Which of the following firewall modes DOES NOT allow for Identity Awareness to be deployed?
A. Bridge B. Load Sharing C. High Availability D. Fail Open
A. Bridge
Question 482:
What is the purpose of a Stealth Rule?
A. A rule that allows administrators to access SmartConsole from any device. B. To drop any traffic destined for the firewall that is not otherwise explicitly allowed. C. A rule at the end of your policy to drop any traffic that is not explicitly allowed. D. A rule used to hide a server's IP address from the outside world.
B. To drop any traffic destined for the firewall that is not otherwise explicitly allowed.
Question 483:
You are going to upgrade from R77 to R80. Before the upgrade, you want to back up the system so that, if there are any problems, you can easily restore to the old version with all configuration and management files intact. What is the BEST backup method in this scenario?
A. backup B. Database Revision C. snapshot D. migrate export
C. snapshot
Explanation/Reference:
Snapshot Management The snapshot creates a binary image of the entire root (lv_current) disk partition. This includes Check Point products, configuration, and operating system. Starting in R77.10, exporting an image from one machine and importing that image on another machine of the same type is supported. The log partition is not included in the snapshot. Therefore, any locally stored FireWall logs will not be saved. Reference: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=andsolutionid=sk108902
Question 484:
Fill in the blank: The position of an Implied rule is manipulated in the _____ window.
A. Firewall B. Object Explorer C. Global Properties D. NAT
A. Firewall
Question 485:
R80.10 management server can manage gateways with which versions installed?
A. Versions R77 and higher B. Versions R76 and higher C. Versions R75.20 and higher D. Version R75 and higher
A. Only when the license is upgraded. B. After a device upgrade. C. When the existing license expires, the license is upgraded, or the IP address associated with the license changes. D. Before installing contract files.
C. When the existing license expires, the license is upgraded, or the IP address associated with the license changes.
Question 487:
What is the difference between SSL VPN and IPSec VPN?
A. IPSec VPN does not require installation of a resident VPN client B. SSL VPN requires installation of a resident VPN client C. SSL VPN and IPSec VPN are the same D. IPSec VPN requires installation of a resident VPN client and SSL VPN requires only an installed Browser
D. IPSec VPN requires installation of a resident VPN client and SSL VPN requires only an installed Browser
Which product correlates logs and detects security threats, providing a centralized display of potential attack patterns from all network devices?
A. SmartView Monitor B. SmartEvent C. SmartDashboard D. SmartUpdate
B. SmartEvent
Question 489:
In what way is Secure Network Distributor (SND) a relevant feature of the Security Gateway?
A. SND is a feature to accelerate multiple SSL VPN connections B. SND is an alternative to IPSec Main Mode, using only 3 packets C. SND is used to distribute packets among Firewall instances D. SND is a feature of fw monitor to capture accelerated packets
C. SND is used to distribute packets among Firewall instances
Nowadays, the certification exams become more and more important and required by more and more
enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare
for the exam in a short time with less efforts? How to get a ideal result and how to find the
most reliable resources? Here on Vcedump.com, you will find all the answers.
Vcedump.com provide not only CheckPoint exam questions,
answers and explanations but also complete assistance on your exam preparation and certification
application. If you are confused on your 156-215.81.20 exam preparations
and CheckPoint certification application, do not hesitate to visit our
Vcedump.com to find your solutions here.