CheckPoint 156-915.80 Certification Exam Dumps with 500 Practice Test Questions
New 156-915.80 Exam Dumps with High Passing Rate
Who should take the 156-915.80 exam
The Check Point Certified Security Expert certification is an internationally-recognized validation that identifies persons who earn it as possessing skilled in System Security Consultant and Server Managers. If a candidate wants significant improvement in career growth needs enhanced knowledge, skills, and talents. The Check Point Certified Security Expert Update - R80 (CCSE) 156-915.80 Exam certification provides proof of this advanced knowledge and skill. If a person has the prerequisite CCSE certification and skills required of a Check Point Certified Security Expert Update - R80 (CCSE) 156-915.80 Exam then he should take this exam.
How to book the 156-915.80 Exam
These are following steps for registering the 156-915.80 exam. Step 1: Visit to Pearson VUE Exam Registration Step 2: Signup/Login to Pearson VUE account Step 3: Search for 156-915.80 exam Certifications Exam Step 4: Select Date, time and confirm with payment method
NEW QUESTION 70
What happen when IPS profile is set in Detect-Only Mode for troubleshooting?
- A. It will not block malicious traffic
- B. Automatically uploads debugging logs to Check Point Support Center
- C. It will generate Geo-Protection traffic
- D. Bypass licenses requirement for Geo-Protection control
Answer: A
Explanation:
It is recommended to enable Detect-Only for Troubleshooting on the profile during the initial installation of IPS. This option overrides any protections that are set to Prevent so that they will not block any traffic. During this time you can analyze the alerts that IPS generates to see how IPS will handle network traffic, while avoiding any impact on the flow of traffic.
NEW QUESTION 71
In terms of Order Rule Enforcement, when a packet arrives at the gateway, the gateway checks it against the rules in the top Policy Layer, sequentially from top to bottom. Which of the following statements is correct?
- A. If the rule does not matched in the Network policy it will continue to other enabled policies
- B. If the Action of the matching rule is Drop, the gateway stops matching against later rules in the Policy Rule Base and drops the packet.
- C. If the Action of the matching rule is Drop, the gateway continues to check rules in the next Policy Layer down. 57D5D1DDCBD40AB3BF70D5D
- D. If the Action of the matching rule is Accept, the gateway will drop the packet.
Answer: B
NEW QUESTION 72
Fill in the blank with a numeric value. The default port number for standard TCP connections with the LDAP server is
Answer:
Explanation:
389
NEW QUESTION 73
The CDT utility supports which of the following?
- A. Only major version upgrades to R80.10
- B. Only Jumbo HFA's and hotfixes
- C. Major version upgrades to R77.30
- D. All upgrades
Answer: D
Explanation:
The Central Deployment Tool (CDT) is a utility that runs on an R77 / R77.X / R80 / R80.10 Security Management Server / Multi-Domain Security Management Server (running Gaia OS).
It allows the administrator to automatically install CPUSE Offline packages (Hotfixes, Jumbo Hotfix Accumulators (Bundles), Upgrade to a Minor Version, Upgrade to a Major Version) on multiple managed Security Gateways and Cluster Members at the same time.
Reference: https://community.checkpoint.com/thread/5319-my-top-3-check-point-cli- commands
NEW QUESTION 74
What is the SOLR database for?
- A. Enables powerful matching capabilities and writes data to the database
- B. Writes data to the database and full text search
- C. Serves GUI responsible to transfer request to the DLEserver
- D. Used for full text search and enables powerful matching capabilities
Answer: D
Explanation:
Explanation/Reference:
NEW QUESTION 75
Which features are only supported with R80.10 Gateways but not R77.x?
- A. Limits the upload and download throughput for streaming media in the company to 1 Gbps.
- B. The rule base can be built of layers, each containing a set of the security rules. Layers are inspected in the order in which they are defined, allowing control over the rule base flow and which security functionalities take precedence.
- C. Time object to a rule to make the rule active only during specified times.
- D. Access Control policy unifies the Firewall, Application Control & URL Filtering, Data Awareness, and Mobile Access Software Blade policies.
Answer: B
Explanation:
Reference: http://slideplayer.com/slide/12183998/
NEW QUESTION 76
How can SmartView Web application be accessed?
- A. Error! Hyperlink reference not valid. <Management IP Address>:4434/smartview/
- B. Error! Hyperlink reference not valid. <Management IP Address>/smartview
- C. Error! Hyperlink reference not valid. < Management host name>/smartview/
- D. Error! Hyperlink reference not valid. <Management host name>:4434/smartview/
Answer: B
NEW QUESTION 77
Suppose the Security Gateway hard drive fails and you are forced to rebuild it. You have a snapshot file stored to a TFTP server and backups of your Security Management Server.
What is the correct procedure for rebuilding the Gateway quickly?
- A. Reinstall the base operating system (i.e., GAia). Configure the Gateway interface so that the Gateway can communicate with the TFTP server. Reinstall any necessary Check Point products and previously applied hotfixes. Revert to the stored snapshot image, and install the Policy.
- B. Run the command revert to restore the snapshot. Reinstall any necessary Check Point products. Establish SIC and install the Policy.
- C. Run the command revert to restore the snapshot, establish SIC, and install the Policy.
- D. Reinstall the base operating system (i.e., GAiA). Configure the Gateway interface so that the Gateway can communicate with the TFTP server. Revert to the stored snapshot image, and install the Security Policy.
Answer: D
NEW QUESTION 78
What is the valid range for VRID value in VRRP configuration?
- A. 0 - 255
- B. 0 - 254
- C. 1 - 255
- D. 1 - 254
Answer: C
Explanation:
Explanation/Reference:
Explanation:
Virtual Router ID - Enter a unique ID number for this virtual router. The range of valid values is 1 to 255.
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_Gaia_WebAdmin/87911.htm
NEW QUESTION 79
Review the rules.
Assume domain UDP is enabled in the impled rules.
What happens when a user from the internal network tries to browse to the internet using HTTP? The user:
- A. is prompted three times before connecting to the Internet successfully.
- B. can go to the Internet after Telnetting to the client authentication daemon port 259.
- C. can go to the Internet, without being prompted for authentication.
- D. can connect to the Internet successfully after being authenticated.
Answer: C
NEW QUESTION 80
Which Check Point tool allows you to open a debug file and see the VPN packet exchange details.
- A. PacketDebug.exe
- B. VPNDebugger.exe
- C. IPSECDebug.exe
- D. IkeView.exe
Answer: D
NEW QUESTION 81
To find records in the logs that shows log records from the Application & URL Filtering Software Blade where traffic was blocked, what would be the query syntax?
- A. blade; "application control" AND action;block
- B. (blade: application control AND action;block)
- C. blade: "application control" AND action:block
- D. blade: application control AND action:block
Answer: C
Explanation:
Reference: https://sc1.checkpoint.com/documents/R80/CP_R80_LoggingAndMonitoring/html_frameset.htm?
topic=documents/R80/CP_R80_LoggingAndMonitoring/131914
NEW QUESTION 82
You are troubleshooting a HTTP connection problem. You've started fw monitor -o http.pcap. When you open http.pcap with Wireshark there is only one line. What is the most likely reason?
- A. Like SmartView Tracker only the first packet of a connection will be captured by fw monitor.
- B. fw monitor was restricted to the wrong interface.
- C. By default only SYN pakets are captured.
- D. Acceleration was turned on and therefore fw monitor sees only SYN.
Answer: D
NEW QUESTION 83
Which command shows the current connections distributed by CoreXL FW instances?
- A. fw ctl multik stat
- B. fw ctl iflist
- C. fw ctl instances -v
- D. fw ctl affinity -l
Answer: A
Explanation:
The fw ctl multik stat and fw6ctl multik stat (multi-kernel statistics) commands show information for each kernel instance. The state and processing core number of each instance is displayed, along with:
NEW QUESTION 84
VPN Tunnel Sharing can be configured with any of the options below, EXCEPT One:
- A. Host-based
- B. Gateway-based
- C. IP range based
- D. Subnet-based
Answer: C
Explanation:
Explanation/Reference:
Explanation:
VPN Tunnel Sharing provides interoperability and scalability by controlling the number of VPN tunnels created between peer Security Gateways. There are three available settings:
One VPN tunnel per each pair of hosts
One VPN tunnel per subnet pair
One VPN tunnel per Security Gateway pair
Reference: https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/14018.htm
NEW QUESTION 85
What is the least ideal Synchronization Status for Security Management Server High Availability deployment?
- A. Never been synchronized
- B. Synchronized
- C. Collision
- D. Lagging
Answer: D
Explanation:
Explanation/Reference:
Explanation:
The possible synchronization statuses are:
Never been synchronized - immediately after the Secondary Security Management server has been
installed, it has not yet undergone the first manual synchronization that brings it up to date with the Primary Security Management server.
Synchronized - the peer is properly synchronized and has the same database information and installed
Security Policy.
Lagging - the peer SMS has not been synchronized properly.
For instance, on account of the fact that the Active SMS has undergone changes since the previous synchronization (objects have been edited, or the Security Policy has been newly installed), the information on the Standby SMS is lagging.
Advanced - the peer SMS is more up-to-date.
For instance, in the above figure, if a system administrators logs into Security Management server B before it has been synchronized with the Security Management server A, the status of the Security Management server A is Advanced, since it contains more up-to-date information which the former does not have.
In this case, manual synchronization must be initiated by the system administrator by changing the Active SMS to a Standby SMS. Perform a synch me operation from the more advanced server to the Standby SMS. Change the Standby SMS to the Active SMS.
Collision - the Active SMS and its peer have different installed policies and databases. The
administrator must perform manual synchronization and decide which of the SMSs to overwrite.
Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_SecMan_WebAdmin/html_frameset.htm?
topic=documents/R76/CP_R76_SecMan_WebAdmin/13132
NEW QUESTION 86
When using GAiA, it might be necessary to temporarily change the MAC address of the interface eth 0 to 00:0C:29:12:34:56. After restarting the network the old MAC address should be active. How do you configure this change?
- A. Option C
- B. Option A
- C. Option B
- D. Option D
Answer: B
NEW QUESTION 87
You noticed that CPU cores on the Security Gateway are usually 100% utilized and many packets were dropped. You don't have a budget to perform a hardware upgrade at this time. To optimize drops you decide to use Priority Queues and fully enable Dynamic Dispatcher. How can you enable them?
- A. fw cti multik dynamic_dispatching on
- B. fw cti multik set_mode 9
- C. fw cti multik dynamic_dispatching set_mode 9
- D. fw cti multik pq enable
Answer: B
Explanation:
Explanation/Reference:
Explanation:
To fully enable the CoreXL Dynamic Dispatcher on Security Gateway:
1. Run in Expert mode:
[Expert@HostName]# fw ctl multik set_mode 9
Example output:
[[email protected]:0]# fw ctl multik set_mode 9
Please reboot the system
[[email protected]:0]#
Reference: https://supportcenter.checkpoint.com/supportcenter/portal?
eventSubmit_doGoviewsolutiondetails=&solutionid=sk105261
NEW QUESTION 88
What is the command to show SecureXL status?
- A. fwaccel status
- B. fwaccel stat
- C. fwaccel stats -m
- D. fwaccel -s
Answer: B
Explanation:
To check overall SecureXL status:
[Expert@HostName]# fwaccel stat
NEW QUESTION 89
What utility would you use to configure route-based VPNs?
- A. vpn set_slim_server
- B. vpn shell
- C. vpn sw_topology
- D. vpn tu
Answer: D
NEW QUESTION 90
What is the SOLR database for?
- A. Enables powerful matching capabilities and writes data to the database
- B. Writes data to the database and full text search
- C. Serves GUI responsible to transfer request to the DLEserver
- D. Used for full text search and enables powerful matching capabilities
Answer: D
NEW QUESTION 91
Select the command set best used to verify proper failover function of a new ClusterXL configuration.
- A. reboot
- B. cphaprob -d failDevice -s problem -t 0 register / cphaprob -d failDevice unregister
- C. cpstop/cpstart
- D. clusterXL_admin down / clusterXL_admin up
Answer: D
NEW QUESTION 92
......
How much 156-915.80 Exam Cost
The price of the 156-915.80 exam is $250 USD.
Get 156-915.80 Braindumps & 156-915.80 Real Exam Questions: https://www.testkingfree.com/CheckPoint/156-915.80-practice-exam-dumps.html