156-215.80 · Question #441
Access roles allow the firewall administrator to configure Network access according to:
The correct answer is C. all of above. Check Point Access Roles enable identity-based firewall policies by combining multiple identity dimensions into a single access control object.
Question
Access roles allow the firewall administrator to configure Network access according to:
Options
- Aa combination of computer or computer groups and network
- Busers and user groups
- Call of above
- Dremote access clients
How the community answered
(27 responses)- B4% (1)
- C93% (25)
- D4% (1)
Why each option
Check Point Access Roles enable identity-based firewall policies by combining multiple identity dimensions into a single access control object.
Computer or computer groups combined with network covers only machine and location identity, omitting user identity and remote access client context.
Users and user groups alone omit machine identity and network location, which are also configurable dimensions within an Access Role.
Access Roles in Check Point SmartConsole aggregate user and user group identity, machine and machine group identity, network location, and remote access client type into a single reusable object. Using all of these dimensions together gives administrators the most granular and accurate access control possible in the Rule Base.
Remote access clients represent only one of the four dimensions of an Access Role and cannot enforce policy on internal users or machines by themselves.
Concept tested: Check Point Access Roles identity-based access control
Source: https://sc1.checkpoint.com/documents/latest/AdminGuides/Identity_Awareness/EN/html_frameset.htm
Topics
Community Discussion
No community discussion yet for this question.