156-215.81.20 Exam Questions
190 real 156-215.81.20 exam questions with expert-verified answers and explanations. Page 1 of 4.
- Question #1
Tom has connected to the Management Server remotely using SmartConsole and is in the process of making some Rule Base changes, when he suddenly loses connectivity. Connectivity is...
- Question #2
When dealing with policy layers, what two layer types can be utilized?
- Question #3
What are the three main components of Check Point security management architecture?
- Question #4
Which Check Point software blade provides protection from zero-day and undiscovered threats?
- Question #5
What are the three types of UserCheck messages?
- Question #6
By default, which port is used to connect to the GAiA Portal?
- Question #7
Choose what BEST describes a Session.
- Question #8
Which command shows detailed information about VPN tunnels?
- Question #9
Fill in the blanks: A Check Point software license consists of a _____ and _____.
- Question #10
Which of the following is used to initially create trust between a Gateway and Security Management Server?
- Question #11
What are the two elements of address translation rules?
- Question #12
Which of the following log queries would show only dropped packets with source address of 192.168.1.1 and destination address of 172.26.1.1?
- Question #13
Fill in the blanks: The _____ collects logs and sends them to the _____.
- Question #14
Which of the following is NOT an authentication scheme used for accounts created through SmartConsole?
- Question #15
Which of the following statements about Site-to-Site VPN Domain-based is NOT true?
- Question #16
What is the main objective when using Application Control?
- Question #17
Fill in the blank: Backup and restores can be accomplished through _____.
- Question #18
What kind of NAT enables Source Port Address Translation by default?
- Question #19
Fill in the blanks: In _____ NAT, Only the _____ is translated.
- Question #20
Application Control/URL filtering database library is known as:
- Question #21
Of all the Check Point components in your network, which one changes most often and should be backed up most frequently?
- Question #22
Which of the following technologies extracts detailed information from packets and stores that information in different tables?
- Question #23
You are the Check Point administrator for Alpha Corp. You received a call that one of the users is unable to browse the Internet on their new tablet which is connected to the compa...
- Question #24
Rugged appliances are small appliances with ruggedized hardware and like Quantum Spark appliance they use which operating system?
- Question #25
What command from the CLI would be used to view current licensing?
- Question #26
A security zone is a group of one or more network interfaces from different centrally managed gateways. What is considered part of the zone?
- Question #27
Which of the completed statements is NOT true? The GAiA Portal (WebUI) can be used to manage Operating System user accounts and:
- Question #28
Which encryption algorithm is the least secured?
- Question #29
Fill in the blank: SmartConsole, SmartEvent GUI client, and _____ allow viewing of billions of consolidated logs and shows them as prioritized security events.
- Question #30
What is the default tracking option of a rule?
- Question #31
Fill in the blank: Once a license is activated, a _____ should be installed.
- Question #32
When should you generate new licenses?
- Question #33
Fill in the blank: The position of an Implied rule is manipulated in the _____ window.
- Question #34
Which of the following situations would not require a new license to be generated and installed?
- Question #35
You have enabled 揈xtended Log?as a tracking option to a security rule. However, you are still not seeing any data type information. What is the MOST likely reason?
- Question #36
Fill in the blank: In order to install a license, it must first be added to the _____.
- Question #37
What is required for a certificate-based VPN tunnel between two gateways with separate management systems?
- Question #38
Main Mode in iKEv1 uses how many packages for negotiation?
- Question #39
Which is a main component of the Check Point security management architecture?
- Question #40
What are the two types of NAT supported by the Security Gateway?
- Question #41
Fill in the blank: A(n) _____ rule is created by an administrator and configured to allow or block traffic based on specified criteria.
- Question #42
Where is the "Hit Count" feature enabled or disabled in SmartConsole?
- Question #43
Log query results can be exported to what file format?
- Question #44
In order to modify Security Policies the administrator can use which of the following tools? Select the BEST answer.
- Question #45
Which Check Point software blade prevents malicious files from entering a network using virus signatures and anomaly-based protections from ThreatCloud?
- Question #46
When a Security Gateway communicates about its status to an IP address other than its own, which deployment option was chosen?
- Question #47
In HTTPS Inspection policy, what actions are available in the "Actions" column of a rule?
- Question #48
Why is a Central License the preferred and recommended method of licensing?
- Question #49
In order for changes made to policy to be enforced by a Security Gateway, what action must an administrator perform?
- Question #50
Which of the following is NOT an alert option?