156-215.80 · Question #413
Which deployment adds a Security Gateway to an existing environment without changing IP routing?
The correct answer is B. Bridge Mode. Bridge Mode inserts a Security Gateway transparently at Layer 2, acting like a network bridge so no IP addresses or routing configurations in the existing environment need to change.
Question
Which deployment adds a Security Gateway to an existing environment without changing IP routing?
Options
- ADistributed
- BBridge Mode
- CRemote
- DStandalone
How the community answered
(31 responses)- B90% (28)
- C3% (1)
- D6% (2)
Why each option
Bridge Mode inserts a Security Gateway transparently at Layer 2, acting like a network bridge so no IP addresses or routing configurations in the existing environment need to change.
Distributed deployment refers to placing the Security Management Server and Security Gateway on separate machines - it does not describe how the gateway integrates into IP routing.
In Bridge Mode, the Security Gateway operates as a transparent Layer 2 bridge between two network segments. Because it does not route at Layer 3, existing IP addressing and routing infrastructure remains completely unchanged, making it ideal for inserting security inspection into an environment with minimal disruption.
Remote is not a standard Check Point deployment topology that describes transparent insertion without routing changes.
Standalone deployment places the Security Management Server and Security Gateway on the same appliance - it is a management architecture choice, not a transparent insertion method.
Concept tested: Check Point Bridge Mode transparent gateway deployment
Source: https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_Gaia_AdminGuide/Content/Topics-GAG/Bridge-Interfaces.htm
Topics
Community Discussion
No community discussion yet for this question.