Updated Oct-2021 156-915.80 Exam Practice Test Questions [Q234-Q256]

Share

Updated Oct-2021 156-915.80 Exam Practice Test Questions

Verified 156-915.80 dumps Q&As 100% Pass in First Attempt Guaranteed Updated Dump


How to study the 156-915.80 Exam

Prep4sures expert team recommends you to prepare some notes on these topics along with it don’t forget to practice Check Point Certified Security Expert Update - R80 (CCSE) 156-915.80 Exam which been written by our expert team, Both these will help you a lot to clear this exam with good marks.

 

NEW QUESTION 234
Type the command and syntax to view critical devices on a cluster member in a ClusterXL environment.

Answer:

Explanation:
cphaprob -ia list

 

NEW QUESTION 235
What makes Anti-Bot unique compared to other Threat Prevention mechanisms, such as URL Filtering, Anti-Virus, IPS, and Threat Emulation?

  • A. Anti-Bot is the only signature-based method of malware protection
  • B. Anti-Bot is the only protection mechanism which starts a counter-attack against known Command & Control Centers
  • C. Anti-Bot is a post-infection malware protection to prevent a host from establishing a connection to a Command & Control Center
  • D. Anti-Bot is the only countermeasure against unknown malware

Answer: C

 

NEW QUESTION 236
After implementing Static Address Translation to allow Internet traffic to an internal Web Server on your DMZ, you notice that any NATed connections to that machine are being dropped by anti-spoofing protections.
Which of the following is the MOST LIKELY cause?

  • A. The Global Properties setting Translate destination on client side is unchecked. But the topology on the DMZ interface is set to Internal - Network defined by IP and Mask. Check the Global Properties setting Translate destination on client side.
  • B. The Global Properties setting Translate destination on client side is checked. But the topology on the DMZ interface is set to Internal - Network defined by IP and Mask. Uncheck the Global Properties setting Translate destination on client side.
  • C. The Global Properties setting Translate destination on client side is unchecked. But the topology on the external interface is set to Others +. Change topology to External.
  • D. The Global Properties setting Translate destination on client side is checked. But the topology on the external interface is set to External. Change topology to Others +.

Answer: A

 

NEW QUESTION 237
The Event List within the Events tab contains:

  • A. events generated by a query.
  • B. the top events, destinations, sources, and users of the query results, either as a chart or in a tallied list.
  • C. the details of a selected event.
  • D. a list of options available for running a query.

Answer: A

Explanation:
Explanation
These are the components of the Events tab:
Item
Description
1
Query Tree - Double-click a query to run the query. The results show in the event List.
2
Event Statistics pane - Shows the top events, destinations, sources and users of the query results, either as a chart or in a tallied list.
3
Event List - Shows events generated by a query.
4
Event Preview Pane - Shows the details of the selected event
References:

 

NEW QUESTION 238
Which command can you use to enable or disable multi-queue per interface?

  • A. Cpmqueue set
  • B. Set cpmq enable
  • C. Cpmq config
  • D. cpmq set

Answer: D

 

NEW QUESTION 239
VPN Tunnel Sharing can be configured with any of the options below, EXCEPT One:

  • A. IP range based
  • B. Subnet-based
  • C. Gateway-based
  • D. Host-based

Answer: A

Explanation:
Explanation/Reference:
Explanation:
VPN Tunnel Sharing provides interoperability and scalability by controlling the number of VPN tunnels created between peer Security Gateways. There are three available settings:
One VPN tunnel per each pair of hosts

One VPN tunnel per subnet pair

One VPN tunnel per Security Gateway pair

Reference: https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/14018.htm

 

NEW QUESTION 240
Your organization's disaster recovery plan needs an update to the backup and restore section to reap the new distributed R80 installation benefits. Your plan must meet the following required and desired objectives:
Required Objective: The Security Policy repository must be backed up no less frequently than every 24 hours.
Desired Objective: The R80 components that enforce the Security Policies should be backed up at least once a week.
Desired Objective: Back up R80 logs at least once a week.
Your disaster recovery plan is as follows:
- Use the cron utility to run the command upgrade_export each night on the Security Management Servers.
- Configure the organization's routine back up software to back up the files created by the command upgrade_export.
- Configure the GAiA back up utility to back up the Security Gateways every Saturday night.
- Use the cron utility to run the command upgrade_export each Saturday night on the log servers.
- Configure an automatic, nightly logswitch.
- Configure the organization's routine back up software to back up the switched logs every night.
Upon evaluation, your plan:

  • A. Does not meet the required objective.
  • B. Meets the required objective and only one desired objective.
  • C. Meets the required objective and both desired objectives.
  • D. Meets the required objective but does not meet either desired objective.

Answer: C

 

NEW QUESTION 241
Which method below is NOT one of the ways to communicate using the Management API's?

  • A. Typing API commands from a dialog box inside the SmartConsole GUI application
  • B. Typing API commands using the "mgmt._cli" command
  • C. Sending API commands over an http connection using web-services
  • D. Typing API commands using Gaia's secure shell (clash)19+

Answer: C

Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R80/APIs/#introduction%20

 

NEW QUESTION 242
Study the Rule base and Client Authentication Action properties screen -

After being authenticated by the Security Gateway, when a user starts an HTTP connection to a Web site, the user tries to FTP to another site using the command line. What happens to the user? The:

  • A. user is prompted to authenticate from that FTP site only, and does not need to enter his username and password for Client Authentication.
  • B. FTP data connection is dropped after the user is authenticated successfully.
  • C. user is prompted for authentication by the Security Gateway again.
  • D. FTP connection is dropped by Rule 2.

Answer: A

 

NEW QUESTION 243
What GUI client would you use to view an IPS packet capture?

  • A. SmartView Tracker
  • B. SmartView Monitor
  • C. Smart Reporter
  • D. Smart Update

Answer: A

Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_IPS_AdminGuide/12766.htm

 

NEW QUESTION 244
CORRECT TEXT
To stop acceleration on a GAiA Security Gateway, enter command:

Answer:

Explanation:
fwaccel off

 

NEW QUESTION 245
Fill in the blank. The user wants to replace a failed Windows-based firewall with a new server running GAiA.

Answer:

Explanation:
For the most complete restore of an GAiA configuration, he or she will use the command migrate_import

 

NEW QUESTION 246
What information is NOT collected from a Security Gateway in a Cpinfo?

  • A. OS and network statistics
  • B. System message logs
  • C. Firewall logs
  • D. Configuration and database files

Answer: C

Explanation:
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?
eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739

 

NEW QUESTION 247
If an administrator wants to add manual NAT for addresses not owned by the Check Point firewall, what else is necessary to be completed for it to function properly?

  • A. Add the proxy ARP configuration in a file called $FWDIR/conf/local.arp
  • B. Add the proxy ARP configurations in a file called $CPDIR/config/local.arp
  • C. Nothing - the proxy ARP is automatically handled in the R80 version
  • D. Add the proxy ARP configuration in a file called /etc/conf/local.arp

Answer: A

 

NEW QUESTION 248
What's true about Troubleshooting option in the IPS profile properties?

  • A. Temporarily will disable IPS kernel engine
  • B. Temporarily set all protections to track (log) in SmartView Tracker
  • C. Temporarily set all active protections to Detect
  • D. Temporarily change the active protection profile to "Default_Protection"

Answer: B

Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_IPS_AdminGuide/52512.htm

 

NEW QUESTION 249
As a valid Mobile Access Method, what feature provides Capsule Connect/VPN?

  • A. Full Layer4 VPN -SSL VPN that gives users network access to all mobile applications
  • B. that is used to deploy the mobile device as a generator of one-time passwords for authenticating to an RSA Authentication Manager
  • C. Full layer3 VPN -IPSec VPN that gives users network access to all mobile applications
  • D. You can make sure that documents are sent to the intended recipients only

Answer: C

 

NEW QUESTION 250
What is true of the API server on R80.10?

  • A. By default, the API server is active on management servers with 4 GB of RAM (or more) and on stand- alone servers with 8 GB of RAM (more)
  • B. By default the API server is active on management and stand-alone servers with 16GB of RAM (or more)
  • C. By default the API-server is activated and does not have hardware requirements
  • D. By default the API-server is not active and should be activated from the WebUI

Answer: A

Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R80/APIs/#introduction%20

 

NEW QUESTION 251
After implementing Static Address Translation to allow Internet traffic to an internal Web Server on your DMZ, you notice that any NATed connections to that machine are being dropped by anti-spoofing protections. Which of the following is the MOST LIKELY cause?

  • A. The Global Properties setting Translate destination on client side is unchecked. But the topology on the DMZ interface is set to Internal - Network defined by IP and Mask. Check the Global Properties setting Translate destination on client side.
  • B. The Global Properties setting Translate destination on client side is unchecked. But the topology on the external interface is set to Others +. Change topology to External.
  • C. The Global Properties setting Translate destination on client side is checked. But the topology on the external interface is set to External. Change topology to Others +.
  • D. The Global Properties setting Translate destination on client side is checked. But the topology on the DMZ interface is set to Internal - Network defined by IP and Mask.
    Uncheck the Global Properties setting Translate destination on client side.

Answer: A

 

NEW QUESTION 252
Fill in the blank. To remove site-to-site IKE and IPSEC keys you would enter command ____ ___ and select the option to delete all IKE and IPSec SA's.

Answer:

Explanation:
vpn tu

 

NEW QUESTION 253
During inspection of your Threat Prevention logs you find four different computers having one event each with a Critical Severity. Which of those hosts should you try to remediate first?

  • A. Host having a Critical event found by Anti-Bot
  • B. Host having a Critical event found by Antivirus
  • C. Host having a Critical event found by Threat Emulation
  • D. Host having a Critical event found by IPS

Answer: C

 

NEW QUESTION 254
What is the default size of NAT table fwx_alloc?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A

 

NEW QUESTION 255
Which method below is NOT one of the ways to communicate using the Management API's?

  • A. Typing API commands from a dialog box inside the SmartConsole GUI application
  • B. Typing API commands using the "mgmt._cli" command
  • C. Sending API commands over an http connection using web-services
  • D. Typing API commands using Gaia's secure shell (clash)19+

Answer: C

Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R80/APIs/#introduction%20

 

NEW QUESTION 256
......


Who should take the 156-915.80 exam

The Check Point Certified Security Expert certification is an internationally-recognized validation that identifies persons who earn it as possessing skilled in System Security Consultant and Server Managers. If a candidate wants significant improvement in career growth needs enhanced knowledge, skills, and talents. The Check Point Certified Security Expert Update - R80 (CCSE) 156-915.80 Exam certification provides proof of this advanced knowledge and skill. If a person has the prerequisite CCSE certification and skills required of a Check Point Certified Security Expert Update - R80 (CCSE) 156-915.80 Exam then he should take this exam.

 

Pass CCSE Update 156-915.80 Exam With  500 Questions: https://www.prep4sures.top/156-915.80-exam-dumps-torrent.html