
The Ultimate CheckPoint 156-215.82 Dumps PDF Review
Achieve The Utmost Performance In 156-215.82 Exam Pass Guaranteed
NEW QUESTION # 125
Which of these is NOT a feature or benefit of Application Control?
- A. Automatically identify trusted software that has authorization to run
- B. Scans the content of files being downloaded by users in order to make policy decisions.
- C. Eliminate unknown and unwanted applications in your network to reduce IT complexity and application risk.
- D. Identify and control which applications are in your IT environment and which to add to the IT environment.
Answer: B
Explanation:
Application Control is a blade that enables administrators to control access to applications and web sites by users, groups, machines, and time.Application Control can eliminate unknown and unwanted applications in your network to reduce IT complexity and application risk, identify and control which applications are in your IT environment and which to add to the IT environment, and automatically identify trusted software that has authorization to run1. However, Application Control cannot scan the content of files being downloaded by users in order to make policy decisions.That is the function of another blade called Content Awareness, which can inspect files based on their type, size, name, and data2. Check Point R81 Application Control Administration Guide,Check Point R81 Content Awareness Administration Guide
NEW QUESTION # 126
You are the Check Point administrator for Alpha Corp with an R80 Check Point estate. You have received a call by one of the management users stating that they are unable to browse the Internet with their new tablet connected to the company Wireless. The Wireless system goes through the Check Point Gateway. How do you review the logs to see what the problem may be?
- A. Open SmartView Tracker and filter the logs for the IP address of the tablet
- B. Open SmartLog and query for the IP address of the Manager's tablet
- C. Open SmartLog and connect remotely to the IP of the wireless controller
- D. Open SmartView Tracker and check all the IP logs for the tablet
Answer: B
Explanation:
SmartLog is a unified log viewer that provides fast and easy access to logs from all Check Point components3.It allows the administrator to query for any log field, such as the IP address of the tablet, and filter the results by time, severity, blade, action, and more4. SmartView Tracker is a legacy tool that displays network activity logs from Security Gateways and other Check Point devices. It does not support remote connection to the wireless controller or querying for specific IP addresses. SmartLog,SmartLog Queries, [SmartView Tracker]
NEW QUESTION # 127
Which of the following is NOT a component of a Distinguished Name?
- A. Country
- B. Organizational Unit
- C. User container
- D. Common Name
Answer: C
Explanation:
A Distinguished Name (DN) is a unique identifier for an entry in an LDAP directory. A DN consists of a sequence of relative distinguished names (RDNs) separated by commas. Each RDN is composed of an attribute type and an attribute value, such as cn=John Smith or ou=Sales. A DN can have different components depending on the structure and schema of the LDAP directory, but some common components are: Common Name (cn), Country , Organizational Unit (ou), Organization (o), State or Province (st), and Locality (l).User container is not a component of a DN3. Check Point R81 Identity Awareness Administration Guide
NEW QUESTION # 128
What Identity Agent allows packet tagging and computer authentication?
- A. Endpoint Security Client
- B. Light Agent
- C. Full Agent
- D. System Agent
Answer: C
Explanation:
The Full Identity Agent allows packet tagging and computer authentication2. Packet tagging is a feature that enables the Security Gateway to identify the source user and machine of each packet, regardless of NAT or routing. Computer authentication is a feature that enables the Security Gateway to authenticate machines that are not associated with any user, such as servers or unattended workstations. The other options are incorrect. Endpoint Security Client is not an Identity Agent, but a software that provides endpoint security features such as firewall, antivirus, VPN, etc. Light Agent is an Identity Agent that does not require installation and runs on a web browser, but it does not support packet tagging or computer authentication. System Agent is not an Identity Agent, but a software that provides system information and health monitoring for endpoints. Check Point Identity Agent for Microsoft Windows 10
NEW QUESTION # 129
Gaia includes Check Point Upgrade Service Engine (CPUSE), which can directly receive updates for what components?
- A. The Security Gateway (SG) and Security Management Server (SMS) software and the CPUSE engine.
- B. The CPUSE engine and the Gaia operating system.
- C. Licensed Check Point products for the Gala operating system and the Gaia operating system itself.
- D. The Gaia operating system only.
Answer: C
Explanation:
Gaia includes Check Point Upgrade Service Engine (CPUSE), which can directly receive updates for licensed Check Point products for the Gaia operating system and the Gaia operating system itself. CPUSE is an advanced tool that automates software updates and upgrades on Gaia platforms. It can download and install packages such as hotfixes, Jumbo Hotfix Accumulators, minor versions, major versions, and OS updates.[CPUSE - Gaia Software Updates (including Gaia Software Updates Agent)], [Check Point R81]
NEW QUESTION # 130
How Capsule Connect and Capsule Workspace differ?
- A. Capsule Workspace can provide access to any application
- B. Capsule Connect provides a Layer3 VPN. Capsule Workspace provides a Desktop with usable applications
- C. Capsule Connect provides Business data isolation
- D. Capsule Connect does not require an installed application at client
Answer: B
Explanation:
Capsule Connect provides a Layer 3 VPN that allows users to access corporate resources securely from their mobile devices2.Capsule Workspace provides a secure container on the mobile device that isolates business data and applications from personal data and applications3.Capsule Workspace also provides a desktop with usable applications such as email, calendar, contacts, documents, and web applications3. Check Point Capsule Connect,Check Point Capsule Workspace
NEW QUESTION # 131
Application Control/URL filtering database library is known as:
- A. Application-Forensic Database
- B. Application Library
- C. AppWiki
- D. Application database
Answer: C
Explanation:
Application Control/URL filtering database library is known asAppWiki. AppWiki is an application classification and identification database that enables administrators to control access to thousands of applications and millions of websites. [Check Point R81 Application Control Administration Guide], [Check Point AppWiki]
NEW QUESTION # 132
Fill in the blanks: Gaia can be configured using _______ the ________.
- A. GaiaUI; command line interface
- B. WebUI; Gaia Interface
- C. Gaia Interface; GaiaUI
- D. Command line interface; WebUI
Answer: D
Explanation:
Gaia can be configured using the command line interface (CLI) or the WebUI. The CLI is a text-based interface that allows you to configure and manage Gaia settings using commands and scripts. The WebUI is a graphical interface that allows you to configure and manage Gaia settings using a web browser. Gaia Interface and GaiaUI are not valid terms for Gaia configuration tools.[Gaia Administration Guide], [Gaia Overview]
NEW QUESTION # 133
What are the steps to configure the HTTPS Inspection Policy?
- A. Go to Manage&Settings > Blades > HTTPS Inspection > Policy
- B. Go to Manage&Settings > Blades > HTTPS Inspection > Configure in SmartDashboard
- C. Go to Application&url filtering blade > Https Inspection > Policy
- D. Go to Application&url filtering blade > Advanced > Https Inspection > Policy
Answer: A
Explanation:
The steps to configure the HTTPS Inspection Policy are as follows34:
Go toManage& Settings>Blades>HTTPS Inspection>Policy.
Click onNew HTTPS Inspection Ruleor select an existing rule and click onEdit Rule.
Define theSource,Destination, andActionfor the rule. The action can be eitherInspect,Bypass, orAsk.
Click onOKand then onInstall Policyto apply the changes. HTTPS Inspection R81 Administration Guide,Check Point CCSA - R81: Practice Test & Explanation
NEW QUESTION # 134
Which is NOT an encryption algorithm that can be used in an IPSEC Security Association (Phase 2)?
- A. AES-CBC-256
- B. AES-GCM-256
- C. AES-GCM-128
Answer: A
Explanation:
The answer is B because AES-CBC-256 is not a supported encryption algorithm for IPsec Security Associations (Phase 2) in R81.The supported encryption algorithms are AES-GCM-128, AES-GCM-256, AES-CBC-128, 3DES, and NULL3Check Point R81 VPN Administration Guide
NEW QUESTION # 135
Which is a main component of the Check Point security management architecture?
- A. Identity Collector
- B. Endpoint VPN client
- C. Proxy Server
- D. SmartConsole
Answer: D
Explanation:
A main component of the Check Point security management architecture isSmartConsole2. SmartConsole is a unified graphical user interface that allows administrators to manage multiple security functions such as firewall, VPN, IPS, application control, URL filtering, identity awareness, and more. SmartConsole connects to the Security Management Server and interacts with other Check Point components such as Security Gateways and Endpoint Security Servers. Check Point R81 Security Management Administration Guide
NEW QUESTION # 136
How would you determine the software version from the CLI?
- A. fw stat
- B. fw ver
- C. cpinfo
- D. fw monitor
Answer: B
Explanation:
The command that can be used to determine the software version from the CLI is fw ver.This command displays the version of the firewall module and the build number3. fw stat, fw monitor, and cpinfo are not commands for software version identification. Check Point R81 Command Line Interface Reference Guide, [156-315.81 Checkpoint Exam Info and Free Practice Test - ExamTopics]
NEW QUESTION # 137
Which default Gaia user has full read/write access?
- A. admin
- B. monitor
- C. superuser
- D. altuser
Answer: A
Explanation:
The default Gaia user that has full read/write access isadmin3. The admin user is the superuser that can perform any administrative task on the Gaia system, such as configuring network settings, installing software updates, managing licenses, creating snapshots, and more. The admin user can also access the Gaia Portal, which is a web-based interface for managing Gaia settings and features. Check Point R81 Gaia Administration Guide
NEW QUESTION # 138
In Unified SmartConsole Gateways and Servers tab you can perform the following functions EXCEPT ________.
- A. Open service request with Check Point Technical Support
- B. Upgrade the software version
- C. Open WebUI
- D. Open SSH
Answer: D
Explanation:
The function that can NOT be performed in the Unified SmartConsole Gateways and Servers tab isOpen SSH. SSH is a secure shell protocol that allows remote access to a device via command line interface. The Unified SmartConsole does not provide an option to open SSH from the Gateways and Servers tab, as it is not a graphical user interface. The other functions can be performed in the Unified SmartConsole Gateways and Servers tab, such as upgrading the software version, opening WebUI, or opening service request with Check Point Technical Support.
NEW QUESTION # 139
What Check Point technologies deny or permit network traffic?
- A. ACL, SandBlast, MPT
- B. IPS, Mobile Threat Protection
- C. Packet Filtering, Stateful Inspection, Application Layer Firewall.
- D. Application Control, DLP
Answer: C
Explanation:
Check Point technologies that deny or permit network traffic are packet filtering, stateful inspection, and application layer firewall1, p. 15-16.Packet filtering is a basic firewall technique that examines packets based on their source and destination addresses and ports2, p. 13.Stateful inspection is an advanced firewall technique that tracks the state and context of network connections and inspects packets based on their content and sequence2, p. 13.Application layer firewall is a firewall technique that operates at the application layer of the OSI model and inspects packets based on their application protocols and data2, p. 14. Check Point CCSA - R81: Practice Test & Explanation,156-315.81 Checkpoint Exam Info and Free Practice Test
NEW QUESTION # 140
......
Achive your Success with Latest CheckPoint 156-215.82 Exam: https://pass4sure.practicetorrent.com/156-215.82-practice-exam-torrent.html