nerdexam
Check_Point

156-215.80 · Question #329

What is true about the IPS-Blade?

The correct answer is A. in R80, IPS is managed by the Threat Prevention Policy. In R80, IPS was unified into the Threat Prevention Policy, replacing the standalone IPS Policy management model from earlier versions.

Security Policy Management

Question

What is true about the IPS-Blade?

Options

  • Ain R80, IPS is managed by the Threat Prevention Policy
  • Bin R80, in the IPS Layer, the only three possible actions are Basic, Optimized and Strict
  • Cin R80, IPS Exceptions cannot be attached to "all rules"
  • Din R80, the GeoPolicy Exceptions and the Threat Prevention Exceptions are the same

How the community answered

(61 responses)
  • A
    89% (54)
  • B
    2% (1)
  • C
    3% (2)
  • D
    7% (4)

Why each option

In R80, IPS was unified into the Threat Prevention Policy, replacing the standalone IPS Policy management model from earlier versions.

Ain R80, IPS is managed by the Threat Prevention PolicyCorrect

In R80, the IPS blade is managed through the Threat Prevention Policy, which consolidates IPS, Anti-Bot, Anti-Virus, and Threat Emulation into a single unified policy. This replaced the legacy IPS Policy tab from R77 and earlier, allowing IPS protections to be configured alongside other threat prevention layers in one place.

Bin R80, in the IPS Layer, the only three possible actions are Basic, Optimized and Strict

Basic, Optimized, and Strict are IPS default profiles used as starting templates, not the only possible actions in the IPS layer - administrators can define custom protection actions beyond these three.

Cin R80, IPS Exceptions cannot be attached to "all rules"

IPS Exceptions in R80 can be attached to 'all rules', which is a fully supported configuration option that applies the exception globally across all matched rules.

Din R80, the GeoPolicy Exceptions and the Threat Prevention Exceptions are the same

GeoPolicy Exceptions and Threat Prevention Exceptions are distinct features - GeoPolicy controls access based on geographic location, while Threat Prevention Exceptions apply specifically to IPS and other threat prevention protections.

Concept tested: R80 IPS management via Threat Prevention Policy

Source: https://sc1.checkpoint.com/documents/R80/CP_R80_ThreatPrevention_AdminGuide/html_frameset.htm

Topics

#IPS blade#Threat Prevention Policy#R80#security blades

Community Discussion

No community discussion yet for this question.

Full 156-215.80 Practice