CheckPoint 156-315.81.20 Real Exam Questions Test Engine Dumps Training With 615 Questions [Q313-Q335]

Share

CheckPoint 156-315.81.20 Real Exam Questions Test Engine Dumps Training With 615 Questions

156-315.81.20 Actual Questions Answers PDF 100% Cover Real Exam Questions

NEW QUESTION # 313
If the Active Security Management Server fails or if it becomes necessary to change the Active to Standby, the following steps must be taken to prevent data loss. Providing the Active Security Management Server is responsive, which if these steps should NOT be performed:

  • A. Rename the hostname of the Standby member to match exactly the hostname of the Active member.
  • B. Manually synchronize the Active and Standby Security Management Servers.
  • C. Change the Standby Security Management Server to Active.
  • D. Change the Active Security Management Server to Standby.

Answer: A


NEW QUESTION # 314
Fill in the blank: A new license should be generated and installed in all of the following situations EXCEPT when ________ .

  • A. The license is attached to the wrong Security Gateway.
  • B. The license is upgraded.
  • C. The existing license expires.
  • D. The IP address of the Security Management or Security Gateway has changed.

Answer: D


NEW QUESTION # 315
SandBlast has several functional components that work together to ensure that attacks are prevented in real-time.
Which the following is NOT part of the SandBlast component?

  • A. Mobile Access
  • B. Mail Transfer Agent
  • C. Threat Emulation
  • D. Threat Cloud

Answer: A


NEW QUESTION # 316
What ports are used for SmartConsole to connect to the Security Management Server?

  • A. ICA_Pull (18210), CPMI (18190) https (443)
  • B. CPMI (18190)
  • C. CPM (19009), CPMI (18190) https (443)
  • D. CPM (19009), CPMI (18190) CPD (18191)

Answer: C


NEW QUESTION # 317
One of major features in R81 SmartConsole is concurrent administration.
Which of the following is NOT possible considering that AdminA, AdminB and AdminC are editing the same Security Policy?

  • A. AdminA, AdminB and AdminC are editing three different rules at the same time.
  • B. A lock icon shows that a rule or an object is locked and will be available.
  • C. AdminA and AdminB are editing the same rule at the same time.
  • D. A lock icon next to a rule informs that any Administrator is working on this particular rule.

Answer: C


NEW QUESTION # 318
As an administrator, you may be required to add the company logo to reports.
To do this, you would save the logo as a PNG file with the name 'cover-company-logo.png' and then copy that image file to which directory on the SmartEvent server?

  • A. $RTDIR/smartview/conf
  • B. SFWDIR/smartevent/conf
  • C. $RTDIR/smartevent/conf
  • D. $FWDIR/smartview/conf

Answer: A


NEW QUESTION # 319
Check Point Management (cpm) is the main management process in that it provides the architecture for a consolidates management console. CPM allows the GUI client and management server to communicate via web services using ___________.

  • A. TCP Port 18190
  • B. TCP Port 18191
  • C. TCP Port 18209
  • D. TCP port 19009

Answer: D


NEW QUESTION # 320
After having saved the Clish Configuration with the "save configuration config.txt" command, where can you find the config.txt file?

  • A. You have to launch the WebUI and go to "Config" -> "Export Config File" and specifiy the destination directory of your local file system.
  • B. You will find it in the home directory of your user account (e.g. /home/admin/)
  • C. You can locate the file via SmartConsole > Command Line.
  • D. You cannot locate the file in the file system since Clish does not have any access to the bash file system

Answer: B


NEW QUESTION # 321
What object type would you use to grant network access to an LDAP user group?

  • A. SmartDirectory Group
  • B. Group Template
  • C. User Group
  • D. Access Role

Answer: D


NEW QUESTION # 322
When attempting to start a VPN tunnel, in the logs the error "no proposal chosen" is seen numerous times. No other VPN-related entries are present.
Which phase of the VPN negotiations has failed?

  • A. IKE Phase 1
  • B. IPSEC Phase 1
  • C. IPSEC Phase 2
  • D. IKE Phase 2

Answer: A


NEW QUESTION # 323
Vanessa is expecting a very important Security Report. The Document should be sent as an attachment via e-mail. An e-mail with Security_report.pdf file was delivered to her e-mail inbox. When she opened the PDF file, she noticed that the file is basically empty and only few lines of text are in it. The report is missing some graphs, tables and links.
Which component of SandBlast protection is her company using on a Gateway?

  • A. SandBlast Threat Emulation
  • B. Check Point Protect
  • C. SandBlast Agent
  • D. SandBlast Threat Extraction

Answer: D


NEW QUESTION # 324
When setting up an externally managed log server, what is one item that will not be configured on the R81 Security Management Server?

  • A. NAT
  • B. FQDN
  • C. IP
  • D. SIC

Answer: A


NEW QUESTION # 325
Alice works for a big security outsourcing provider company and as she receives a lot of change requests per day she wants to use for scripting daily (asks the API services from Check Point fof the Management API. Firstly she needs to be aware if the API services are running for the management.
Which of the following Check Point Command is true:

  • A. status mgmt apt
  • B. api status
  • C. status api
  • D. api mgmt status

Answer: B


NEW QUESTION # 326
Which of the following links will take you to the SmartView web application?

  • A. https://<Security Management Server IP Address>/smartview/
  • B. https://<Security Management Server IP Address>/smartview
  • C. https://<Security Management Server host name>/smartviewweb/
  • D. https://<Security Management Server host name>smartviewweb

Answer: A


NEW QUESTION # 327
Which of the following statements about SecureXL NAT Templates is true?

  • A. NAT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are enabled by default and work only if Accept Templates are enabled.
  • B. ACCEPT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if NAT Templates are disabled.
  • C. NAT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if Accept Templates are disabled.
  • D. DROP Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if NAT Templates are disabled.

Answer: A


NEW QUESTION # 328
Which of the following blades is NOT subscription-based and therefore does not have to be renewed on a regular basis?

  • A. Anti-Virus
  • B. Advanced Networking Blade
  • C. Application Control
  • D. Threat Emulation

Answer: B


NEW QUESTION # 329
Check Point ClusterXL Active/Active deployment is used when:

  • A. There is Load Sharing solution set up.
  • B. There is High Availability solution set up.
  • C. Only when there is Unicast solution set up.
  • D. Only when there is Multicast solution set up.

Answer: A


NEW QUESTION # 330
The Compliance Blade allows you to search for text strings in many windows and panes, to search for a value in a field, what would your syntax be?

  • A. name field:string
  • B. field_name:string
  • C. name_field:string
  • D. field name:string

Answer: B


NEW QUESTION # 331
According to out of the box SmartEvent policy, which blade will automatically be correlated into events?

  • A. IPS
  • B. Firewall
  • C. VPN
  • D. HTTPS

Answer: A


NEW QUESTION # 332
Which Correction mechanisms are available with ClusterXL under R81.20?

  • A. SDF (Sticky Decision Function) and Flush and ACK
  • B. Correction Mechanisms are only available of Maestro Hyperscale Orchestrators
  • C. Dispatcher (Early Correction) and Firewall (Late Correction)
  • D. Pre-Correction and SDF (Sticky Decision Function)

Answer: A


NEW QUESTION # 333
What Factor preclude Secure XL Templating?

  • A. Source Port Ranges/Encrypted Connections
  • B. CoreXL
  • C. IPS
  • D. ClusterXL in load sharing Mode

Answer: A


NEW QUESTION # 334
According to the policy installation flow the transfer state (CPTA) is responsible for the code generated by the FWM. On the Security Gateway side a process receives them and first stores them Into a temporary directory.
Which process is true for receiving these Tiles;

  • A. RAD
  • B. FWD
  • C. CPD
  • D. FWM

Answer: B


NEW QUESTION # 335
......

PracticeDump 156-315.81.20 Exam Practice Test Questions: https://certkingdom.practicedump.com/156-315.81.20-practice-dumps.html