Pass 156-315.80 Exam in First Attempt Guaranteed 2021 Dumps! [Q152-Q176]

Share

Pass 156-315.80 Exam in First Attempt Guaranteed 2021 Dumps!

156-315.80 Dumps Full Questions - Exam Study Guide

NEW QUESTION 152
Packet acceleration (SecureXL) identifies connections by several attributes- Which of the attributes is NOT used for identifying connection?

  • A. Source Address
  • B. Destination Address
  • C. Source Port
    https //sc1.checkpoint.com/documents/R77/CP R77_Firewall_WebAdmm/92711.htm
  • D. TCP Acknowledgment Number

Answer: D

 

NEW QUESTION 153
When doing a Stand-Alone Installation, you would install the Security Management Server with which other Check Point architecture component?

  • A. SmartConsole
  • B. None, Security Management Server would be installed by itself.
  • C. SecureClient
  • D. Security Gateway
  • E. SmartEvent

Answer: D

 

NEW QUESTION 154
By default how often updates are checked when the CPUSE Software Updates Policy is set to Automatic?

  • A. Every three hours
  • B. Seven times per day
  • C. Every two hours
  • D. Six times per day

Answer: A

 

NEW QUESTION 155
Identify the API that is not supported by Check Point currently.

  • A. Open REST API
  • B. OPSEC SDK
  • C. Identity Awareness Web Services API
  • D. R80 Management API

Answer: A

 

NEW QUESTION 156
Joey want to configure NTP on R80 Security Management Server. He decided to do this via WebUI. What is the correct address to access the Web UI for Gaia platform via browser?

  • A. https://<Device_IP_Adress>
  • B. https://<Device_IP_Address>:10000
  • C. http://<Device IP_Address>:443
  • D. https://<Device_IP_Address>:4434

Answer: A

 

NEW QUESTION 157
Which one of the following is true about Threat Extraction?

  • A. Works on all Office, Executable, and PDF files
  • B. Can take up to 3 minutes to complete
  • C. Delivers file only if no Threat found
  • D. Always delivers a file to user.

Answer: A

 

NEW QUESTION 158
When simulating a problem on ClusterXL cluster with cphaprob -d STOP -s problem -t 0 register, to initiate a failover on an active cluster member, what command allows you remove the problematic state?

  • A. cphaprob -d STOP unregister
  • B. cphaprob -d unregister STOP
  • C. cphaprob unregister STOP
  • D. cphaprob STOP unregister

Answer: A

Explanation:
Explanation/Reference:
Explanation/Reference:
Explanation:
esting a failover in a controlled manner using following command;
# cphaprob -d STOP -s problem -t 0 register
This will register a problem state on the cluster member this was entered on; If you then run;
# cphaprob list
this will show an entry named STOP.
to remove this problematic register run following;
# cphaprob -d STOP unregister
Reference: https://fwknowledge.wordpress.com/2013/04/04/manual-failover-of-the-fw-cluster/

 

NEW QUESTION 159
Which is the least ideal Synchronization Status for Security Management Server High Availability
deployment?

  • A. Never been synchronized
  • B. Lagging
  • C. Collision
  • D. Synchronized

Answer: C

 

NEW QUESTION 160
View the rule below. What does the lock-symbol in the left column mean? (Choose the BEST answer.)

  • A. Configuration lock is present. Click the lock symbol to gain read-write access.
  • B. Another user has locked the rule for editing.
  • C. The current administrator is logged in as read-only because someone else is editing the policy.
  • D. The current administrator has read-only permissions to Threat Prevention Policy.

Answer: B

Explanation:
https://sc1.checkpoint.com/documents/R80/CP_R80_SecMGMT/html_frameset.htm?topic=documents/R80/CP_R80_SecMGMT/124265

 

NEW QUESTION 161
In R80 spoofing is defined as a method of:

  • A. Hiding your firewall from unauthorized users.
  • B. Making packets appear as if they come from an authorized IP address.
  • C. Disguising an illegal IP address behind an authorized IP address through Port Address Translation.
  • D. Detecting people using false or wrong authentication logins

Answer: B

Explanation:
Explanation
IP spoofing replaces the untrusted source IP address with a fake, trusted one, to hijack connections to your
network. Attackers use IP spoofing to send malware and bots to your protected network, to execute DoS
attacks, or to gain unauthorized access.
References:

 

NEW QUESTION 162
You need to see which hotfixes are installed on your gateway, which command would you use?

  • A. cpinfo -h all
  • B. cpinfo -y all
  • C. cpinfo -o hotfix
  • D. cpinfo -l hotfix

Answer: B

 

NEW QUESTION 163
When Dynamic Dispatcher is enabled, connections are assigned dynamically with the exception of:

  • A. Threat Emulation
  • B. HTTPS
  • C. VoIP
  • D. QOS

Answer: C

 

NEW QUESTION 164
The Event List within the Event tab contains:

  • A. the details of a selected event.
  • B. a list of options available for running a query.
  • C. the top events, destinations, sources, and users of the query results, either as a chart or in a tallied list.
  • D. events generated by a query.

Answer: D

 

NEW QUESTION 165
Vanessa is firewall administrator in her company. Her company is using Check Point firewall on a central and several remote locations which are managed centrally by R77.30 Security Management Server. On central location is installed R77.30 Gateway on Open server. Remote locations are using Check Point UTM-1570 series appliances with R75.30 and some of them are using a UTM-1-Edge-X or Edge-W with latest available firmware. She is in process of migrating to R80.
What can cause Vanessa unnecessary problems, if she didn't check all requirements for migration to R80?

  • A. Unsupported appliances on remote locations
  • B. Unsupported firmware on UTM-1 Edge-W appliance
  • C. Unsupported version on UTM-1 570 series appliance
  • D. Missing an installed R77.20 Add-on on Security Management Server

Answer: D

 

NEW QUESTION 166
What does it mean if Deyra sees the gateway status? (Choose the BEST answer.)

  • A. SmartCenter Server cannot reach this Security Gateway.
  • B. Security Gateway's MGNT NIC card is disconnected.
  • C. There is a blade reporting a problem.
  • D. VPN software blade is reporting a malfunction.

Answer: C

 

NEW QUESTION 167
You have a Geo-Protection policy blocking Australia and a number of the countries. You network now
requires a Check point Firewall to be installed in Sydney, Australia. What must you do to get SIC to
work?

  • A. Nothing-Check Point control connection function regardless of Geo-Protection policy
  • B. Create a rule at the top in your point firewall to bypass the Goe-Protection
  • C. Create a rule at the top in the Sydney firewall to also control traffic from your network.
  • D. Remove Goe-Protection as the IP-to-country database externally and you have no control of this.

Answer: C

 

NEW QUESTION 168
Which statement is most correct regarding about "CoreXL Dynamic Dispatcher"?

  • A. The CoreXL FW instances assignment mechanism is based on the utilization of CPU cores
  • B. The CoreXL FW instances assignment mechanism is based on IP Protocol type
  • C. The CoreXl FW instances assignment mechanism is based on Source IP addresses, Destination IP addresses, and the IP 'Protocol' type
  • D. The CoreXL FW instanxces assignment mechanism is based on Source MAC addresses, Destination MAC addresses

Answer: A

 

NEW QUESTION 169
Fill in the blank: Authentication rules are defined for ________ .

  • A. Users using UserCheck
  • B. Individual users
  • C. All users in the database
  • D. User groups

Answer: D

Explanation:
References:

 

NEW QUESTION 170
What is true about VRRP implementations?

  • A. You cannot have a standalone deployment
  • B. VRRP can be used together with ClusterXL, but with degraded performance
  • C. VRRP membership is enabled in cpconfig
  • D. You cannot have different VRIDs in the same physical network

Answer: A

 

NEW QUESTION 171
To ensure that VMAC mode is enabled, which CLI command should you run on all cluster members?

  • A. cphaprob-a if
  • B. fw ctl set int fwha vmac global param enabled
  • C. fw ctl get int vmac global param enabled; result of command should return value 1
  • D. fw ctl get int fwha_vmac_global_param_enabled; result of command should return value 1

Answer: D

Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_ClusterXL_AdminGuide/7292.htm

 

NEW QUESTION 172
What is the limitation of employing Sticky Decision Function?

  • A. Acceleration technologies, such as SecureXL and CoreXL are disabled when activating SDF
  • B. With SDF enabled, the involved VPN Gateways only supports IKEv1
  • C. With SDF enabled, you can only have three Sync interfaces at most
  • D. With SDF enabled, only ClusterXL in legacy mode is supported

Answer: A

Explanation:
References:

 

NEW QUESTION 173
You need to see which hotfixes are installed on your gateway, which command would you use?

  • A. cpinfo -h all
  • B. cpinfo -y all
  • C. cpinfo -o hotfix
  • D. cpinfo -l hotfix

Answer: B

Explanation:
Explanation/Reference:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?
eventSubmit_doGoviewsolutiondetails=&solutionid=sk72800

 

NEW QUESTION 174
Which features are only supported with R80.10 Gateways but not R77.x?

  • A. Time object to a rule to make the rule active only during specified times.
  • B. The rule base can be built of layers, each containing a set of the security rules. Layers are inspected in the order in which they are defined, allowing control over the rule base flow and which security functionalities take precedence.
  • C. Access Control policy unifies the Firewall, Application Control & URL Filtering, Data Awareness, and Mobile Access Software Blade policies.
  • D. Limits the upload and download throughput for streaming media in the company to 1 Gbps.

Answer: B

Explanation:
References:

 

NEW QUESTION 175
SecureXL improves non-encrypted firewall traffic throughput and encrypted VPN traffic throughput.

  • A. This statement is true because SecureXL does improve this traffic.
  • B. This statement is false because SecureXL does not improve this traffic but CoreXL does.
  • C. This statement is true because SecureXL does improve all traffic.
  • D. This statement is false because encrypted traffic cannot be inspected.

Answer: A

Explanation:
Explanation
SecureXL improved non-encrypted firewall traffic throughput, and encrypted VPN traffic throughput, by
nearly an order-of-magnitude- particularly for small packets flowing in long duration connections.

 

NEW QUESTION 176
......

CCSE  Free Certification Exam Material from ExamCost with 457 Questions: https://www.examcost.com/156-315.80-practice-exam.html

Use Real 156-315.80 - 100% Cover Real Exam Questions: https://drive.google.com/open?id=1-ymNNp8IqnkcG748SQhYBAIkBI7y8PlL