layer; drop is also incorrect for the Application Control layer default.

DDrop; acceptCorrect

In Check Point, the Network policy layer enforces a deny-by-default posture via an implied last rule that drops all traffic not explicitly matched by earlier rules. The Application Control policy layer, by contrast, defaults to accepting all traffic that does not match an explicit block rule, allowing uncategorized applications through unless actively restricted.

Concept tested: Check Point policy layer implied last rule defaults

Source: https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Topics-SECMG/Security-Policies-Introduction.htm

Topics

#implied rules#default action#policy layers#Application Control layer

Community Discussion

No community discussion yet for this question.

Full 156-215.80 Practice