
CCSE 156-315.80 Real Exam Questions and Answers FREE Updated on Sep 23, 2021
156-315.80 Ultimate Study Guide - PracticeDump
NEW QUESTION 186
You have a Geo-Protection policy blocking Australia and a number of the countries. You network now requires a Check point Firewall to be installed in Sydney, Australia. What must you do to get SIC to work?
- A. Nothing-Check Point control connection function regardless of Geo-Protection policy
- B. Create a rule at the top in your point firewall to bypass the Goe-Protection
- C. Create a rule at the top in the Sydney firewall to also control traffic from your network.
- D. Remove Goe-Protection as the IP-to-country database externally and you have no control of this.
Answer: C
NEW QUESTION 187
Fill in the blank: A ________ VPN deployment is used to provide remote users with secure access to internal corporate resources by authenticating the user through an internet browser.
- A. Clientless remote access
- B. Direct access
- C. Clientless direct access
- D. Client-based remote access
Answer: A
Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R80/CP_R80BC_Firewall/html_frameset.htm?
topic=documents/R80/CP_R80BC_Firewall/92704
NEW QUESTION 188
SmartEvent does NOT use which of the following procedures to identify events:
- A. Matching a log against each event definition
- B. Create an event candidate
- C. Matching a log against global exclusions
- D. Matching a log against local exclusions
Answer: D
Explanation:
Explanation
Events are detected by the SmartEvent Correlation Unit. The Correlation Unit task is to scan logs for criteria that match an Event Definition. SmartEvent uses these procedures to identify events:
* Matching a Log Against Global Exclusions
* Matching a Log Against Each Event Definition
* Creating an Event Candidate
* When a Candidate Becomes an Event
References:
NEW QUESTION 189
To verify enable Dynamic Dispatcher on a Security Gateway:
- A. Edit/proc/interrupts to include multik mode 1 at the bottom of the file save and reboot.
- B. run fw multik set_mode 9 in Expert mode then reboot
- C. Using spoofing update the Dynamic Dispatcher value to "full" under the CoreXl menu.
- D. run fw clt multik _mode 1 in Expert mode and then reboot.
Answer: B
NEW QUESTION 190
In order to get info about assignment (FW, SND) of all CPUs in your SGW, what is the most accurate CLI
command?
- A. fw ctl affinity -l a -r -v
- B. fw ctl multik stat
- C. cpinfo
- D. fw ctl sdstat
Answer: A
NEW QUESTION 191
How often does Threat Emulation download packages by default?
- A. Twice per day
- B. Once per day
- C. Once an hour
- D. Once a week
Answer: B
NEW QUESTION 192
To ensure that VMAC mode is enabled, which CLI command should you run on all cluster members?
- A. cphaprob-a if
- B. fw ctl set int fwha vmac global param enabled
- C. fw ctl get int vmac global param enabled; result of command should return value 1
- D. fw ctl get int fwha_vmac_global_param_enabled; result of command should return value 1
Answer: D
Explanation:
References:
NEW QUESTION 193
Which of the following describes how Threat Extraction functions?
- A. Detect threats and provides a detailed report of discovered threats.
- B. Delivers file with original content.
- C. Delivers PDF versions of original files with active content removed.
- D. Proactively detects threats.
Answer: D
NEW QUESTION 194
In a Client to Server scenario, which represents that the packet has been checked against the tables and Rule Base?
- A. Little o
- B. Big O
- C. Little i
- D. Big l
Answer: B
NEW QUESTION 195
Fill in the blank The tool __________ generates a R80 Security Gateway configuration report.
- A. infoCP
- B. infoview
- C. cpinfo
- D. fw cpinfo
Answer: C
NEW QUESTION 196
Which Check Point software blade provides Application Security and identity control?
- A. Identity Awareness
- B. Data Loss Prevention
- C. URL Filtering
- D. Application Control
Answer: D
Explanation:
Explanation
NEW QUESTION 197
CPM process stores objects, policies, users, administrators, licenses and management data in a database.
The database is:
- A. Postgres SQL
- B. SOLR
- C. MarisDB
- D. MySQL
Answer: A
Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R80/CP_R80_MultiDomainSecurity/html_frameset.htm?
topic=documents/R80/CP_R80_MultiDomainSecurity/15420
NEW QUESTION 198
What is the mandatory for ClusterXL to work properly?
- A. If you have ''Non-monitored private" interfaces, the number of those interfaces must be the same
on all cluster members - B. The Magic MAC number must be unique per cluster node.
- C. The Sync interface must not have an IP address configured.
- D. The number of cores must be the same on every participating cluster node.
Answer: B
NEW QUESTION 199
Check Point Support in many cases asks you for a configuration summary of your Check Point system. This is also called:
- A. cpsizeme
- B. cpexport
- C. cpinfo
- D. sysinfo
Answer: C
Explanation:
Explanation/Reference:
NEW QUESTION 200
You can access the ThreatCloud Repository from:
- A. R80.10 SmartConsole and Threat Prevention
- B. R80.10 SmartConsole and Application Wiki
- C. Threat Wiki and Check Point Website
- D. Threat Prevention and Threat Tools
Answer: A
NEW QUESTION 201
What is the amount CPU cores required to enable CoreXL?
- A. 0
- B. 1
- C. 2
- D. 3
Answer: D
NEW QUESTION 202
What is the purpose of a SmartEvent Correlation Unit?
- A. The Correlation unit role is to evaluate logs from the log server component to identify patterns/threats and convert them to events.
- B. The SmartEvent Correlation Unit's task it to assign severity levels to the identified events.
- C. The SmartEvent Correlation Unit is designed to check the availability of the SmartReporter Server.
- D. The SmartEvent Correlation Unit is designed to check the connection reliability from SmartConsole to the SmartEvent Server.
Answer: A
NEW QUESTION 203
......
Ultimate Guide to Prepare 156-315.80 Certification Exam for CCSE: https://www.practicedump.com/156-315.80_actualtests.html
Use Real 156-315.80 Dumps - CheckPoint Correct Answers: https://drive.google.com/open?id=1dqgs_awfP3tSu0YBlKU6fdvksznDXjmX