156-315.75 Exam Questions
622 real 156-315.75 exam questions with expert-verified answers and explanations. Page 8 of 13.
- Question #353
Which Name Resolution protocols are supported in SSL VPN?
- Question #354
Which statement about LDAP and Active Directory (AD) with SSL VPN is TRUE? Check Point 156-315.75 Exam
- Question #356
How does ClusterXL Unicast mode handle new traffic?
- Question #357
Which of the following explains Role Segregation?
- Question #358
A user cannot authenticate to SSL VPN. You have verified the user is assigned a user group and reproduced the problem, confirming a failed-login session. You do not see an indicati...
- Question #359
Which Protection Mode does not exist in IPS?
- Question #360
Using SmartProvisioning Profiles, which of the following could be configured for both SecurePlatform AND UTM-1 Edge devices? (i) Backup (ii) Routing (iii) Interfaces (iv) Hosts (v)...
- Question #361
Which of the following actions is most likely to improve the performance of Check Point QoS?
- Question #362
Where is the encryption domain for a SmartLSM Security Gateway configured in R71?
- Question #363
John is the MultiCorp Security Administrator. If he suggests a change in the firewall configuration, he must submit his proposal to David, a security manager. One day David is out...
- Question #364
What is NOT true about Management Portal?
- Question #365
Mark the configuration options that are available for Data Loss Prevention in R71.
- Question #366
What is the advantage for deploying SSL VPN in a DMZ, versus a LAN?
- Question #367
Management Portal should be installed on: (i) Management Server (ii) Security Gateway (iii) Dedicated Server
- Question #368
To change the default port of the Management Portal:
- Question #370
Math the SmartDashboard session status icons with the appropriate SmartWorkflow session status:
- Question #371
Check Point 156-315.75 Exam What is the command to upgrade a SecurePlatform NG with Application Intelligence (Al) R55 SmartCenter Server to VPN-1 NGX using a CD?
- Question #372
You have a production implementation of Management High Availability, at version VPN-1 NG with Application Intelligence R55. You must upgrade your two SmartCenter Servers to VPN-1...
- Question #373
You set up a mesh VPN Community, so your internal networks can access your partner's network, and vice versa. Your Security Policy encrypts only FTP and HTTP traffic through a VPN...
- Question #374
How does a standby SmartCenter Server receive logs from all Security Gateways, when an active SmartCenter Server fails over?
- Question #375
You want only RAS signals to pass through H.323 Gatekeeper and other H.323 protocols, passing directly between end points. Which routing mode in the VoIP Domain Gatekeeper do you s...
- Question #376
Which component functions as the Internal Certificate Authority for VPN-1 NGX?
- Question #377
You are configuring the VoIP Domain object for a Skinny Client Control Protocol (SCCP) environment protected by VPN-1 NGX. Which VoIP Domain object type can you use? Check Point 15...
- Question #378
What type of packet does a VPN-1 SecureClient send to its Policy Server, to report its Secure Configuration Verification status?
- Question #379
The following diagram illustrates how a VPN-1 SecureClient user tries to establish a VPN with hosts in the external_net and internal_net from the Internet. How is the Security Gate...
- Question #380
Which Security Servers can perform Content Security tasks, but CANNOT perform authentication tasks?
- Question #381
A cluster contains two members, with external interfaces 172.28.108.1 and 172.28.108.2. The internal interfaces are 10.4.8.1 and 10.4.8.2. The external cluster's IP address is 172....
- Question #382
How can you completely tear down a specific VPN tunnel in an intranet IKE VPN deployment?
- Question #383
How can you prevent delay-sensitive applications, such as video and voice traffic, from being dropped due to long queue using Check Point QoS solution?
- Question #384
You are preparing to deploy a VPN-1 Pro Gateway for VPN-1 NGX. You have five systems to choose from for the new Gateway, and you must conform to the following requirements: Opera...
- Question #385
Jerry is concerned that a denial-oF. service (DoS) attack may affect his VPN Communities. He decides to implement IKE DoS protection. Jerry needs to minimize the performance impact...
- Question #386
Stephanie wants to reduce the encryption overhead and improve performance for her mesh VPN Community. The Advanced VPN Properties screen below displays adjusted page settings:What...
- Question #387
Where can a Security Administrator adjust the unit of measurement (bps, Kbps or Bps), for Check Point QoS bandwidth?
- Question #388
Jacob is using a mesh VPN Community to create a sitE. to-site VPN. The VPN properties in this mesh Community display in this graphic: Which of the following statements is TRUE?
- Question #389
Problems sometimes occur when distributing IPSec packets to a few machines in a Load Sharing Multicast mode cluster, even though the machines have the same source and destination I...
- Question #390
Rachel is the Security Administrator for a university. The university's FTP servers have old hardware and software. Certain FTP commands cause the FTP servers to malfunction. Upgra...
- Question #391
You are reviewing SmartView Tracker entries, and see a Connection Rejection on a Check Point QoS rule. What causes the Connection Rejection?
- Question #392
Wayne configures an HTTP Security Server to work with the content vectoring protocol to screen forbidden sites. He has created a URI resource object using CVP with the following se...
- Question #393
You want to block corporate internal-net and localnet from accessing Web sites containing inappropriate content. You are using WebTrends for URL filtering. You have disabled VPN-1...
- Question #394
VPN-1 NGX includes a resource mechanism for working with the Common Internet File System (CIFS). However, this service only provides a limited level of actions for CIFS security. W...
- Question #395
Your organization has many VPN-1 Edge gateways at various branch offices, to allow VPN-1 Secure Client users to access company resources. For security reasons, your organization's...
- Question #396
Robert has configured a Common Internet File System (CIFS) resource to allow access to the public partition of his company's file server, on \\erisco\goldenapple\files\public. Robe...
- Question #397
You want to create an IKE VPN between two VPN-1 NGX Security Gateways, to protect two networks. The network behind one Gateway is 10.15.0.0/16, and network 192.168.9.0/24 is behind...
- Question #398
Which is the BEST configuration option to protect internal users from malicious Java code, without stripping Java scripts?
- Question #399
Your VPN Community includes three Security Gateways. Each Gateway has its own internal network defined as a VPN Domain. You must test the VPN-1 NGX routE. based VPN feature, withou...
- Question #400
Which Security Server can perform authentication tasks, but CANNOT perform content security tasks?
- Question #401
You are running a VPN-1 NG with Application Intelligence R54 SecurePlatform VPN-1 Pro Gateway. The Gateway also serves as a Policy Server. When you run patch add cd from the NGX CD...
- Question #402
Which type of service should a Security Administrator use in a Rule Base to control access to specific shared partitions on target machines?
- Question #403
Assume an intruder has compromised your current IKE Phase 1 and Phase 2 keys. Which of the following options will end the intruder's access, after the next Phase 2 exchange occurs?
- Question #404
How would you configure a rule in a Security Policy to allow SIP traffic from end point Net_Ato end point Net_B, through an NGX Security Gateway?