あなたの156-215.81試験100%合格問題集はここPassTestで一発合格 [Q161-Q181]

Share

あなたの156-215.81試験100%合格問題集はここPassTestで一発合格

突破上級者がシミュレーションされた156-215.81試験問題集PDF


Check Point 156-215.81 認定試験は、認定セキュリティ管理者になりたい IT プロフェッショナル向けに設計されています。この試験は、セキュリティポリシーの展開および構成、ユーザーアクセスの管理、ネットワーク活動の監視など、Check Point Security Gateway および Management Software Blades システムを管理および維持するために必要なスキルに焦点を当てています。この試験は、ネットワークセキュリティを強化するための新機能および改善を含む、最新の Check Point ソフトウェアバージョンである R81 に基づいています。


チェックポイント認定セキュリティ管理者R81認定は、IT業界で高く評価されており、多くのキャリアの機会を提供できます。この認定は、世界中の組織が広く使用しているチェックポイントセキュリティソリューションを管理および維持する候補者の能力を検証します。この認定は、雇用主による需要が高いネットワークセキュリティ、VPN、交通検査、監視に関する候補者の専門知識も示しています。

 

質問 # 161
All R77 Security Servers can perform authentication with the exception of one. Which of the Security Servers can NOT perform authentication?

  • A. FTP
  • B. RLOGIN
  • C. HTTP
  • D. SMTP

正解:D


質問 # 162
Which tool is used to enable ClusterXL?

  • A. SmartConsole
  • B. cpconfig
  • C. sysconfig
  • D. SmartUpdate

正解:B


質問 # 163
What needs to be configured if the NAT property 'Translate destination on client side' is not enabled in Global properties?

  • A. Nothing, the Gateway takes care of all details necessary
  • B. A host route to route to the destination IP
  • C. Enabling 'Allow bi-directional NAT' for NAT to work correctly
  • D. Use the file local.arp to add the ARP entries for NAT to work

正解:A


質問 # 164
An administrator wishes to use Application objects in a rule in their policy but there are no Application objects listed as options to add when clicking the"+" to add new items to the "Services & Applications" column of a rule. What should be done to fix this?

  • A. The "Application Control" blade should be enabled on a gateway
  • B. The administrator should first create some applications to add to the rule.
  • C. The administrator should drag-and-drop the needed Application objects from the Object Explorer into the new rule
  • D. "Applications & URL Filtering" should first be enabled on the policy layer where the rule is being created.

正解:D

解説:
Explanation
To use Application objects in a rule, the "Applications & URL Filtering" blade should be enabled on the policy layer where the rule is being created. Enabling the "Application Control" blade on a gateway is not enough3.
References: 3: Check Point R81 Security Management Administration Guide, page 102.


質問 # 165
Which of the following is NOT a valid configuration screen of an Access Role Object?

  • A. Networks
  • B. Time
  • C. Users
  • D. Machines

正解:B


質問 # 166
What is the default shell of Gaia CLI?

  • A. Monitor
  • B. Bash
  • C. clish
  • D. Read-only

正解:C

解説:
https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Gaia_AdminGuide/Topics-GAG/CLI-Reference-_interface_.htm


質問 # 167
Which type of Check Point license is tied to the IP address of a specific Security Gateway and cannot be transferred to a gateway that has a different IP address?

  • A. Formal
  • B. Local
  • C. Central
  • D. Corporate

正解:B

解説:
Explanation
Check Point licenses are divided into two types: central and local. Central licenses are managed by a Security Management Server and can be attached to any Security Gateway managed by that server. Local licenses are tied to the IP address of a specific Security Gateway and cannot be transferred to a gateway that has a different IP address. Formal and corporate are not types of Check Point licenses. References: [Check Point R81 Licensing and Contract Administration Guide]


質問 # 168
When enabling tracking on a rule, what is the default option?

  • A. Accounting Log
  • B. Log
  • C. Detailed Log
  • D. Extended Log

正解:B

解説:
Explanation
When enabling tracking on a rule, the default option is Log. This option generates a log entry for each connection that matches the rule. The log entry contains information such as the source, destination, service, action, and time of the connection.References: [Logging and Monitoring R81], [Logging and Monitoring]


質問 # 169
You have enabled "Extended Log" as a tracking option to a security rule. However, you are still not seeing any data type information. What is the MOST likely reason?

  • A. Log Trimming is enabled.
  • B. Logging has disk space issues
  • C. Content Awareness is not enabled.
  • D. Identity Awareness is not enabled.

正解:B


質問 # 170
Look at the following screenshot and select the BEST answer.

  • A. Internal clients can upload and download archive-files to FTP_Ext server using FTP.
  • B. Clients external to the Security Gateway can upload any files to the FTP_Ext-server using FTP.
  • C. Internal clients can upload and download any-files to FTP_Ext-server using FTP.
  • D. Clients external to the Security Gateway can download archive files from FTP_Ext server using FTP.

正解:D


質問 # 171
Which Check Point software blade prevents malicious files from entering a network using virus signatures and anomaly-based protections from ThreatCloud?

  • A. Firewall
  • B. Anti-Virus
  • C. Application Control
  • D. Anti-spam and Email Security

正解:B


質問 # 172
What are the steps to configure the HTTPS Inspection Policy?

  • A. Go to Manage&Settings > Blades > HTTPS Inspection > Policy
  • B. Go to Application&url filtering blade > Https Inspection > Policy
  • C. Go to Manage&Settings > Blades > HTTPS Inspection > Configure in SmartDashboard
  • D. Go to Application&url filtering blade > Advanced > Https Inspection > Policy

正解:A

解説:
Explanation
The steps to configure the HTTPS Inspection Policy are as follows34:
Go to Manage & Settings > Blades > HTTPS Inspection > Policy.
Click on New HTTPS Inspection Rule or select an existing rule and click on Edit Rule.
Define the Source, Destination for the rule. The action can be either Inspect, Bypass, or Ask.
Click on OK and then on Install Policy to apply the changes. References: HTTPS Inspection R81 Administration Guide, Check Point CCSA - R81: Practice Test & Explanation


質問 # 173
The Online Activation method is available for Check Point manufactured appliances. How does the administrator use the Online Activation method?

  • A. The SmartLicensing GUI tool must be launched from the SmartConsole for the Online Activation tool to start automatically.
  • B. The cpinfo command must be run on the firewall with the switch -online-license-activation.
  • C. Using the Gaia First Time Configuration Wizard, the appliance connects to the Check Point User Center and downloads all necessary licenses and contracts.
  • D. No action is required if the firewall has internet access and a DNS server to resolve domain names.

正解:C

解説:
Explanation
The Online Activation method is available for Check Point manufactured appliances. The administrator uses the Online Activation method by using the Gaia First Time Configuration Wizard, the appliance connects to the Check Point User Center and downloads all necessary licenses and contracts. This method requires internet access and a valid User Center account. References: [Check Point Licensing and Contract Operations User Guide], [Check Point R81 Gaia Installation and Upgrade Guide]


質問 # 174
What is NOT an advantage of Stateful Inspection?

  • A. Good Security
  • B. High Performance
  • C. No Screening above Network layer
  • D. Transparency

正解:C

解説:
Explanation
The option that is NOT an advantage of Stateful Inspection is No Screening above Network layer. Stateful Inspection is a firewall technology that inspects packets at all layers of the OSI model, from layer 3 (Network) to layer 7 (Application). Stateful Inspection provides screening above Network layer, such as checking TCP flags, sequence numbers, ports, and application protocols . The other options are advantages of Stateful Inspection, as it provides high performance, good security, and transparency for legitimate traffic.
References: Stateful Inspection Technology, Firewall Administration Guide


質問 # 175
What are the three components for Check Point Capsule?

  • A. Capsule Workspace, Capsule Cloud, Capsule Connect
  • B. Capsule Docs, Capsule Cloud, Capsule Connect
  • C. Capsule Workspace, Capsule Docs, Capsule Connect
  • D. Capsule Workspace, Capsule Docs, Capsule Cloud

正解:D


質問 # 176
Application Control/URL filtering database library is known as:

  • A. AppWiki
  • B. Application database
  • C. Application-Forensic Database
  • D. Application Library

正解:A

解説:
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk113795


質問 # 177
When URL Filtering is set, what identifying data gets sent to the Check Point Online Web Service?

  • A. The URL and IP address are sent to the Check Point Online Web Service
  • B. The host part of the URL is sent to the Check Point Online Web Service
  • C. The URL and server certificate are sent to the Check Point Online Web Service
  • D. The full URL, including page data, is sent to the Check Point Online Web Service

正解:B

解説:
Explanation
When URL Filtering is set, only the host part of the URL is sent to the Check Point Online Web Service for analysis. The host part is the part of the URL that identifies the web server, such as www.example.com. The Check Point Online Web Service uses this information to categorize the URL and return the appropriate action to the Security Gateway. The other options are not sent to the Check Point Online Web Service for analysis, as they may contain sensitive or irrelevant data.
References: 1: Policy Layers 2: Adding a New Log Server 3: Suspicious Activity Monitoring : [URL Filtering]


質問 # 178
Choose what BEST describes users on Gaia Platform.

  • A. There are two default users and neither can be deleted.
  • B. There are two default users and one cannot be deleted.
  • C. There is one default user that cannot be deleted.
  • D. There is one default user that can be deleted.

正解:B


質問 # 179
CPU-level of your Security gateway is peaking to 100% causing problems with traffic. You suspect that the problem might be the Threat Prevention settings.
The following Threat Prevention Profile has been created.

How could you tune the profile in order to lower the CPU load still maintaining security at good level? Select the BEST answer.

  • A. The problem is not with the Threat Prevention Profile. Consider adding more memory to the appliance.
  • B. Set the Performance Impact to Very Low Confidence to Prevent.
  • C. Set High Confidence to Low and Low Confidence to Inactive.
  • D. Set the Performance Impact to Medium or lower.

正解:D

解説:
Explanation
The BEST way to tune the profile in order to lower the CPU load still maintaining security at good level is to set the Performance Impact to Medium or lower. This will reduce the number of packets that are inspected by the Threat Prevention blades, while still providing a high level of protection . Setting High Confidence to Low and Low Confidence to Inactive will lower the security level, as it will allow more traffic that may be malicious. The problem is likely with the Threat Prevention Profile, as it can have a significant impact on the CPU utilization of the Security Gateway. Adding more memory to the appliance will not solve the problem, as memory is not the bottleneck in this case. Setting the Performance Impact to Very Low Confidence to Prevent will increase the CPU load, as it will inspect more packets and block more traffic that may be false positives.
References: Threat Prevention Administration Guide, Check Point R81.10


質問 # 180
An administrator wishes to use Application objects in a rule in their policy but there are no Application objects listed as options to add when clicking the"+" to add new items to the "Services & Applications" column of a rule. What should be done to fix this?

  • A. The administrator should first create some applications to add to the rule.
  • B. "Applications & URL Filtering" should first be enabled on the policy layer where the rule is being created.
  • C. The administrator should drag-and-drop the needed Application objects from the Object Explorer into the new rule
  • D. The "Application Control" blade should be enabled on a gateway

正解:D


質問 # 181
......

156-215.81問題集トレーニングコース完全版:https://www.passtest.jp/CheckPoint/156-215.81-shiken.html

お客様を合格させる試験学習材料Check Point Certified Security Administrator R81:https://drive.google.com/open?id=1v8uqoqtLZKQ4sflIQsXn_LdHncD-JZ5B