Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Checkpoint 156-215.81 Practice Exam with Questions & Answers | Set: 5

Questions 41

If the Active Security Management Server fails or if it becomes necessary to change the Active to Standby, the following steps must be taken to prevent data loss. Providing the Active Security Management Server is responsible, which of these steps should NOT be performed:

Options:
A.

Rename the hostname of the Standby member to match exactly the hostname of the Active member.

B.

Change the Standby Security Management Server to Active.

C.

Change the Active Security Management Server to Standby.

D.

Manually synchronize the Active and Standby Security Management Servers.

Checkpoint 156-215.81 Premium Access
Questions 42

What are valid authentication methods for mutual authenticating the VPN gateways?

Options:
A.

Pre-shared Secret and PKI Certificates

B.

PKI Certificates and Kerberos Tickets

C.

Pre-Shared Secrets and Kerberos Ticket

D.

PKI Certificates and DynamiciD OTP

Questions 43

What command from the CLI would be used to view current licensing?

Options:
A.

license view

B.

fw ctl tab -t license -s

C.

show license -s

D.

cplic print

Questions 44

From the Gaia web interface, which of the following operations CANNOT be performed on a Security Management Server?

Options:
A.

Verify a Security Policy

B.

Open a terminal shell

C.

Add a static route

D.

View Security Management GUI Clients

Questions 45

Which icon in the WebUI indicates that read/write access is enabled?

Options:
A.

Eyeglasses

B.

Pencil

C.

Padlock

D.

Book

Questions 46

How many layers make up the TCP/IP model?

Options:
A.

2

B.

7

C.

6

D.

4

Questions 47

Which of the following is NOT a policy type available for each policy package?

Options:
A.

Threat Emulation

B.

Access Control

C.

Desktop Security

D.

Threat Prevention

Questions 48

Which tool is used to enable ClusterXL?

Options:
A.

SmartUpdate

B.

cpconfig

C.

SmartConsole

D.

sysconfig

Questions 49

While enabling the Identity Awareness blade the Identity Awareness wizard does not automatically detect the windows domain Why does it not detect the windows domain?

Options:
A.

SmartConsole machine is not part of the domain

B.

Security Gateway is not part of the Domain

C.

Identity Awareness is not enabled on Global properties

D.

Security Management Server is not part of the domain

Questions 50

You noticed that CPU cores on the Security Gateway are usually 100% utilized and many packets were dropped. You don’t have a budget to perform a hardware upgrade at this time. To optimize drops you decide to use Priority Queues and fully enable Dynamic Dispatcher. How can you enable them?

Options:
A.

fw ctl multik dynamic_dispatching on

B.

fw ctl multik dynamic_dispatching set_mode 9

C.

fw ctl multik set_mode 9

D.

fw ctl miltik pq enable