本日更新の2023年03月試験エンジンとPDF 156-215.81テスト無料! [Q61-Q79]

Share

本日更新の2023年03月試験エンジンとPDF 156-215.81テスト無料!

究極のガイド準備156-215.81正確なPDF解答

質問 61
Which Threat Prevention Software Blade provides protection from malicious software that can infect your network computers?

  • A. Anti-Malware
  • B. Anti-Spam
  • C. IPS
  • D. Anti-bot

正解: D

 

質問 62
Joey is using the computer with IP address 192.168.20.13. He wants to access web page "www.CheckPoint.com", which is hosted on Web server with IP address 203.0.113.111. How many rules on Check Point Firewall are required for this connection?

  • A. Two rules - first one for the HTTP traffic and second one for DNS traffic.
  • B. Two rules - one for outgoing request and second one for incoming replay.
  • C. Only one rule, because Check Point firewall is using Stateful Inspection technology.
  • D. Only one rule, because Check Point firewall is a Packet Filtering firewall

正解: C

 

質問 63
Which command is used to obtain the configuration lock in Gaia?

  • A. Lock database override
  • B. Lock database user
  • C. Unlock database override
  • D. Unlock database lock

正解: A

 

質問 64
When defining group-based access in an LDAP environment with Identity Awareness, what is the BEST object type to represent an LDAP group in a Security Policy?

  • A. SmartDirectory Group
  • B. User Group
  • C. Group Template
  • D. Access Role

正解: D

 

質問 65
Check Point APIs allow system engineers and developers to make changes to their organization's security policy with CLI tools and Web Services for all of the following except:

  • A. Create products that use and enhance 3rd party solutions
  • B. Create products that use and enhance the Check Point Solution
  • C. Create new dashboards to manage 3rd party task
  • D. Execute automated scripts to perform common tasks

正解: C

 

質問 66
Fill in the blank: When LDAP is integrated with Check Point Security Management, it is then referred to as _______

  • A. User Directory
  • B. UserCheck
  • C. User Administration
  • D. User Center

正解: A

解説:
Check Point User Directory integrates LDAP, and other external user management technologies, with the Check Point solution. If you have a large user count, we recommend that you use an external user management database such as LDAP for enhanced Security Management Server performance.

 

質問 67
DLP and Geo Policy are examples of what type of Policy?

  • A. Shared Policies
  • B. Inspection Policies
  • C. Unified Policies
  • D. Standard Policies

正解: A

解説:
https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_NextGenSecurityGateway_Guide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_NextGenSecurityGateway_Guide/137006

 

質問 68
Which of the completed statements is NOT true? The WebUI can be used to manage user accounts and:

  • A. edit the home directory of the user.
  • B. assign user rights to their home directory in the Security Management Server
  • C. add users to your Gaia system.
  • D. assign privileges to users.

正解: B

 

質問 69
How are the backups stored in Check Point appliances?

  • A. Saved as*tgz under /var/CPbackup
  • B. Saved as*tar under /var/CPbackup
  • C. Saved as*.tar under /var/log/CPbackup/backups
  • D. Saved as*tgz under /var/log/CPbackup/backups

正解: A

 

質問 70
When enabling tracking on a rule, what is the default option?

  • A. Extended Log
  • B. Detailed Log
  • C. Log
  • D. Accounting Log

正解: C

 

質問 71
You want to define a selected administrator's permission to edit a layer. However, when you click the + sign in the "Select additional profile that will be able edit this layer" you do not see anything. What is the most likely cause of this problem? Select the BEST answer.

  • A. "Edit layers by Software Blades" is unselected in the Permission Profile
  • B. "Edit layers by selected profiles in a layer editor" is unselected in the Permission profile.
  • C. All permission profiles are in use.
  • D. There are no permission profiles available and you need to create one first.

正解: D

 

質問 72
A network administrator has informed you that they have identified a malicious host on the network, and instructed you to block it. Corporate policy dictates that firewall policy changes cannot be made at this time. What tool can you use to block this traffic?

  • A. Suspicious Activity Monitoring (SAM) rules
  • B. Anti-Malware protection
  • C. Policy-based routing
  • D. Anti-Bot protection

正解: A

解説:
https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_LoggingAndMonitoring_AdminGuide/Topics-LMG/Monitoring-Suspicious-Activity-Rules.htm

 

質問 73
What component of R81 Management is used for indexing?

  • A. API Server
  • B. DBSync
  • C. SOLR
  • D. fwm

正解: C

 

質問 74
What is true about the IPS-Blade?

  • A. in R80, IPS is managed by the Threat Prevention Policy
  • B. in R80, IPS Exceptions cannot be attached to "all rules"
  • C. in R80, in the IPS Layer, the only three possible actions are Basic, Optimized and Strict
  • D. in R80, the GeoPolicy Exceptions and the Threat Prevention Exceptions are the same

正解: A

 

質問 75
After a new Log Server is added to the environment and the SIC trust has been established with the SMS what will the gateways do?

  • A. The firewalls will detect the new Log Server after the next policy install and redirect the new logs to the new Log Server.
  • B. Gateways will send new firewall logs to the new Log Server as soon as the SIC trust is set up between the SMS and the new Log Server.
  • C. Logs are not automatically forwarded to a new Log Server. SmartConsole must be used to manually configure each gateway to send its logs to the server.
  • D. The gateways can only send logs to an SMS and cannot send logs to a Log Server. Log Servers are proprietary log archive servers.

正解: C

 

質問 76
Which R77 GUI would you use to see number of packets accepted since the last policy install?

  • A. SmartView Status
  • B. SmartDashboard
  • C. SmartView Tracker
  • D. SmartView Monitor

正解: D

 

質問 77
Which of the following is an authentication method used for Identity Awareness?

  • A. Captive Portal
  • B. SSL
  • C. PKI
  • D. RSA

正解: A

 

質問 78
What kind of NAT enables Source Port Address Translation by default?

  • A. Automatic Hide NAT
  • B. Manual Static NAT
  • C. Automatic Static NAT
  • D. Manual Hide NAT

正解: A

解説:
https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/NAT-Rules.htm

 

質問 79
......

合格させるCheckPointはPassTest試験問題集:https://www.passtest.jp/CheckPoint/156-215.81-shiken.html

完全版最新の156-215.81問題集で100%カバー率問題と解答があなたをリアル試験で合格させる:https://drive.google.com/open?id=1QAJtdHwv8CF4tic4_Or8W-Ig21eB2oy1