GET Real CheckPoint 156-215.80 Exam Questions With 100% Refund Guarantee Jul 08, 2022 [Q23-Q40]

Share

GET Real CheckPoint 156-215.80 Exam Questions With 100% Refund Guarantee Jul 08, 2022

Get Special Discount Offer on 156-215.80 Dumps PDF

NEW QUESTION 23
The most important part of a site-to-site VPN deployment is the ________ .

  • A. Internet
  • B. VPN gateways
  • C. Remote users
  • D. Encrypted VPN tunnel

Answer: D

Explanation:
Site to Site VPN
The basis of Site to Site VPN is the encrypted VPN tunnel. Two Security Gateways negotiate a link and create a VPN tunnel and each tunnel can contain more than one VPN connection. One Security Gateway can maintain more than one VPN tunnel at the same time.
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_Firewall_WebAdmin/92709.htm

 

NEW QUESTION 24
Which the following type of authentication on Mobile Access can NOT be used as the first authentication method?

  • A. Username and Password
  • B. Dynamic ID
  • C. Certificate
  • D. RADIUS

Answer: B

Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R77/CP_R77_Mobile_Access_WebAdmin/41587.htm

 

NEW QUESTION 25
Which Check Point software blade prevents malicious files from entering a network using virus signatures and anomaly-based protections from ThreatCloud?

  • A. Application Control
  • B. Anti-spam and Email Security
  • C. Antivirus
  • D. Firewall

Answer: C

Explanation:
Explanation/Reference:
Explanation: The enhanced Check Point Antivirus Software Blade uses real-time virus signatures and anomaly-based protections from ThreatCloud™, the first collaborative network to fight cybercrime, to detect and block malware at the gateway before users are affected.
Reference: https://www.checkpoint.com/products/antivirus-software-blade/

 

NEW QUESTION 26
When you upload a package or license to the appropriate repository in SmartUpdate, where is the package or license stored

  • A. SmartConsole installed device
  • B. Security Management Server
  • C. Check Point user center
  • D. Security Gateway

Answer: B

Explanation:
SmartUpdate installs two repositories on the Security Management server:
The Package Repository requires a separate license, in addition to the license for the Security Management server. This license should stipulate the number of nodes that can be managed in the Package Repository.

 

NEW QUESTION 27
Web Control Layer has been set up using the settings in the following dialogue:

Consider the following policy and select the BEST answer.

  • A. Traffic that does not match any rule in the subpolicy is dropped.
  • B. All employees can access only Youtube and Vimeo.
  • C. Anyone from internal network can access the internet, expect the traffic defined in drop rules 5.2, 5.5 and 5.6.
  • D. Access to Youtube and Vimeo is allowed only once a day.

Answer: C

Explanation:
Explanation/Reference:
Explanation:
Policy Layers and Sub-Policies
R80 introduces the concept of layers and sub-policies, allowing you to segment your policy according to your network segments or business units/functions. In addition, you can also assign granular privileges by layer or sub-policy to distribute workload and tasks to the most qualified administrators With layers, the rule base is organized into a set of security rules. These set of rules or layers, are

inspected in the order in which they are defined, allowing control over the rule base flow and the security functionalities that take precedence. If an "accept" action is performed across a layer, the inspection will continue to the next layer. For example, a compliance layer can be created to overlay across a cross-section of rules.
Sub-policies are sets of rules that are created for a specific network segment, branch office or business

unit, so if a rule is matched, inspection will continue through this subset of rules before it moves on to the next rule.
Sub-policies and layers can be managed by specific administrators, according to their permissions

profiles. This facilitates task delegation and workload distribution.
Reference: https://community.checkpoint.com/docs/DOC-1065

 

NEW QUESTION 28
When Identity Awareness is enabled, which identity source(s) is(are) used for Application Control?

  • A. AD Query and Browser-based Authentication
  • B. AD Query
  • C. Remote Access and RADIUS
  • D. RADIUS

Answer: A

Explanation:
Explanation
Identity Awareness gets identities from these acquisition sources:

 

NEW QUESTION 29
Under which file is the proxy arp configuration stored?

  • A. $FWDIR/conf/local.arp on the management server
  • B. $FWDIR/state/proxy_arp.conf on the management server
  • C. $FWDIR/state/_tmp/proxy.arp on the security gateway
  • D. $FWDIR/conf/local.arp on the gateway

Answer: D

Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R76SP.10/
CP_R76SP.10_Security_System_AdministrationGuide/105233.htm

 

NEW QUESTION 30
Vanessa is attempting to log into the Gaia Web Portal. She is able to login successfully. Then she tries the same username and password for SmartConsole but gets the message in the screenshot image below.
She has checked that the IP address of the Server is correct and the username and password she used to login into Gaia is also correct.

What is the most likely reason?

  • A. Check Point Management software authentication details are not automatically the same as the Operating System authentication details. Check that she is using the correct details.
  • B. SmartConsole Authentication is not allowed for Vanessa until a Super administrator has logged in first and cleared any other administrator sessions.
  • C. Authentication failed because Vanessa's username is not allowed in the new Threat Prevention console update checks even though these checks passed with Gaia.
  • D. Check Point R80 SmartConsole authentication is more secure than in previous versions and Vanessa requires a special authentication key for R80 SmartConsole. Check that the correct key details are used.

Answer: A

 

NEW QUESTION 31
Web Control Layer has been set up using the settings in the following dialogue:

Consider the following policy and select the BEST answer.

  • A. Traffic that does not match any rule in the subpolicy is dropped.
  • B. All employees can access only Youtube and Vimeo.
  • C. Anyone from internal network can access the internet, expect the traffic defined in drop rules 5.2, 5.5 and 5.6.
  • D. Access to Youtube and Vimeo is allowed only once a day.

Answer: C

Explanation:
Explanation/Reference:
Explanation:
Policy Layers and Sub-Policies
R80 introduces the concept of layers and sub-policies, allowing you to segment your policy according to your network segments or business units/functions. In addition, you can also assign granular privileges by layer or sub-policy to distribute workload and tasks to the most qualified administrators With layers, the rule base is organized into a set of security rules. These set of rules or layers, are

inspected in the order in which they are defined, allowing control over the rule base flow and the security functionalities that take precedence. If an "accept" action is performed across a layer, the inspection will continue to the next layer. For example, a compliance layer can be created to overlay across a cross-section of rules.
Sub-policies are sets of rules that are created for a specific network segment, branch office or business

unit, so if a rule is matched, inspection will continue through this subset of rules before it moves on to the next rule.
Sub-policies and layers can be managed by specific administrators, according to their permissions

profiles. This facilitates task delegation and workload distribution.
Reference: https://community.checkpoint.com/docs/DOC-1065

 

NEW QUESTION 32
You are the administrator for ABC Corp. You have logged into your R80 Management server. You are making some changes in the Rule Base and notice that rule No.6 has a pencil icon next to it.

What does this mean?

  • A. The rule No.6 has been marked for editing in your Management session.
  • B. The rule No.6 has been marked for editing in another Management session.
  • C. The rule No.6 has been marked for deletion in another Management session.
  • D. The rule No.6 has been marked for deletion in your Management session.

Answer: A

 

NEW QUESTION 33
Fill in the blank: RADIUS Accounting gets ______ data from requests generated by the accounting client

  • A. Location
  • B. Payload
  • C. Destination
  • D. Identity

Answer: D

Explanation:
Explanation
How RADIUS Accounting Works with Identity Awareness
RADIUS Accounting gets identity data from RADIUS Accounting Requests generated by the RADIUS
accounting client.

 

NEW QUESTION 34
Administrator Dave logs into R80 Management Server to review and makes some rule changes. He notices that there is a padlock sign next to the DNS rule in the Rule Base.

What is the possible explanation for this?

  • A. DNS Rule is a placeholder rule for a rule that existed in the past but was deleted.
  • B. Another administrator is logged into the Management and currently editing the DNS Rule.
  • C. DNS Rule is using one of the new feature of R80 where an administrator can mark a rule with the padlock icon to let other administrators know it is important.
  • D. This is normal behavior in R80 when there are duplicate rules in the Rule Base.

Answer: B

 

NEW QUESTION 35
Bob and Joe both have Administrator Roles on their Gaia Platform. Bob logs in on the WebUI and then Joe logs in through CLI. Choose what BEST describes the following scenario, where Bob and Joe are both logged in:

  • A. When Joe logs in, Bob will be logged out automatically.
  • B. The database will be locked by Bob and Joe will not be able to make any changes.
  • C. Bob will receive a prompt that Joe logged in.
  • D. Since they both are logged in on different interfaces, they both will be able to make changes.

Answer: B

 

NEW QUESTION 36
What does ExternalZone represent in the presented rule?

  • A. Interfaces that administrator has defined to be part of External Security Zone.
  • B. The Internet.
  • C. External interfaces of specific gateways.
  • D. External interfaces on all security gateways.

Answer: A

Explanation:
Explanation/Reference:
Explanation:
Configuring Interfaces
Configure the Security Gateway 80 interfaces in the Interfaces tab in the Security Gateway window.
To configure the interfaces:
1. From the Devices window, double-click the Security Gateway 80.
The Security Gateway window opens.
2. Select the Interfaces tab.
3. Select Use the following settings. The interface settings open.
4. Select the interface and click Edit.
The Edit window opens.
5. From the IP Assignment section, configure the IP address of the interface:
1. Select Static IP.
2. Enter the IP address and subnet mask for the interface.
6. In Security Zone, select Wireless, DMS, External, or Internal. Security zone is a type of zone, created by a bridge to easily create segments, while maintaining IP addresses and router configurations. Security zones let you choose if to enable or not the firewall between segments.
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_SmartProvisioning_WebAdmin/16741.htm

 

NEW QUESTION 37
Fill in the blank: The command __________ provides the most complete restoration of a R80 configuration.

  • A. fwm dbimport -p <export file>
  • B. upgrade_import
  • C. cpconfig
  • D. cpinfo -recover

Answer: B

Explanation:
Explanation
(Should be "migrate import")
"migrate import" Restores backed up configuration for R80 version, in previous versions the command was " upgrade_import ".

 

NEW QUESTION 38
Fill in the blanks: A security Policy is created in _________ , stored in the _________ , and
Distributed to the various __________ .

  • A. SmartConsole, Security Management Server, Security Gateways
  • B. The Check Point database, SmartConsole, Security Gateways
  • C. SmartConsole, Security Gateway, Security Management Servers
  • D. Rule base, Security Management Server, Security Gateways

Answer: D

 

NEW QUESTION 39
A security Policy is created in _________ , stored in the _________ , and Distributed to the various __________ .

  • A. Rule base, Security Management Server, Security Gateways
  • B. The Check Point database, SmartConsole, Security Gateways
  • C. SmartConsole, Security Gateway, Security Management Servers
  • D. SmartConsole, Security Management Server, Security Gateways

Answer: D

 

NEW QUESTION 40
......


The benefit in Obtaining the 156-215.80 Exam Certification

  • Capture the attention of recruiters
  • Gain employer recognition for promotions and raises
  • This 156-215.80 exam covers a different technology to meet the needs of varying job roles
  • Score CP job opportunities

 

PDF Download CheckPoint Test To Gain Brilliante Result!: https://www.passcollection.com/156-215.80_real-exams.html

Provide Updated CheckPoint 156-215.80 Dumps as Practice Test and PDF: https://drive.google.com/open?id=1xOh2qi2Q-X0AZ3v2nO3Gl81ZoRFPWVHP