Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free Checkpoint 156-315.81 Practice Exam with Questions & Answers

Questions 1

In which deployment is the security management server and Security Gateway installed on the same appliance?

Options:
A.

Standalone

B.

Remote

C.

Distributed

D.

Bridge Mode

Checkpoint 156-315.81 Premium Access
Questions 2

Which of the following statements about SecureXL NAT Templates is true?

Options:
A.

NAT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new

connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are enabled by default and work only if Accept Templates are enabled.

B.

DROP Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new

connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if NAT Templates are disabled.

C.

NAT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new

connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if Accept Templates are disabled.

D.

ACCEPT Templates are generated to achieve high session rate for NAT. These templates store the NAT attributes of connections matched by rulebase so that similar new connections can take advantage of this information and do NAT without the expensive rulebase lookup. These are disabled by default and work only if NAT Templates are disabled.

Questions 3

Packet acceleration (SecureXL) identities connections by several attributes. Which of the attributes is NOT used for identifying connection?

Options:
A.

Source Port

B.

TCP Acknowledgment Number

C.

Source Address

D.

Destination Address

Questions 4

What level of CPU load on a Secure Network Distributor would indicate that another may be necessary?

Options:
A.

Idle <20%

B.

USR <20%

C.

SYS <20%

D.

Wait <20%

Questions 5

What ports are used for SmartConsole to connect to the Security Management Server?

Options:
A.

CPMI (18190)

B.

ICA_Pull (18210), CPMI (18190) https (443)

C.

CPM (19009), CPMI (18190) https (443)

D.

CPM (19009), CPMI (18190) CPD (18191)

Questions 6

Which is the lowest gateway version supported by R81.20 management server?

Options:
A.

R77.30

B.

R80.20

C.

R77

D.

R65

Questions 7

Bob has finished io setup provisioning a secondary security management server. Now he wants to check if the provisioning has been correct. Which of the following Check Point command can be used to check if the security management server has been installed as a primary or a secondary security management server?

Options:
A.

cpprod_util MgmtlsPrimary

B.

cpprod_util FwlsSecondary

C.

cpprod_util MgmtlsSecondary

D.

cpprod_util FwlsPrimary

Questions 8

Which component is NOT required to communicate with the Web Services API?

Options:
A.

API key

B.

session ID token

C.

content-type

D.

Request payload

Questions 9

The Check Point installation history feature in provides the following:

Options:
A.

View install changes and install specific version

B.

Policy Installation Date only

C.

Policy Installation Date, view install changes and install specific version

D.

View install changes

Questions 10

What is the best method to upgrade a Security Management Server to R81.x when it is not connected to the Internet?

Options:
A.

CPUSE offline upgrade only

B.

Advanced upgrade or CPUSE offline upgrade

C.

Advanced Upgrade only

D.

SmartUpdate offline upgrade

Questions 11

What is the benefit of Manual NAT over Automatic NAT?

Options:
A.

If you create a new Security Policy, the Manual NAT rules will be transferred to this new policy.

B.

There is no benefit since Automatic NAT has in any case higher priority over Manual NAT

C.

You have the full control about the priority of the NAT rules

D.

On IPSO and GAIA Gateways, it is handled in a stateful manner

Questions 12

When Identity Awareness is enabled, which identity source(s) is(are) used for Application Control?

Options:
A.

RADIUS

B.

Remote Access and RADIUS

C.

AD Query

D.

AD Query and Browser-based Authentication

Questions 13

What does the Log "Views" tab show when SmartEvent is Correlating events?

Options:
A.

A list of common reports

B.

Reports for customization

C.

Top events with charts and graphs

D.

Details of a selected logs

Questions 14

Fill in the blank: An identity server uses a __________ for user authentication.

Options:
A.

Shared secret

B.

Certificate

C.

One-time password

D.

Token

Questions 15

What is the biggest benefit of policy layers?

Options:
A.

To break one policy into several virtual policies

B.

Policy Layers and Sub-Policies enable flexible control over the security policy

C.

They improve the performance on OS kernel version 3.0

D.

To include Threat Prevention as a sub policy for the firewall policy