156-215.81 Exam Questions
690 real 156-215.81 exam questions with expert-verified answers and explanations. Page 8 of 14.
- Question #351
Customer's R80 management server needs to be upgraded to R80.10. What is the best upgrade method when the management server is not connected to the Internet?
- Question #352
SmartEvent does NOT use which of the following procedures to identity events:
- Question #353
John is using Management HA. Which Smartcenter should be connected to for making changes?
- Question #354
Which path below is available only when CoreXL is enabled?
- Question #355
Which of the following describes how Threat Extraction functions?
- Question #356
The SmartEvent R80 Web application for real-time event monitoring is called:
- Question #357
SandBlast offers flexibility in implementation based on their individual business needs. What is an option for deployment of Check Point SandBlast Zero-Day Protection?
- Question #358
What SmartEvent component creates events?
- Question #359
Which Threat Prevention Profile is not included by default in R80 Management?
- Question #360
When using Monitored circuit VRRP, what is a priority delta?
- Question #361
Which of the following is NOT an option to calculate the traffic direction?
- Question #362
When an encrypted packet is decrypted, where does this happen?
- Question #363
Which of the following is NOT a component of Check Point Capsule?
- Question #364
You have successfully backed up your Check Point configurations without the OS information. What command would you use to restore this backup?
- Question #365
What is the best sync method in the ClusterXL deployment?
- Question #366
Can multiple administrators connect to a Security Management Server at the same time?
- Question #367
What Identity Agent allows packet tagging and computer authentication?
- Question #368
In Logging and Monitoring, the tracking options are Log, Detailed Log and Extended Log. Which of the following options can you add to each Log, Detailed Log and Extended Log?
- Question #369
You noticed that CPU cores on the Security Gateway are usually 100% utilized and many packets were dropped. You don't have a budget to perform a hardware upgrade at this time. To o...
- Question #370
Which two of these Check Point Protocols are used by _____ ?
- Question #371
To ensure that VMAC mode is enabled, which CLI command you should run on all cluster members? Choose the best answer.
- Question #372
What is the SOLR database for?
- Question #373
Which of the following commands is used to monitor cluster members?
- Question #374
Fill in the blank: Service blades must be attached to a ______________.
- Question #375
Fill in the blank: An LDAP server holds one or more ______________.
- Question #376
Fill in the blank: In Security Gateways R75 and above, SIC uses ______________ for encryption.
- Question #377
What protocol is specifically used for clustered environments?
- Question #378
Which of the following is NOT a tracking option? (Select three)
- Question #379
Which command shows the installed licenses?
- Question #380
Of all the Check Point components in your network, which one changes most often and should be backed up most frequently?
- Question #381
Which option would allow you to make a backup copy of the OS and Check Point configuration, without stopping Check Point processes?
- Question #382
What is the Transport layer of the TCP/IP model responsible for?
- Question #383
What needs to be configured if the NAT property `Translate destination on client side' is not enabled in Global properties?
- Question #384
In the Check Point Security Management Architecture, which component(s) can store logs?
- Question #385
Fill in the blank: In order to install a license, it must first be added to the ____________.
- Question #386
When logging in for the first time to a Security management Server through SmartConsole, a fingerprint is saved to the:
- Question #387
Fill in the blank: By default, the SIC certificates issued by R80 Management Server are based on the ____________ algorithm.
- Question #388
Which message indicates IKE Phase 2 has completed successfully?
- Question #389
Administrator Dave logs into R80 Management Server to review and makes some rule changes. He notices that there is a padlock sign next to the DNS rule in the Rule Base. What is the...
- Question #390
Fill in the blank: When tunnel test packets no longer invoke a response, SmartView Monitor displays _____________ for the given VPN tunnel.
- Question #391
Which of the following is the most secure means of authentication?
- Question #392
What is the BEST command to view configuration details of all interfaces in Gaia CLISH?
- Question #393
Fill in the blank: Authentication rules are defined for ____________.
- Question #394
Which tool provides a list of trusted files to the administrator so they can specify to the Threat Prevention blade that these files do not need to be scanned or analyzed?
- Question #395
Which of the following is an authentication method used for Identity Awareness?
- Question #396
The SIC Status "Unknown" means
- Question #397
What is a reason for manual creation of a NAT rule?
- Question #398
Which of the following commands is used to verify license installation?
- Question #399
To enforce the Security Policy correctly, a Security Gateway requires:
- Question #400
Which configuration element determines which traffic should be encrypted into a VPN tunnel vs. sent in the clear?