156-915.80 Premium Bundle

156-915.80 Premium Bundle

Check Point Certified Security Expert Update - R80 Certification Exam

4.5 
(40215 ratings)
0 QuestionsPractice Tests
0 PDFPrint version
November 14, 2024Last update

Check-Point 156-915.80 Free Practice Questions

P.S. Accurate 156-915.80 preparation are available on Google Drive, GET MORE: https://drive.google.com/open?id=1kHtvfzv89_QPh4A3_cAnuAFq9mDuP3yP


New Check Point 156-915.80 Exam Dumps Collection (Question 7 - Question 16)

Q1. How could you compare the Fingerprint shown to the Fingerprint on the server? Exhibit:

A. Run cpconfig, select the Certificate's Fingerprint option and view the fingerprint

B. Run cpconfig, select the GUI Clients option and view the fingerprint

C. Run cpconfig, select the Certificate Authority option and view the fingerprint

D. Run sysconfig, select the Server Fingerprint option and view the fingerprint

Answer: A


Q2. What is the syntax for uninstalling a package using newpkg?

A. -u <pathname of package>

B. -i <full pathname of package>

C. -S <pathname of package>

D. newpkg CANNOT be used to uninstall a package

Answer: D


Q3. Review the rules.

Assume domain UDP is enabled in the impled rules.

What happens when a user from the internal network tries to browse to the internet using HTTP? The user:

A. can connect to the Internet successfully after being authenticated.

B. is prompted three times before connecting to the Internet successfully.

C. can go to the Internet after Telnetting to the client authentication daemon port 259.

D. can go to the Internet, without being prompted for authentication.

Answer: D


Q4. As a Security Administrator, you must refresh the Client Authentication authorization time-out every time a new user connection is authorized. How do you do this? Enable the Refreshable Timeout setting:

A. in the user object's Authentication screen.

B. in the Gateway object's Authentication screen.

C. in the Limit tab of the Client Authentication Action Properties screen.

D. in the Global Properties Authentication screen.

Answer: C


Q5. Your users are defined in a Windows 2008 R2 Active Directory server. You must add LDAP users to a Client Authentication rule. Which kind of user group do you need in the Client Authentication rule in R80?

A. External-user group

B. LDAP group

C. A group with a generic user

D. All Users

Answer: B


Q6. Your expanding network currently includes ClusterXL running Multicast mode on two members, as shown in this topology:

Exhibit:

You need to add interfaces: 10.10.10.1/24 on Member A, and 10.10.10.2/24 on Member B. The virtual IP address for these interfaces is 10.10.10.3/24. Both cluster gateways have a Quad card with an available eth3 interface. What is the correct procedure to add these interfaces?

A. 1. Disable "Cluster membership" from one Gateway via cpconfig.2. Configure the new interface via sysconfig from the "non-member" Gateway.3. Re-enable "Cluster membership" on the Gateway.4. Perform the same steps on the other Gateway.5. Update the topology in the cluster object.6. Install the Security Policy.

B. 1. Configure the new interface on both members using WebUI.2. Update the new topology in the cluster

object from SmartDashboard.3. Define virtual IP in the Dashboard4. Install the Security Policy.

C. 1. Use WebUI to configure the new interfaces on both member.2. Update the topology in the cluster object.3. Reboot both gateways.4. Install the Security Policy.

D. 1. Use the command ifconfig to configure and enable the new interface on both members.2. Update the topology in the cluster object for the cluster and both members.3. Install the Security Policy.4. Reboot the gateway.

Answer: B


Q7. You noticed that CPU cores on the Security Gateway are usually 100% utilized and many packets were dropped. You donu2021t have a budget to perform a hardware upgrade at this time. To optimize drops you decide to

use Priority Queues and fully enable Dynamic Dispatcher. How can you enable them?

A. fw cti multik dynamic_dispatching on

B. fw cti multik dynamic_dispatching set_mode 9

C. fw cti multik set_mode 9

D. fw cti multik pq enable

Answer: C

Explanation:

To fully enable the CoreXL Dynamic Dispatcher on Security Gateway:

1. Run in Expert mode:

[Expert@HostName]# fw ctl multik set_mode 9 Example output:

[Expert@R77.30:0]# fw ctl multik set_mode 9

Please reboot the system [Expert@R77.30:0]#


Q8. You want to generate a cpinfo file via CLI on a system running GAiA. This will take about 40 minutes since the log files are also needed. What action do you need to take regarding timeout?

A. No action is needed because cpshell has a timeout of one hour by default.

B. Log in as the default user expert and start cpinfo.

C. Log in as admin, switch to expert mode, set the timeout to one hour with the command, idle 60, then start cpinfo.

D. Log in as Administrator, set the timeout to one hour with the command idle 60 and start cpinfo.

Answer: D


Q9. Type the full fw command and syntax that will show full synchronization status.

Answer:

fw ctl pstat


Q10. How many pre-defined exclusions are included by default in SmartEvent R80 as part of the product installation?

A. 5

B. 0

C. 10

D. 3

Answer: D


Recommend!! Get the Accurate 156-915.80 dumps in VCE and PDF From Dumpscollection, Welcome to download: http://www.dumpscollection.net/dumps/156-915.80/ (New Q&As Version)


START 156-915.80 EXAM