Best Quality CheckPoint 156-915.80 Exam Questions TestKingsIT Realistic Practice Exams [2021]
Critical Information To Check Point Certified Security Expert Update - R80 Pass the First Time
NEW QUESTION 238
You are the Security Administrator for MegaCorp. A Check Point firewall is installed and in use on a platform using GAiA. You have trouble configuring the speed and duplex settings of your Ethernet interfaces. Which of the following commands can be used in CLISH to configure the speed and duplex settings of an Ethernet interface and will survive a reboot? Give the BEST answer.
- A. set interface <options>
- B. mii_tool
- C. ifconfig -a
- D. ethtool
Answer: A
NEW QUESTION 239
You want to generate a cpinfo file via CLI on a system running GAiA. This will take about
40 minutes since the log files are also needed. What action do you need to take regarding timeout?
- A. Log in as Administrator, set the timeout to one hour with the command idle 60 and start cpinfo.
- B. No action is needed because cpshell has a timeout of one hour by default.
- C. Log in as the default user expert and start cpinfo.
- D. Log in as admin, switch to expert mode, set the timeout to one hour with the command, idle 60, then start cpinfo.
Answer: A
NEW QUESTION 240
You want to establish a VPN, using certificates. Your VPN will exchange certificates with an external partner.
Which of the following activities should you do first?
- A. Manually import your partner's Certificate Revocation List.
- B. Manually import your partner's Access Control List.
- C. Exchange exported CA keys and use them to create a new server object to represent your partner's Certificate Authority (CA).
- D. Create a new logical-server object to represent your partner's CA.
Answer: C
NEW QUESTION 241
Which command will allow you to see the interface status?
- A. cphaprob interface
- B. cphaprob stat
- C. cphaprob -l interface
- D. cphaprob -a if
Answer: D
Explanation:
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_ClusterXL_AdminGuide/7298.htm
NEW QUESTION 242
Fill in the blank.
In Load Sharing Unicast mode, the internal cluster IP address is 10.4.8.3.
The internal interfaces on two members are 10.4.8.1 and 10.4.8.2.
Internal host 10.4.8.108 Pings 10.4.8.3, and receives replies.
The following is the ARP table from the internal Windows host 10.4.8.108.
Review the exhibit and type the IP address of the member serving as the pivot machine in the space below.
Answer:
Explanation:
10.4.8.2
NEW QUESTION 243
What are the available options for downloading Check Point hotfixes in Gaia WebUI (CPUSE)?
- A. Update Automatically, Update Now, Disable Update
- B. Manually, Scheduled, Automatic
- C. Manual Update, Disable Update, Automatic Update
- D. Update Now, Scheduled Update, Offline Update
Answer: B
NEW QUESTION 244
What happen when IPS profile is set in Detect-Only Mode for troubleshooting?
- A. Bypass licenses requirement for Geo-Protection control
- B. It will not block malicious traffic
- C. It will generate Geo-Protection traffic
- D. Automatically uploads debugging logs to Check Point Support Center
Answer: B
Explanation:
It is recommended to enable Detect-Only for Troubleshooting on the profile during the initial installation of IPS. This option overrides any protections that are set to Prevent so that they will not block any traffic. During this time you can analyze the alerts that IPS generates to see how IPS will handle network traffic, while avoiding any impact on the flow of traffic.
NEW QUESTION 245
What is the purpose of a SmartEvent Correlation Unit?
- A. The Correlation unit role is to evaluate logs from the log server component to identify patterns/threats and convert them to events.
- B. The SmartEvent Correlation Unit's task it to assign severity levels to the identified events.
- C. The SmartEvent Correlation Unit is designed to check the availability of the SmartReporter Server
- D. The SmartEvent Correlation Unit is designed to check the connection reliability from SmartConsole to the SmartEvent Server
Answer: A
NEW QUESTION 246
Joey is preparing a plan for Security management upgrade. He wants to upgrade management to R80.x. What is the lowest supported version of the Security Management he can upgrade from?
- A. Splat R75.40, he has to use an Advanced upgrade with Database Migration
- B. R77.X with direct upgrade
- C. R76
- D. Gaia R75.40, he has to use an Advanced upgrade with Database Migration
Answer: B
NEW QUESTION 247
Which statement is most correct regarding about "CorrectXL Dynamic Dispatcher"?
- A. The CoreXL FW instances assignment mechanism is based on the utilization of CPU cores.
- B. The CoreXL FW instances assignment mechanism is based on IP Protocol type.
- C. The CoreXL FW instances assignment mechanism is based on Source MAC addresses, Destination MAC addresses.
- D. The CoreXL FW instances assignment mechanism is based on Source IP addresses, Destination IP addresses, and the IP 'Protocol' type.
Answer: A
NEW QUESTION 248
What SmartEvent component creates events?
- A. Consolidation Policy
- B. SmartEvent GUI
- C. Correlation Unit
- D. SmartEvent Policy
Answer: C
NEW QUESTION 249
What API command below creates a new host with the name "New Host" and IP address of
"192.168.0.10"?
- A. create host name "New Host" ip-address "192.168.0.10"
- B. set host name "New Host" ip-address "192.168.0.10"
- C. new host name "New Host" ip-address "192.168.0.10"
- D. add host name "New Host" ip-address "192.168.0.10"
Answer: D
Explanation:
Sample Command with SmartConsole CLI You can use the add host command to create a new host and then publish the changes. > add host name "Sample_Host" ip-address "192.0.2.3" > publish
NEW QUESTION 250
To bind a NIC to a single processor when using CoreXL on GAiA, you would use the command
Answer:
Explanation:
sim affinity
NEW QUESTION 251
You are about to integrate RSA SecurID users into the Check Point infrastructure. What kind of users are to be defined via SmartDashboard?
- A. A group with generic user
- B. LDAP Account Unit Group
- C. Internal user Group
- D. All users
Answer: A
NEW QUESTION 252
You are investigating issues with two gateway cluster members that are not able to establish the first initial cluster synchronization. What service is used by the FWD daemon to do a Full Synchronization?
- A. TCP port 256
- B. UDP port 8116
- C. TCP port 443
- D. TCP port 257
Answer: A
Explanation:
Explanation/Reference:
Explanation:
Synchronization works in two modes:
Full sync transfers all Security Gateway kernel table information from one cluster member to another. It
is handled by the fwd daemon using an encrypted TCP connection.
Delta sync transfers changes in the kernel tables between cluster members. Delta sync is handled by
the Security Gateway kernel using UDP multicast or broadcast on port 8116.
Full sync is used for initial transfers of state information, for many thousands of connections. If a cluster member is brought up after being down, it will perform full sync. After all members are synchronized, only updates are transferred via delta sync. Delta sync is quicker than full sync.
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_ClusterXL_AdminGuide/7288.htm Port info:
https://www.cpug.org/forums/archive/index.php/t-12704.html
NEW QUESTION 253
Use the table to match the BEST Management High Availability synchronication-status descriptions for your Security Management Server (SMS).
Exhibit:
- A. A-3, B-1, C-5, D-4
- B. A-5, B-3, C-1, D-2
- C. A-3, B-1, C-4, D-2
- D. A-3, B-5, C-2, D-4
Answer: A
NEW QUESTION 254
What type of traffic can be re-directed to the Captive Portal?
- A. FTP
- B. HTTP
- C. All of the above
- D. SMTP
Answer: B
NEW QUESTION 255
Joey is preparing a plan for Security management upgrade. He wants to upgrade management to R80.x.
What is the lowest supported version of the Security Management he can upgrade from?
- A. Splat R75.40, he has to use an Advanced upgrade with Database Migration
- B. R77.X with direct upgrade
- C. R76
- D. Gaia R75.40, he has to use an Advanced upgrade with Database Migration
Answer: B
NEW QUESTION 256
Which Check Point software blades could be enforced under Threat Prevention profile using Check Point R80.10 SmartConsole application?
- A. Firewall, IPS, Anti-Bot, Anti-Virus, Threat Emulation
- B. Firewall, IPS, Threat Emulation, Application Control
- C. IPS, Anti-Bot, Anti-Virus, Threat Emulation, Threat Extraction
- D. IPS, Anti-Bot, URL Filtering, Application Control, Threat Emulation
Answer: C
Explanation:
Explanation/Reference:
Reference: https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/ CP_R80.10_ThreatPrevention_AdminGuide/html_frameset.htm?topic=documents/R80.10/ WebAdminGuides/EN/CP_R80.10_ThreatPrevention_AdminGuide/138383
NEW QUESTION 257
You have created a Rule Base for firewall, websydney. Now you are going to create a new policy package with security and address translation rules for a second Gateway.
What is TRUE about the new package's NAT rules?
- A. Rules 4 and 5 will appear in the new package.
- B. Rules 1, 2, 3 will appear in the new package.
- C. Only rule 1 will appear in the new package.
- D. NAT rules will be empty in the new package.
Answer: B
NEW QUESTION 258
......
156-915.80 EXAM DUMPS WITH GUARANTEED SUCCESS: https://www.testkingit.com/CheckPoint/latest-156-915.80-exam-dumps.html