156-315.81.20 · Question #210
What are valid Policy Types in R81.X?
The correct answer is A. Access Control, Threat Prevention, QoS, Desktop Security. See the full explanation below for the reasoning.
Question
What are valid Policy Types in R81.X?
Options
- AAccess Control, Threat Prevention, QoS, Desktop Security
- BAccess Control, IPS, Threat Emulation, NAT
- CAccess Control, IPS, QoS, DLP
- DAccess Control, RemoteAccess VPN, NAT, IPS
How the community answered
(28 responses)- A79% (22)
- B4% (1)
- C4% (1)
- D14% (4)
Community Discussion
5The correct answer is A. In R81.X, the four valid Policy Types you will see in SmartConsole are Access Control, Threat Prevention, QoS, and Desktop Security, each serving a distinct enforcement role within the unified policy framework. IPS, Threat Emulation, NAT, and Remote Access VPN are not standalone Policy Types but are either blades, sub-policies, or features that operate under one of those four top-level types.
The question is asking which set of options represents actual Policy Types in the R81.X policy framework, not individual blades or rules inside a policy. Policy Type is the container category you select when you create a new policy package in SmartConsole. The four valid Policy Types are Access Control, Threat Prevention, QoS (Quality of Service), and Desktop Security, which is exactly what option A lists. The trap in the other options is that things like IPS, NAT, Threat Emulation, and DLP are either blades or sub-policies that live inside a Policy Type, not Policy Types themselves. For example, NAT is a tab within Access Control, and IPS is a blade that falls under Threat Prevention, so options B, C, and D mix levels of the hierarchy and are wrong.
Good, A is right. Are you clear on why IPS lives inside Threat Prevention, not as its own top-level type?
Been grinding this topic all week and D is the one that keeps lining up with what I see in the SmartConsole labs, because RemoteAccess VPN, NAT, and IPS all show up as distinct policy layers you actually configure separately under the Security Policies tab. Every time I picked A on a practice set I got it wrong, so I stopped second-guessing D and my scores jumped.
Bao, I appreciate how much lab time you put in, but the key word in that question is "layers" inside the Access Control policy specifically, which is what option A describes, not separate top-level policy tabs. RemoteAccess VPN, NAT, and IPS are their own policy types in the package, not layers within the same policy, so D mixes up two different concepts and A is the correct answer.