Check Point 156-215.81 Check Point Certified Security Administrator R81 Online Training
Check Point 156-215.81 Online Training
The questions for 156-215.81 were last updated at Nov 23,2024.
- Exam Code: 156-215.81
- Exam Name: Check Point Certified Security Administrator R81
- Certification Provider: Check Point
- Latest update: Nov 23,2024
What is the most recommended installation method for Check Point appliances?
- A . SmartUpdate installation
- B . DVD media created with Check Point ISOMorphic
- C . USB media created with Check Point ISOMorphic
- D . Cloud based installation
Check Point licenses come in two forms.
What are those forms?
- A . Central and Local.
- B . Access Control and Threat Prevention.
- C . On-premise and Public Cloud.
- D . Security Gateway and Security Management.
In SmartEvent, a correlation unit (CU) is used to do what?
- A . Collect security gateway logs, Index the logs and then compress the logs.
- B . Receive firewall and other software blade logs in a region and forward them to the primary log server.
- C . Analyze log entries and identify events.
- D . Send SAM block rules to the firewalls during a DOS attack.
You have enabled "Extended Log" as a tracking option to a security rule. However, you are still not seeing any data type information.
What is the MOST likely reason?
- A . Identity Awareness is not enabled.
- B . Log Trimming is enabled.
- C . Logging has disk space issues
- D . Content Awareness is not enabled.
Which type of Check Point license ties the package license to the IP address of the Security Management Server?
- A . Central
- B . Corporate
- C . Local
- D . Formal
In what way is Secure Network Distributor (SND) a relevant feature of the Security Gateway?
- A . SND is a feature to accelerate multiple SSL VPN connections
- B . SND is an alternative to IPSec Main Mode, using only 3 packets
- C . SND is used to distribute packets among Firewall instances
- D . SND is a feature of fw monitor to capture accelerated packets
What is true about the IPS-Blade?
- A . in R80, IPS is managed by the Threat Prevention Policy
- B . in R80, in the IPS Layer, the only three possible actions are Basic, Optimized and Strict
- C . in R80, IPS Exceptions cannot be attached to “all rules”
- D . in R80, the GeoPolicy Exceptions and the Threat Prevention Exceptions are the same
The competition between stateful inspection and proxies was based on performance, protocol support, and security. Considering stateful Inspections and Proxies, which statement is correct?
- A . Stateful Inspection is limited to Layer 3 visibility, with no Layer 4 to Layer 7 visibility capabilities.
- B . When it comes to performance, proxies were significantly faster than stateful inspection firewalls.
- C . Proxies offer far more security because of being able to give visibility of the payload (the data).
- D . When it comes to performance, stateful inspection was significantly faster than proxies.
What Check Point technologies deny or permit network traffic?
- A . Application Control, DLP
- B . Packet Filtering, Stateful Inspection, Application Layer Firewall.
- C . ACL, SandBlast, MPT
- D . IPS, Mobile Threat Protection
In SmartConsole, on which tab are Permissions and Administrators defined?
- A . Manage and Settings
- B . Logs and Monitor
- C . Security Policies
- D . Gateways and Servers