
Provide CheckPoint 156-315.81.20 Practice Test Engine for Preparation
Detailed New 156-315.81.20 Exam Questions for Concept Clearance
NEW QUESTION # 279
How is communication between different Check Point components secured in R81? As with all questions, select the BEST answer.
- A. By using 3DES
- B. By using IPSEC
- C. By using ICA
- D. By using SIC
Answer: D
NEW QUESTION # 280
Fill in the blank: A ________ VPN deployment is used to provide remote users with secure access to internal corporate resources by authenticating the user through an internet browser.
- A. Clientless remote access
- B. Direct access
- C. Clientless direct access
- D. Client-based remote access
Answer: A
NEW QUESTION # 281
True or False: In a Distributed Environment, a Central License can be installed via CLI on a Security Gateway.
- A. True, Central License can be installed with CPLIC command on a Security Gateway
- B. False, Central License are handled via Security Management Server
- C. False, Central Licenses are installed via Gaia on Security Gateways
- D. True, CLI is the prefer method for Licensing
Answer: A
NEW QUESTION # 282
When attempting to start a VPN tunnel, in the logs the error "no proposal chosen" is seen numerous times. No other VPN-related entries are present.
Which phase of the VPN negotiations has failed?
- A. IPSEC Phase 1
- B. IKE Phase 1
- C. IPSEC Phase 2
- D. IKE Phase 2
Answer: B
NEW QUESTION # 283
Which of the completed statements is NOT true? The WebUI can be used to manage user accounts and:
- A. assign user rights to their home directory in the Security Management Server.
- B. add users to your Gaia system.
- C. edit the home directory of the user.
- D. assign privileges to users.
Answer: A
NEW QUESTION # 284
What component of Management is used tor indexing?
- A. fwm
- B. API Server
- C. DBSync
- D. SOLR
Answer: D
NEW QUESTION # 285
SecureXL improves non-encrypted firewall traffic throughput and encrypted VPN traffic throughput.
- A. This statement is false because SecureXL does not improve this traffic but CoreXL does.
- B. This statement is true because SecureXL does improve this traffic.
- C. This statement is false because encrypted traffic cannot be inspected.
- D. This statement is true because SecureXL does improve all traffic.
Answer: B
NEW QUESTION # 286
Which of the following Windows Security Events will not map a username to an IP address in Identity Awareness?
- A. Account Logon
- B. Kerberos Ticket Requested
- C. Kerberos Ticket Renewed
- D. Kerberos Ticket Timed Out
Answer: D
NEW QUESTION # 287
The Event List within the Event tab contains:
- A. a list of options available for running a query.
- B. the top events, destinations, sources, and users of the query results, either as a chart or in a tallied list.
- C. events generated by a query.
- D. the details of a selected event.
Answer: C
NEW QUESTION # 288
Gaia has two default user accounts that cannot be deleted.
What are those user accounts?
- A. Admin and Default
- B. Expert and Clish
- C. Control and Monitor
- D. Admin and Monitor
Answer: D
NEW QUESTION # 289
Which features are only supported with R81.20 Gateways but not R77.x?
- A. Time object to a rule to make the rule active only during specified times.
- B. Access Control policy unifies the Firewall, Application Control & URL Filtering, Data Awareness, and Mobile Access Software Blade policies.
- C. Limits the upload and download throughput for streaming media in the company to 1 Gbps.
- D. The rule base can be built of layers, each containing a set of the security rules. Layers are inspected in the order in which they are defined, allowing control over the rule base flow and which security functionalities take precedence.
Answer: D
NEW QUESTION # 290
Can multiple administrators connect to a Security Management Server at the same time?
- A. Yes, but only one has the right to write.
- B. Yes, every administrator has their own username, and works in a session that is independent of other administrators.
- C. Yes, all administrators can modify a network object at the same time
- D. No, only one can be connected
Answer: B
NEW QUESTION # 291
Which of these statements describes the Check Point ThreatCloud?
- A. Prevents Cloud vulnerability exploits
- B. A worldwide collaborative security network
- C. Prevents or controls access to web sites based on category
- D. Blocks or limits usage of web applications
Answer: B
NEW QUESTION # 292
What state is the Management HA in when both members have different policies/databases?
- A. Collision
- B. Lagging
- C. Never been synchronized
- D. Synchronized
Answer: A
NEW QUESTION # 293
Joey wants to upgrade from R75.40 to R81 version of Security management. He will use Advanced Upgrade with Database Migration method to achieve this.
What is one of the requirements for his success?
- A. Size of the /var/log folder of the target machine must be at least 25% of the size of the /var/log directory on the source machine
- B. Size of the /var/log folder of the source machine must be at least 25% of the size of the /var/log directory on the target machine
- C. Size of the /var/log folder of the target machine must be at least 25GB or more
- D. Size of the $FWDIR/log folder of the target machine must be at least 30% of the size of the $FWDIR/log directory on the source machine
Answer: A
NEW QUESTION # 294
By default how often updates are checked when the CPUSE Software Updates Policy is set to Automatic?
- A. Six times per day
- B. Every two hours
- C. Seven times per day
- D. Every three hours
Answer: D
NEW QUESTION # 295
You want to gather and analyze threats to your mobile device. It has to be a lightweight app.
Which application would you use?
- A. Check Point Protect
- B. SecuRemote
- C. Check Point Capsule Cloud
- D. SmartEvent Client Info
Answer: A
NEW QUESTION # 296
CPM process stores objects, policies, users, administrators, licenses and management data in a database. The database is:
- A. Postgres SQL
- B. SOLR
- C. MySQL
- D. MarisDB
Answer: A
NEW QUESTION # 297
With Mobile Access enabled, administrators select the web-based and native applications that can be accessed by remote users and define the actions that users can perform the applications.
Mobile Access encrypts all traffic using:
- A. HTTPS for web-based applications and AES or RSA algorithm for native applications. For end users to access the native application, no additional software is required.
- B. HTTPS for web-based applications and AES or RSA algorithm for native applications. For end users to access the native application, they need to install the SSL Network Extender.
- C. HTTPS for web-based applications and 3DES or RC4 algorithm for native applications. For end users to access the native applications, they need to install the SSL Network Extender.
- D. HTTPS for web-based applications and 3DES or RC4 algorithm for native applications. For end users to access the native applications, no additional software is required.
Answer: C
NEW QUESTION # 298
......
156-315.81.20 2024 Training With 615 QA's: https://www.prepawaytest.com/CheckPoint/156-315.81.20-practice-exam-dumps.html
156-315.81.20 Exam Preparation Material with New 156-315.81.20 Dumps Questions.: https://drive.google.com/open?id=13h5XHWnP3ipqLY12WsW9Exz2CmceWGui