Get May-2023 updated 156-215.81 Certification Exam Sample Questions [Q16-Q39]

Share

Get May-2023 updated 156-215.81 Certification Exam Sample Questions

156-215.81 Study Guide Cover to Cover as Literally


The CheckPoint 156-215.81 exam is an important certification for security professionals looking to advance their careers in the field of network security. It validates the skills and knowledge required to configure and manage Check Point Security Gateway and Management Software Blades effectively. The exam is based on real-world scenarios and requires candidates to demonstrate their ability to apply their knowledge to solve complex security problems.


The CheckPoint 156-215.81 exam has been updated to the R81 version to align with the latest technology advancements and security threats. The exam covers topics such as Security Gateway configuration, network address translation, VPN configuration, user authentication, and identity awareness. Candidates who pass this exam demonstrate their proficiency in managing network security systems using Check Point technologies.

 

NEW QUESTION # 16
If the first packet of an UDP session is rejected by a security policy, what does the firewall send to the client?

  • A. TCP FIN
  • B. Nothing
  • C. TCP RST
  • D. ICMP unreachable

Answer: B


NEW QUESTION # 17
Where is the "Hit Count" feature enabled or disabled in SmartConsole?

  • A. On the Policy layer
  • B. In Global Properties for the Security Management Server
  • C. On the Policy Package
  • D. On each Security Gateway

Answer: D


NEW QUESTION # 18
Which of the following licenses are considered temporary?

  • A. Evaluation and Subscription
  • B. Plug-and-play (Trial) and Evaluation
  • C. Perpetual and Trial
  • D. Subscription and Perpetual

Answer: B


NEW QUESTION # 19
When an Admin logs into SmartConsole and sees a lock icon on a gateway object and cannot edit that object, what does that indicate?

  • A. The gateway is not powered on.
  • B. Incorrect routing to reach the gateway.
  • C. Another Admin has made an edit to that object and has yet to publish the change.
  • D. The Admin would need to login to Read-Only mode

Answer: B


NEW QUESTION # 20
What are the three components for Check Point Capsule?

  • A. Capsule Docs, Capsule Cloud, Capsule Connect
  • B. Capsule Workspace, Capsule Docs, Capsule Cloud
  • C. Capsule Workspace, Capsule Docs, Capsule Connect
  • D. Capsule Workspace, Capsule Cloud, Capsule Connect

Answer: B


NEW QUESTION # 21
Choose what BEST describes users on Gaia Platform.

  • A. There are two default users and neither can be deleted.
  • B. There are two default users and one cannot be deleted.
  • C. There is one default user that can be deleted.
  • D. There is one default user that cannot be deleted.

Answer: B


NEW QUESTION # 22
Tom has connected to the R81 Management Server remotely using SmartConsole and is in the process of making some Rule Base changes, when he suddenly loses connectivity. Connectivity is restored shortly afterward.
What will happen to the changes already made:

  • A. Tom will have to reboot his SmartConsole computer, clear the cache and restore changes.
  • B. Tom will have to reboot his SmartConsole computer, and access the Management cache store on that computer, which is only accessible after a reboot.
  • C. Tom's changes will have been stored on the Management when he reconnects and he will not lose any of this work.
  • D. Tom's changes will be lost since he lost connectivity and he will have to start again.

Answer: C


NEW QUESTION # 23
In Logging and Monitoring, the tracking options are Log, Detailed Log and Extended Log. Which of the following options can you add to each Log, Detailed Log and Extended Log?

  • A. Suppression
  • B. Accounting/Extended
  • C. Accounting/Suppression
  • D. Accounting

Answer: C


NEW QUESTION # 24
What are the Threat Prevention software components available on the Check Point Security Gateway?

  • A. IDS, Forensics, Anti-Virus, Sandboxing
  • B. IPS, Anti-Bot, Anti-Virus, SandBlast and Macro Extraction
  • C. IPS, Anti-Bot, Anti-Virus, Threat Emulation and Threat Extraction
  • D. IPS, Threat Emulation and Threat Extraction

Answer: C


NEW QUESTION # 25
On R81.10 when configuring Third-Party devices to read the logs using the LEA (Log Export API) the default Log Server uses port:

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: D


NEW QUESTION # 26
Which application is used for the central management and deployment of licenses and packages?

  • A. SmartUpdate
  • B. SmartProvisioning
  • C. SmartLicense
  • D. Deployment Agent

Answer: A

Explanation:
Reference:
topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_Installation_and_Upgrade_Guide/206206


NEW QUESTION # 27
Which of the following is considered a "Subscription Blade", requiring renewal every 1-3 years?

  • A. IPS blade
  • B. Identity Awareness Blade
  • C. Firewall Blade
  • D. IPSEC VPN Blade

Answer: A


NEW QUESTION # 28
Examine the sample Rule Base.

What will be the result of a verification of the policy from SmartConsole?

  • A. Verification Error. Rule 7 (Clean-Up Rule) hides Implicit Clean-up Rule
  • B. Verification Error. Rule 4 (Web Inbound) hides Rule 6 (Webmaster access)
  • C. No errors or Warnings
  • D. Verification Error. Empty Source-List in Rule 5 (Mail Inbound)

Answer: B


NEW QUESTION # 29
You want to reset SIC between smberlin and sgosaka.

In SmartDashboard, you choose sgosaka, Communication, Reset. On sgosaka, you start cpconfig, choose Secure Internal Communication and enter the new SIC Activation Key. The screen reads The SIC was successfully initialized and jumps back to the menu.
When trying to establish a connection, instead of a working connection, you receive this error message:

What is the reason for this behavior?

  • A. The check Point services on the Gateway were not restarted because you are still in the cpconfig utility.
  • B. You must first initialize the Gateway object in SmartDashboard (i.e., right-click on the object, choose Basic Setup > Initialize).
  • C. The activation key contains letters that are on different keys on localized keyboards. Therefore, the activation can not be typed in a matching fashion.
  • D. The Gateway was not rebooted, which is necessary to change the SIC key.

Answer: A


NEW QUESTION # 30
What are the two elements of address translation rules?

  • A. Original packet and translated packet
  • B. Untranslated packet and manipulated packet
  • C. Translated packet and untranslated packet
  • D. Manipulated packet and original packet

Answer: A


NEW QUESTION # 31
Packet acceleration (SecureXL) identifies connections by several attributes.
Which of the attributes is NOT used for identifying connection?

  • A. Source Port
  • B. Destination Address
  • C. TCP Acknowledgment Number
  • D. Source Address

Answer: C


NEW QUESTION # 32
In which VPN community is a satellite VPN gateway not allowed to create a VPN tunnel with another satellite VPN gateway?

  • A. Meshed
  • B. Pentagon
  • C. Combined
  • D. Star

Answer: D


NEW QUESTION # 33
Which authentication scheme requires a user to possess a token?

  • A. Check Point password
  • B. TACACS
  • C. SecurID
  • D. RADIUS

Answer: C

Explanation:
SecurID
SecurID requires users to both possess a token authenticator and to supply a PIN or password


NEW QUESTION # 34
A network administrator has informed you that they have identified a malicious host on the network, and instructed you to block it. Corporate policy dictates that firewall policy changes cannot be made at this time. What tool can you use to block this traffic?

  • A. Anti-Malware protection
  • B. Suspicious Activity Monitoring (SAM) rules
  • C. Policy-based routing
  • D. Anti-Bot protection

Answer: C

Explanation:
https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_LoggingAndMonitoring_AdminGuide/Topics-LMG/Monitoring-Suspicious-Activity-Rules.htm


NEW QUESTION # 35
Which repositories are installed on the Security Management Server by SmartUpdate?

  • A. Update and License & Contract
  • B. License & Contract and Package Repository
  • C. Package Repository and Licenses
  • D. License and Update

Answer: B


NEW QUESTION # 36
When changes are made to a Rule base, it is important to _______________ to enforce changes.

  • A. Install policy
  • B. Save changes
  • C. Activate policy
  • D. Publish database

Answer: D


NEW QUESTION # 37
Traffic from source 192.168.1.1 is going to www.google.com. The Application Control Blade on the gateway is inspecting the traffic. Assuming acceleration is enable which path is handling the traffic?

  • A. Accelerated Path
  • B. Slow Path
  • C. Medium Path
  • D. Fast Path

Answer: B


NEW QUESTION # 38
The WebUI offers three methods for downloading Hotfixes via CPUSE. One of them is Automatic method. How many times per day will CPUSE agent check for hotfixes and automatically download them?

  • A. Every three hours
  • B. Seven times per day
  • C. Six times per day
  • D. Every two hours

Answer: A


NEW QUESTION # 39
......


The Check Point Certified Security Administrator R81 exam consists of 90 multiple-choice questions that must be completed within 90 minutes. The exam tests the candidate's knowledge and understanding of Check Point Security Gateway and Management Software Blades systems, as well as their ability to identify and resolve security issues. To pass the exam, candidates must achieve a score of at least 70%.

 

100% Real & Accurate 156-215.81 Questions and Answers with Free and Fast Updates: https://www.actual4cert.com/156-215.81-real-questions.html

Get Unlimited Access to 156-215.81 Certification Exam Cert Guide: https://drive.google.com/open?id=1t7pr00tuh28AKZgPfuav9xt_JeMN2AkR