156-215.81 Exam Questions & Answers
Check Point Certified Security Administrator R81.20 • CheckPoint
100% money-back guarantee
Sample 156-215.81 Questions
Practice with real exam-style questions, each with the verified correct answer and explanation.
What is the purpose of the Clean-up Rule?
The purpose of the Clean-up Rule is to log all traffic that is not explicitly allowed or denied in the Rule Base78.The Clean-up Rule is the last rule in the rulebase and is used to drop and log explicitly unmatched traffic97.To improve the rulebase performance, noise traffic that is logged in the Clean-up rule should be included in the Noise rule so it is matched and dropped higher up in the rulebase8. The other options are not valid purposes of the Clean-up Rule.
In HTTPS Inspection policy, what actions are available in the "Actions" column of a rule?
The actions available in the ''Actions'' column of a rule in HTTPS Inspection policy are ''Inspect'' and ''Bypass''. ''Inspect'' means that the HTTPS traffic will be decrypted and inspected according to the Access Control policy.''Bypass'' means that the HTTPS traffic will not be decrypted and will be allowed without inspection1. The other options are not valid actions for HTTPS Inspection policy.
Fill in the blank: SmartConsole, SmartEvent GUI client, and ___________ allow viewing of billions of consolidated logs and shows them as prioritized security events.
SmartConsole, SmartEvent GUI client, andSmartView Web Applicationallow viewing of billions of consolidated logs and shows them as prioritized security events1.SmartView Web Application is a web-based interface that provides access to SmartEvent reports and dashboards2. Reference:Check Point R81 Security Management Administration Guide,Check Point R81 SmartEvent Administration Guide
Which Identity Source(s) should be selected in Identity Awareness for when there is a requirement for a higher level of security for sensitive servers?
Endpoint Identity Agent and Browser-Based Authentication are the identity sources that provide the highest level of security for sensitive servers, as they require user authentication and can enforce granular access rules based on user identity.AD Query, Terminal Servers Endpoint Identity Agent, and RADIUS and Account Logon are less secure, as they rely on passive methods of identity acquisition or do not support identity-based access control12.
When doing a Stand-Alone Installation, you would install the Security Management Server with which other Check Point architecture component?
When doing a Stand-Alone Installation, you would install the Security Management Server with none of the other Check Point architecture components.A Stand-Alone Installation is a type of installation that combines the Security Management Server and the Security Gateway on one computer or appliance3, p. 14. SmartConsole, SecureClient, and SmartEvent are not Check Point architecture components, but software applications that can be installed separately. Reference:Check Point CCSA - R81: Practice Test & Explanation, [Check Point Installation and Upgrade Guide R81]
Get access to all 411 verified questions with detailed answers.
Unlock All 156-215.81 Questions