156-215.77 Exam Details

  • Exam Code
    :156-215.77
  • Exam Name
    :Check Point Certified Security Administrator
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :358 Q&As
  • Last Updated
    :Dec 13, 2024

CheckPoint 156-215.77 Online Questions & Answers

  • Question 91:

    You enable Automatic Static NAT on an internal host node object with a private IP address of 10.10.10.5, which is NATed into 216.216.216.5. (You use the default settings in Global Properties / NAT.)

    When you run fw monitor on the R77 Security Gateway and then start a new HTTP connection from host 10.10.10.5 to browse the Internet, at what point in the monitor output will you observe the HTTP SYN-ACK packet translated from

    216.216.216.5 back into 10.10.10.5?

    A. o=outbound kernel, before the virtual machine
    B. I=inbound kernel, after the virtual machine
    C. O=outbound kernel, after the virtual machine
    D. i=inbound kernel, before the virtual machine

  • Question 92:

    The Captive Portal tool:

    A. Acquires identities from unidentified users.
    B. Is only used for guest user authentication.
    C. Allows access to users already identified.
    D. Is deployed from the Identity Awareness page in the Global Properties settings.

  • Question 93:

    Security Gateway R77 supports User Authentication for which of the following services? Select the response below that contains the MOST correct list of supported services.

    A. SMTP, FTP, TELNET
    B. SMTP, FTP, HTTP, TELNET
    C. FTP, HTTP, TELNET
    D. FTP, TELNET

  • Question 94:

    What happens when you select File > Export from the SmartView Tracker menu?

    A. Current logs are exported to a new *.log file.
    B. Exported log entries are not viewable in SmartView Tracker.
    C. Logs in fw.log are exported to a file that can be opened by Microsoft Excel.
    D. Exported log entries are deleted from fw.log.

  • Question 95:

    What is the purpose of an Identity Agent?

    A. Provide user and machine identity to a gateway
    B. Manual entry of user credentials for LDAP authentication
    C. Audit a user's access, and send that data to a log server
    D. Disable Single Sign On

  • Question 96:

    What action CANNOT be run from SmartUpdate R77?

    A. Fetch sync status
    B. Reboot Gateway
    C. Preinstall verifier
    D. Get all Gateway Data

  • Question 97:

    Your company enforces a strict change control policy. Which of the following would be MOST effective for quickly dropping an attacker's specific active connection?

    A. Change the Rule Base and install the Policy to all Security Gateways
    B. Block Intruder feature of SmartView Tracker
    C. Intrusion Detection System (IDS) Policy install
    D. SAM - Suspicious Activity Rules feature of SmartView Monitor

  • Question 98:

    Which of the following are authentication methods that Security Gateway R77 uses to validate connection attempts? Select the response below that includes the MOST complete list of valid authentication methods.

    A. Proxied, User, Dynamic, Session
    B. Connection, User, Client
    C. User, Client, Session
    D. User, Proxied, Session

  • Question 99:

    Which answers are TRUE? Automatic Static NAT CANNOT be used when:

    1) NAT decision is based on the destination port.

    2) Both Source and Destination IP's have to be translated.

    3) The NAT rule should only be installed on a dedicated Gateway.

    4) NAT should be performed on the server side.

    A. 1 and 2
    B. 2 and 4
    C. 1, 3, and 4
    D. 2 and 3

  • Question 100:

    You believe Phase 2 negotiations are failing while you are attempting to configure a site-to- site VPN with one of your firm's business partners. Which SmartConsole application should you use to confirm your suspicions?

    A. SmartDashboard
    B. SmartUpdate
    C. SmartView Status
    D. SmartView Tracker

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-215.77 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.