Try 100% Updated 156-315.81.20 Exam Questions [2024]
Pass 156-315.81.20 Exam - Real Questions and Answers
NEW QUESTION # 278
Which of the following statements is TRUE about R81 management plug-ins?
- A. A management plug-in interacts with a Security Management Server to provide new features and support for new products.
- B. The plug-in is a package installed on the Security Gateway.
- C. Installing a management plug-in requires a Snapshot, just like any upgrade process.
- D. Using a plug-in offers full central management only if special licensing is applied to specific features of the plug-in.
Answer: A
NEW QUESTION # 279
What is not a component of Check Point SandBlast?
- A. Threat Extraction
- B. Threat Emulation
- C. Threat Cloud
- D. Threat Simulator
Answer: D
NEW QUESTION # 280
Check Point Management (cpm) is the main management process in that it provides the architecture for a consolidates management console. CPM allows the GUI client and management server to communicate via web services using ___________.
- A. TCP Port 18190
- B. TCP port 19009
- C. TCP Port 18191
- D. TCP Port 18209
Answer: B
NEW QUESTION # 281
What is the name of the secure application for Mail/Calendar for mobile devices?
- A. Capsule Mail
- B. Capsule Workspace
- C. Capsule VPN
- D. Secure Workspace
Answer: B
NEW QUESTION # 282
Alice & Bob are going to use Management Data Plane Separation and therefore the routing separation needs to be enabled.
Which of the following command is true for enabling the Management Data Plane Separation (MDPS):
- A. set mdps mgmt plane on
- B. set mdps data plane off
- C. set mdps split plane on
- D. set mdps split brain on
Answer: A
NEW QUESTION # 283
What is the limitation of employing Sticky Decision Function?
- A. With SDF enabled, only ClusterXL in legacy mode is supported
- B. With SDF enabled, you can only have three Sync interfaces at most
- C. With SDF enabled, the involved VPN Gateways only supports IKEv1
- D. Acceleration technologies, such as SecureXL and CoreXL are disabled when activating SDF
Answer: D
NEW QUESTION # 284
After trust has been established between the Check Point components, what is TRUE about name and IP-address changes?
- A. The Security Management Server IP-address cannot be changed without re-establishing the trust.
- B. Security Gateway IP-address cannot be changed without re-establishing the trust.
- C. The Security Gateway name cannot be changed in command line without re-establishing trust.
- D. The Security Management Server name cannot be changed in SmartConsole without re-establishing trust.
Answer: B
NEW QUESTION # 285
Which VPN routing option uses VPN routing for every connection a satellite gateway handles?
- A. To center, or through the center to other satellites, to Internet and other VPN targets
- B. To center only
- C. To center and to other satellites through center
- D. To satellites through center only
Answer: A
NEW QUESTION # 286
When SecureXL is enabled, all packets should be accelerated, except packets that match the following conditions:
- A. All UDP packets
- B. All IPv6 Traffic
- C. All packets that match a rule whose source or destination is the Outside Corporate Network
- D. CIFS packets
Answer: D
NEW QUESTION # 287
You have created a rule at the top of your Rule Base to permit Guest Wireless access to the Internet. However, when guest users attempt to reach the Internet, they are not seeing the splash page to accept your Terms of Service, and cannot access the Internet.
How can you fix this?
- A. On the Security Management Server object, check the box 'Identity Logging'.
- B. Right click Accept in the rule, select "More", and then check 'Enable Identity Captive Portal'.
- C. On the firewall object, Legacy Authentication screen, check 'Enable Identity Captive Portal'.
- D. In the Captive Portal screen of Global Properties, check 'Enable Identity Captive Portal'.
Answer: B
NEW QUESTION # 288
When deploying SandBlast, how would a Threat Emulation appliance benefit from the integration of ThreatCloud?
- A. ThreatCloud is a collaboration platform for all the CheckPoint customers to form a virtual cloud consisting of a combination of all on-premise private cloud environments
- B. ThreatCloud is a collaboration platform for all the Check Point customers to share information about malicious and benign files that all of the customers can benefit from as it makes emulation of known files unnecessary
- C. ThreatCloud is a collaboration platform for Check Point customers to benefit from VMWare ESXi infrastructure which supports the Threat Emulation Appliances as virtual machines in the EMC Cloud
- D. ThreatCloud is a database-related application which is located on-premise to preserve privacy of company-related data
Answer: B
NEW QUESTION # 289
Which process is used mainly for backward compatibility of gateways in R81.X? It provides communication with GUI-client, database manipulation, policy compilation and Management HA synchronization.
- A. fwd
- B. cpm
- C. cpd
- D. fwm
Answer: D
NEW QUESTION # 290
Please choose correct command to add an "emailserver1" host with IP address 10.50.23.90 using GAiA management CLI?
- A. mgmt: add host name emailserver1 ip-address 10.50.23.90
- B. host name myHost12 ip-address 10.50.23.90
- C. mgmt: add host name ip-address 10.50.23.90
- D. add host name emailserver1 ip-address 10.50.23.90
Answer: A
NEW QUESTION # 291
Which command shows the current connections distributed by CoreXL FW instances?
- A. fw ctl iflist
- B. fw ctl instances -v
- C. fw ctl affinity -l
- D. fw ctl multik stat
Answer: D
NEW QUESTION # 292
The Check Point history feature in R81 provides the following:
- A. View install changes
- B. Policy Installation Date, view install changes and install specific version
- C. Policy Installation Date only
- D. View install changes and install specific version
Answer: D
NEW QUESTION # 293
You want to allow your Mobile Access Users to connect to an internal file share. Adding the Mobile Application 'File Share' to your Access Control Policy in the SmartConsole didn't work. You will be only allowed to select Services for the 'Service & Application' column.
How to fix it?
- A. A Quantum Spark Appliance is selected as Installation Target for the policy packet.
- B. The Mobile Access Blade is not enabled for the Access Control Layer of the policy.
- C. The Mobile Access Blade is not enabled under Gateway properties.
- D. The Mobile Access Policy Source under Gateway properties Is set to Legacy Policy and not to Unified Access Policy.
Answer: D
NEW QUESTION # 294
How does the Anti-Virus feature of the Threat Prevention policy block traffic from infected websites?
- A. By dropping traffic that is not proven to be from clean websites in the URL Filtering blade
- B. By dropping traffic from websites identified through ThreatCloud Verification and URL Caching
- C. By allowing traffic from websites that are known to run Antivirus Software on servers regularly
- D. By matching logs against ThreatCloud information about the reputation of the website
Answer: D
NEW QUESTION # 295
What command is used to manually failover a cluster during a zero-downtime upgrade?
- A. set cluster member down
- B. clusterXL_admin down
- C. cpstop
- D. set clusterXL down
Answer: B
NEW QUESTION # 296
......
156-315.81.20 Exam Questions Get Updated [2024] with Correct Answers: https://www.real4dumps.com/156-315.81.20_examcollection.html
Free CheckPoint 156-315.81.20 Test Practice Test Questions Exam Dumps: https://drive.google.com/open?id=1Vp95s-YuYuYDTAUU2iwTCfM7-TSmi9pW

