Real4Prep 156-215.81.20 Dumps Real Exam Questions Test Engine Dumps Training [Q188-Q209]

Share

Real4Prep 156-215.81.20 Dumps Real Exam Questions Test Engine Dumps Training

CheckPoint 156-215.81.20 exam dumps and online Test Engine

NEW QUESTION # 188
Examine the sample Rule Base.

What will be the result of a verification of the policy from SmartConsole?

  • A. No errors or Warnings
  • B. Verification Error. Rule 4 (Web Inbound) hides Rule 6 (Webmaster access)
  • C. Verification Error. Empty Source-List in Rule 5 (Mail Inbound)
  • D. Verification Error. Rule 7 (Clean-Up Rule) hides Implicit Clean-up Rule

Answer: B


NEW QUESTION # 189
Fill in the blank: SmartConsole, SmartEvent GUI client, and ___________ allow viewing of billions of consolidated logs and shows them as prioritized security events.

  • A. SmartView Web Application
  • B. SmartMonitor
  • C. SmartTracker
  • D. SmartReporter

Answer: A


NEW QUESTION # 190
What is the purpose of Captive Portal?

  • A. It manages user permission in SmartConsole
  • B. It authenticates users, allowing them access to the Internet and corporate resources
  • C. It provides remote access to SmartConsole
  • D. It authenticates users, allowing them access to the Gaia OS

Answer: B


NEW QUESTION # 191
Fill in the blank:
When LDAP is integrated with Check Point Security Management, it is then referred to as _______.

  • A. UserCheck
  • B. User Administration
  • C. User Center
  • D. User Directory

Answer: D


NEW QUESTION # 192
A security zone is a group of one or more network interfaces from different centrally managed gateways.
What is considered part of the zone?

  • A. The firewall rule can be configured to include one or more subnets in a zone.
  • B. The zone is based on the network topology and determined according to where the interface leads to.
  • C. Security Zones are not supported by Check Point firewalls.
  • D. The local directly connected subnet defined by the subnet IP and subnet mask.

Answer: B


NEW QUESTION # 193
What object type would you use to grant network access to an LDAP user group?

  • A. SmartDirectory Group
  • B. User Group
  • C. Access Role
  • D. Group Template

Answer: B


NEW QUESTION # 194
Which Check Point software blade monitors Check Point devices and provides a picture of network and security performance?

  • A. Application Control
  • B. Monitoring
  • C. Threat Emulation
  • D. Logging and Status

Answer: B


NEW QUESTION # 195
Which two of these Check Point Protocols are used by?

  • A. FWD and CPLOG
  • B. ELA and CPD
  • C. ELA and CPLOG
  • D. FWD and LEA

Answer: D


NEW QUESTION # 196
What is the purpose of a Clean-up Rule?

  • A. Clean-up Rules do not server any purpose.
  • B. Provide a metric for determining unnecessary rules.
  • C. Used to better optimize a policy.
  • D. To drop any traffic that is not explicitly allowed.

Answer: D


NEW QUESTION # 197
Which information is included in the "Extended Log" tracking option, but is not included in the "Log" tracking option?

  • A. data type information
  • B. file attributes
  • C. destination port
  • D. application information

Answer: D


NEW QUESTION # 198
Can you use the same layer in multiple policies or rulebases?

  • A. Yes - a layer can be shared with multiple policies and rules.
  • B. Yes - but it must be copied and pasted with a different name.
  • C. No - layers cannot be shared or reused, but an identical one can be created.
  • D. No - each layer must be unique.

Answer: A


NEW QUESTION # 199
When installing a dedicated R80 SmartEvent server, what is the recommended size of the root partition?

  • A. Less than 20GB
  • B. More than 10GB and less than 20 GB
  • C. Any size
  • D. At least 20GB

Answer: D


NEW QUESTION # 200
You have created a rule at the top of your Rule Base to permit Guest Wireless access to the Internet. However, when guest users attempt to reach the Internet, they are not seeing the splash page to accept your Terms of Service, and cannot access the Internet.
How can you fix this?

  • A. On the Security Management Server object, check the box "Identity Logging"
  • B. On the firewall object, Legacy Authentication screen, check "Enable Identity Captive Portal"
  • C. In the Captive Portal screen of Global Properties, check "Enable Identity Captive Portal"
  • D. Right click Accept in the rule, select "More", and then check "Enable Identity Captive Portal"

Answer: D


NEW QUESTION # 201
Which SmartConsole tab is used to monitor network and security performance?

  • A. Logs & Monitor
  • B. Manage & Settings
  • C. Gateway & Servers
  • D. Security Policies

Answer: A


NEW QUESTION # 202
The "Hit count" feature allows tracking the number of connections that each rule matches.
Will the Hit count feature work independently from logging and Track the hits even if the Track option is set to "None"?

  • A. No, it will not work independently because hit count requires all rules to be logged
  • B. Yes, it will work independently because when you enable Hit Count, the SMS collects the data from supported Security Gateways
  • C. No, it will not work independently. Hit Count will be shown only for rules with Track options set as Log or alert
  • D. Yes, it will work independently as long as "analyze all rules" tick box is enabled on the Security Gateway

Answer: B


NEW QUESTION # 203
Which software blade does NOT accompany the Threat Prevention policy?

  • A. Application Control and URL Filtering
  • B. Threat Emulation
  • C. IPS
  • D. Anti-virus

Answer: A


NEW QUESTION # 204
Which encryption algorithm is the least secured?

  • A. DES
  • B. 3DES
  • C. AES-256
  • D. AES-128

Answer: A


NEW QUESTION # 205
Can multiple administrators connect to a Security Management Server at the same time?

  • A. Yes, all administrators can modify a network object at the same time
  • B. No, only one can be connected
  • C. Yes, every administrator has their own username, and works in a session that is independent of other administrators
  • D. Yes, but only one has the right to write

Answer: C


NEW QUESTION # 206
True or False: In a Distributed Environment, a Central License can be installed via CLI on a Security Gateway

  • A. True, CLI is the prefer method for Licensing
  • B. False, Central License are installed via Gaia on Security Gateways
  • C. False, Central License are handled via Security Management Server
  • D. True, Central License can be installed with CPLIC command on a Security Gateway

Answer: D


NEW QUESTION # 207
Which statement is NOT TRUE about Delta synchronization?

  • A. Transfers changes in the Kernel tables between cluster members
  • B. Using UDP Multicast or Broadcast on port 8116
  • C. Quicker than Full sync
  • D. Using UDP Multicast or Broadcast on port 8161

Answer: D


NEW QUESTION # 208
How many users can have read/write access in Gaia Operating System at one time?

  • A. Infinite
  • B. Two
  • C. Three
  • D. One

Answer: D


NEW QUESTION # 209
......

CheckPoint 156-215.81.20: Selling CCSA Products and Solutions: https://www.real4prep.com/156-215.81.20-exam.html

Reliable 156-215.81.20 Exam Tips Test Pdf Exam Material: https://drive.google.com/open?id=1tMp6KYXYdBn12-1MePg_j8pXxmuvuuA1