Get Started 156-215.81 Exam [2022] Dumps CheckPoint PDF Questions [Q223-Q239]

Share

Get Started: 156-215.81 Exam [2022] Dumps CheckPoint PDF Questions

156-215.81 Premium Exam Engine pdf Download

NEW QUESTION 223
Which directory holds the SmartLog index files by default?

  • A. $FWDIR/log
  • B. $FWDIR/smartlog
  • C. $SMARTLOG/dir
  • D. $SMARTLOGDIR/data

Answer: D

 

NEW QUESTION 224
Which one of these features is NOT associated with the Check Point URL Filtering and Application Control Blade?

  • A. Configure rules to limit the available network bandwidth for specified users or groups.
  • B. Make rules to allow or block applications and Internet sites for individual applications, categories, and risk levels.
  • C. Use UserCheck to help users understand that certain websites are against the company's security policy.
  • D. Detects and blocks malware by correlating multiple detection engines before users are affected.

Answer: D

 

NEW QUESTION 225
Which of the following technologies extracts detailed information from packets and stores that information in state tables?

  • A. INSPECT Engine
  • B. Application Layer Firewall
  • C. Next-Generation Firewall
  • D. Packet Filtering

Answer: C

 

NEW QUESTION 226
What is also referred to as Dynamic NAT?

  • A. Automatic NAT
  • B. Manual NAT
  • C. Static NAT
  • D. Hide NAT

Answer: D

 

NEW QUESTION 227
Fill in the bank: In Office mode, a Security Gateway assigns a remote client to an IP address once___________.

  • A. the user connects
  • B. office mode is initiated
  • C. the user requests a connection
  • D. the user connects and authenticates

Answer: D

Explanation:
Office Mode enables a Security Gateway to assign a remote client an IP address. The assignment takes place once the user connects and authenticates. The assignment lease is renewed as long as the user is connected.

 

NEW QUESTION 228
Fill in the blank: The R80 SmartConsole, SmartEvent GUI client, and _______ consolidate billions of logs and shows them as prioritized security events.

  • A. SmartReporter
  • B. SmartView Web Application
  • C. SmartTracker
  • D. SmartMonitor

Answer: B

Explanation:
Event Analysis with SmartEvent
The SmartEvent Software Blade is a unified security event management and analysis solution that delivers real-time, graphical threat management information. SmartConsole, SmartView Web Application, and the SmartEvent GUI client consolidate billions of logs and show them as prioritized security events so you can immediately respond to security incidents, and do the necessary actions to prevent more attacks. You can customize the views to monitor the events that are most important to you. You can move from a high level view to detailed forensic analysis in a few clicks. With the free-text search and suggestions, you can quickly run data analysis and identify critical security events.

 

NEW QUESTION 229
You want to store the GAiA configuration in a file for later reference. What command should you use?

  • A. show config -f <filename>
  • B. write mem <filename>
  • C. save config -o <filename>
  • D. save configuration <filename>

Answer: D

 

NEW QUESTION 230
Which backup utility captures the most information and tends to create the largest archives?

  • A. Database Revision
  • B. migrate export
  • C. backup
  • D. snapshot

Answer: D

 

NEW QUESTION 231
Which tool CANNOT be launched from SmartUpdate R77?

  • A. IP Appliance Voyager
  • B. GAiA WebUI
  • C. cpinfo
  • D. snapshot

Answer: D

 

NEW QUESTION 232
What is the Manual Client Authentication TELNET port?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A

 

NEW QUESTION 233
Using R80 Smart Console, what does a "pencil icon" in a rule mean?

  • A. This rule is managed by check point's SOC
  • B. I have changed this rule
  • C. Someone else has changed this rule
  • D. This rule can't be changed as it's an implied rule

Answer: B

 

NEW QUESTION 234
You want to reset SIC between smberlin and sgosaka.

In SmartDashboard, you choose sgosaka, Communication, Reset. On sgosaka, you start cpconfig, choose Secure Internal Communication and enter the new SIC Activation Key. The screen reads The SIC was successfully initialized and jumps back to the menu. When trying to establish a connection, instead of a working connection, you receive this error message:

What is the reason for this behavior?

  • A. The Gateway was not rebooted, which is necessary to change the SIC key.
  • B. The check Point services on the Gateway were not restarted because you are still in the cpconfig utility.
  • C. You must first initialize the Gateway object in SmartDashboard (i.e., right-click on the object, choose Basic Setup > Initialize).
  • D. The activation key contains letters that are on different keys on localized keyboards. Therefore, the activation can not be typed in a matching fashion.

Answer: B

 

NEW QUESTION 235
In order to modify Security Policies the administrator can use which of the following tools? Select the BEST answer.

  • A. SmartConsole and WebUI on the Security Management Server.
  • B. mgmt_cli or WebUI on Security Gateway and SmartConsole on the Security Management Server.
  • C. Command line of the Security Management Server or mgmt_cli.exe on any Windows computer.
  • D. SmartConsole or mgmt_cli on any computer where SmartConsole is installed.

Answer: D

 

NEW QUESTION 236
Which of the following is TRUE about the Check Point Host object?

  • A. When you upgrade to R80 from R77.30 or earlier versions, Check Point Host objects are converted to gateway objects.
  • B. Check Point Host can act as a firewall.
  • C. Check Point Host has no routing ability even if it has more than one interface installed.
  • D. Check Point Host is capable of having an IP forwarding mechanism.

Answer: C

Explanation:
A Check Point host is a host with only one interface, on which Check Point software has been installed, and which is managed by the Security Management server. It is not a routing mechanism and is not capable of IP forwarding.

 

NEW QUESTION 237
There are two R77.30 Security Gateways in the Firewall Cluster. They are named FW_A and FW_B. The cluster is configured to work as HA (High availability) with default cluster configuration. FW_A is configured to have higher priority than FW_B. FW_A was active and processing the traffic in the morning. FW_B was standby. Around 1100 am, its interfaces went down and this caused a failover. FW_B became active. After an hour, FW_A's interface issues were resolved and it became operational. When it re-joins the cluster, will it become active automatically?

  • A. No, since "maintain current active cluster member" option is enabled by default on the Global Properties
  • B. Yes, since "Switch to higher priority cluster member" option on the cluster object properties is enabled by default
  • C. Yes, since "Switch to higher priority cluster member" option is enabled by default on the Global Properties
  • D. No, since "maintain current active cluster member" option on the cluster object properties is enabled by default

Answer: D

Explanation:
What Happens When a Security Gateway Recovers?
In a Load Sharing configuration, when the failed Security Gateway in a cluster recovers, all connections are redistributed among all active members. High Availability and Load Sharing in ClusterXL ClusterXL Administration Guide R77 Versions | 31 In a High Availability configuration, when the failed Security Gateway in a cluster recovers, the recovery method depends on the configured cluster setting. The options are:
* Maintain Current Active Security Gateway means that if one member passes on control to a lower priority member, control will be returned to the higher priority member only if the lower priority member fails. This mode is recommended if all members are equally capable of processing traffic, in order to minimize the number of failover events.
* Switch to Higher Priority Security Gateway means that if the lower priority member has control and the higher priority member is restored, then control will be returned to the higher priority member. This mode is recommended if one member is better equipped for handling connections, so it will be the default Security Gateway.

 

NEW QUESTION 238
Identity Awareness allows the Security Administrator to configure network access based on which of the following?

  • A. Network location, identity of a user, and identity of a machine
  • B. Browser-Based Authentication, identity of a user, and network location
  • C. Identity of the machine, username, and certificate
  • D. Name of the application, identity of the user, and identity of the machine

Answer: A

 

NEW QUESTION 239
......

Pass Your CheckPoint Exam with 156-215.81 Exam Dumps: https://www.actualtestsquiz.com/156-215.81-test-torrent.html

Verified 156-215.81 Bundle Real Exam Dumps PDF: https://drive.google.com/open?id=17vSbRjgiDX85H8VyUhX4YrH4UBCRxEpq