156-215.80 Practice Test Questions Answers Updated 525 Questions [Q163-Q183]

Share

156-215.80 Practice Test Questions Answers Updated 525 Questions

156-215.80 dumps & CCSA R80 Sure Practice with 525 Questions


Check Point CCSA Exam Certification Details:

Exam Price$250 (USD)
Schedule ExamPearson VUE
Exam NameCheck Point Certified Security Administrator (CCSA) R80
Sample QuestionsCheck Point CCSA Sample Questions
Exam Code156-215.80
Number of Questions90
Books / TrainingCCSM Training
Passing Score70%
Duration90 mins


Who should take the 156-215.80 exam

The Check Point Certified Security Administrator certification is an internationally-recognized validation that identifies persons who earn it as possessing skilled in Security Administrator and Check Point Professionals. If a candidate wants significant improvement in career growth needs enhanced knowledge, skills, and talents. The Check Point Certified Security Administrator (CCSA R80) 156-215.80 Exam certification provides proof of this advanced knowledge and skill. If a person has the prerequisite TCP/IP and routing fundamentals knowledge and skills required of a Check Point Certified Security Administrator (CCSA R80) 156-215.80 Exam then he should take this exam.

 

NEW QUESTION 163
Your internal networks 10.1.1.0/24, 10.2.2.0/24 and 192.168.0.0/16 are behind the Internet Security Gateway.
Considering that Layer 2 and Layer 3 setup is correct, what are the steps you will need to do in SmartConsole in order to get the connection working?

  • A. 1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish and install the policy.
  • B. 1. Define an accept rule in Security Policy.2. Configure automatic NAT for each network to NAT the networks behind a public IP.3. Publish and install the policy.
  • C. 1. Define an accept rule in Security Policy.2. Define Security Gateway to hide all internal networks behind the gateway's external IP.3. Publish the policy.
  • D. 1. Define an accept rule in Security Policy.2. Configure automatic NAT for each network to NAT the networks behind a public IP.3. Publish the policy.

Answer: B

 

NEW QUESTION 164
Review the following screenshot and select the BEST answer.

  • A. Data Center Layer is an inline layer in the Access Control Policy.
  • B. If a connection is accepted in Network-layer, it will not be matched against the rules in Data Center Layer.
  • C. If a connection is dropped in Network Layer, it will not be matched against the rules in Data Center Layer.
  • D. By default all layers are shared with all policies.

Answer: C

 

NEW QUESTION 165
You have just installed your Gateway and want to analyze the packet size distribution of your traffic with SmartView Monitor.

Unfortunately, you get the message:
"There are no machines that contain Firewall Blade and SmartView Monitor".
What should you do to analyze the packet size distribution of your traffic? Give the BEST answer.

  • A. Purshase the SmartView Monitor license for your Security Gateway.
  • B. Enable Monitoring on your Security Management Server.
  • C. Enable Monitoring on your Security Gateway.
  • D. Purchase the SmartView Monitor license for your Security Management Server.

Answer: C

 

NEW QUESTION 166
Which pre-defined Permission Profile should be assigned to an administrator that requires full access to audit
all configurations without modifying them?

  • A. Full Access
  • B. Read Only All
  • C. Auditor
  • D. Super User

Answer: B

Explanation:
Explanation
To create a new permission profile:
The New Profile window opens.

 

NEW QUESTION 167
The fw monitor utility is used to troubleshoot which of the following problems?

  • A. Phase two key negotiation
  • B. Log Consolidation Engine
  • C. User data base corruption
  • D. Address translation

Answer: D

 

NEW QUESTION 168
Which NAT rules are prioritized first?

  • A. Automatic Hide NAT
  • B. Automatic Static NAT
  • C. Post-Automatic/Manual NAT rules
  • D. Manual/Pre-Automatic NAT

Answer: D

 

NEW QUESTION 169
On the following graphic, you will find layers of policies.

What is a precedence of traffic inspection for the defined polices?

  • A. A packet arrives at the gateway, it is checked against the rules in the networks policy layer and then if implicit Drop Rule drops the packet, it comes next to IPS layer and then after accepting the packet it passes to Threat Prevention layer.
  • B. A packet arrives at the gateway, it is checked against the rules in IPS policy layer and then it comes next to the Network policy layer and then after accepting the packet it passes to Threat Prevention layer.
  • C. A packet arrives at the gateway, it is checked against the rules in the networks policy layer and then if there is any rule which accepts the packet, it comes next to Threat Prevention layer and then after accepting the packet it passes to IPS layer.
  • D. A packet arrives at the gateway, it is checked against the rules in the networks policy layer and then if there is any rule which accepts the packet, it comes next to IPS layer and then after accepting the packet it passes to Threat Prevention layer

Answer: D

Explanation:
To simplify Policy management, R80 organizes the policy into Policy Layers. A layer is a set of rules, or a Rule Base.
For example, when you upgrade to R80 from earlier versions:
When the gateway matches a rule in a layer, it starts to evaluate the rules in the next layer.
All layers are evaluated in parallel

 

NEW QUESTION 170
Under which file is the proxy arp configuration stored?

  • A. $FWDIR/state/_tmp/proxy.arp on the security gateway
  • B. $FWDIR/conf/local.arp on the gateway
  • C. $FWDIR/conf/local.arp on the management server
  • D. $FWDIR/state/proxy_arp.conf on the management server

Answer: B

Explanation:
Explanation/Reference: https://sc1.checkpoint.com/documents/R76SP.10/
CP_R76SP.10_Security_System_AdministrationGuide/105233.htm

 

NEW QUESTION 171
Fill in the blank: When tunnel test packets no longer invoke a response, SmartView Monitor displays _____________ for the given VPN tunnel.

  • A. Inactive
  • B. Failed
  • C. No Response
  • D. Down

Answer: D

 

NEW QUESTION 172
By default, which port does the WebUI listen on?

  • A. 0
  • B. 1
  • C. 2
  • D. 3

Answer: A

Explanation:
Explanation
To configure Security Management Server on Gaia:
Open a browser to the WebUI: https://<Gaia management IP address>
References:

 

NEW QUESTION 173
Which utility allows you to configure the DHCP service on GAIA from the command line?

  • A. sysconfig
  • B. dhcp_cfg
  • C. cpconfig
  • D. ifconfig

Answer: A

Explanation:
Explanation/Reference:
Explanation: Sysconfig Configuration Options

Refrence: https://sc1.checkpoint.com/documents/R76/CP_R76_Splat_AdminGuide/51548.htm NOTE:Question must be wrong because no answer is possible for GAIA system, this must be SPLAT version.
DHCP CLI configuration for GAIA reference: https://sc1.checkpoint.com/documents/R76/ CP_R76_Gaia_WebAdmin/73181.htm#o80096

 

NEW QUESTION 174
Which of the following commands is used to monitor cluster members?

  • A. cphaprob stat
  • B. cphaprob
  • C. cphaprob status
  • D. cluster state

Answer: A

 

NEW QUESTION 175
Packages and licenses are loaded from all of these sources EXCEPT

  • A. UserUpdate
  • B. Check Point DVD
  • C. Download Center Web site
  • D. User Center

Answer: A

Explanation:
Explanation/Reference:
Explanation:
Packages and licenses are loaded into these repositories from several sources:
the Download Center web site (packages)

the Check Point DVD (packages)

the User Center (licenses)

by importing a file (packages and licenses)

by running the cpliccommand line

Reference: https://sc1.checkpoint.com/documents/R76/CP_R76_Installation_and_Upgrade_Guide-webAdmin/13128.htm

 

NEW QUESTION 176
Where can you trigger a failover of the cluster members?
Log in to Security Gateway CLI and run command clusterXL_admin down.
In SmartView Monitor right-click the Security Gateway member and select Cluster member stop.
Log into Security Gateway CLI and run command cphaprob down.

  • A. 1, 2, and 3
  • B. 1 and 2
  • C. 1 and 3
  • D. 2 and 3

Answer: B

Explanation:
Explanation
How to Initiate Failover

References:

 

NEW QUESTION 177
Which Threat Prevention Software Blade provides comprehensive against malicious and unwanted network traffic, focusing on application and server vulnerabilities?

  • A. Anti-Spam
  • B. Anti-Virus
  • C. IPS
  • D. Anti-bot

Answer: C

Explanation:
Explanation/Reference:
Explanation: The IPS Software Blade provides a complete Intrusion Prevention System security solution, providing comprehensive network protection against malicious and unwanted network traffic, including:
Malware attacks

Dos and DDoS attacks

Application and server vulnerabilities

Insider threats

Unwanted application traffic, including IM and P2P

Reference: https://www.checkpoint.com/products/ips-software-blade/

 

NEW QUESTION 178
Which Threat Prevention Software Blade provides comprehensive against malicious and unwanted network traffic, focusing on application and server vulnerabilities?

  • A. Anti-Spam
  • B. Anti-Virus
  • C. IPS
  • D. Anti-bot

Answer: C

Explanation:
The IPS Software Blade provides a complete Intrusion Prevention System security solution, providing comprehensive network protection against malicious and unwanted network traffic, including:

 

NEW QUESTION 179
Your company enforces a strict change control policy. Which of the following would be
MOST effective for quickly dropping an attacker's specific active connection?

  • A. Change the Rule Base and install the Policy to all Security Gateways
  • B. Block Intruder feature of SmartView Tracker
  • C. Intrusion Detection System (IDS) Policy install
  • D. SAM - Suspicious Activity Rules feature of SmartView Monitor

Answer: B

 

NEW QUESTION 180
Which application should you use to install a contract file?

  • A. SmartUpdate
  • B. SmartProvisioning
  • C. SmartView Monitor
  • D. WebUI

Answer: A

Explanation:
Explanation
Using SmartUpdate: If you already use an NGX R65 (or higher) Security Management / Provider-1 /
Multi-Domain Management Server, SmartUpdate allows you to import the service contract file that you have
downloaded in Step #3.
Open SmartUpdate and from the Launch Menu select 'Licenses & Contracts' -> 'Update Contracts' -> 'From
File...' and provide the path to the file you have downloaded in Step #3:

Note: If SmartUpdate is connected to the Internet, you can download the service contract file directly from the
UserCenter without going through the download and import steps.

 

NEW QUESTION 181
Which utility shows the security gateway general system information statistics like operating system
information and resource usage, and individual software blade statistics of VPN, Identity Awareness and
DLP?

  • A. fw ctl pstat
  • B. cpview
  • C. cpconfig
  • D. fw ctl multik stat

Answer: B

Explanation:
Explanation
CPView Utility is a text based built-in utility that can be run ('cpview' command) on Security Gateway /
Security Management Server / Multi-Domain Security Management Server. CPView Utility shows statistical
data that contain both general system information (CPU, Memory, Disk space) and information for different
Software Blades (only on Security Gateway). The data is continuously updated in easy to access views.

 

NEW QUESTION 182
Jack works for a managed service provider and he has been tasked to create 17 new policies for several new customers. He does not have much time. What is the BEST way to do this with R80 security management?

  • A. Create a text-file with Gaia CLI -commands in order to create all objects and policies. Run the file in CLISH with command load configuration.
  • B. Use Object Explorer in SmartConsole to create the objects and Manage Policies from the menu to create the policies.
  • C. Create a text-file with DBEDIT script that creates all objects and policies. Run the file in the command line of the management server using command dbedit -f.
  • D. Create a text-file with mgmt_cliscript that creates all objects and policies. Open the file in SmartConsole Command Line to run it.

Answer: D

Explanation:
Explanation/Reference:
Explanation: Did you know: mgmt_cli can accept csv files as inputs using the --batch option.
The first row should contain the argument names and the rows below it should hold the values for these parameters.
So an equivalent solution to the powershell script could look like this:
data.csv:

mgmt_cli add host --batch data.csv -u <username> -p <password> -m <management server> This can work with any type of command not just "add host" : simply replace the column names with the ones relevant to the command you need.
Reference: https://community.checkpoint.com/thread/1342
https://sc1.checkpoint.com/documents/R80/APIs/#gui-cli/add-access-rule

 

NEW QUESTION 183
......


Basic Exam Facts

To obtain the Check Point Certified Security Administrator certification, the candidates will need to take 156-80 exam. This test is designed for those individuals who know a thing or two about network security and want to build their career in this area. Passing this exam verifies that you will be able to defend against network threats, manage user access to corporate LANs, and evaluate existing security policies to optimize the rule base. Overall, the Checkpoint 156-80 exam costs $250, however, paying the fee and taking this test is going to be worth it. The total time duration is 90 minutes and the candidates will have to answer 100 questions within this period. If the learners can answer 70% of the questions correctly, then they will get the CCSA certificate. The main topics that the students will have to study in the Checkpoint 156-80 test are the following:

  • Network Address Translations.
  • Security Policy Management;
  • Managing User Access;
  • Dealing with ClusterXL;
  • Check Point Architecture;
  • Administrator Task Implementation;
  • Monitoring Connections & Traffic;
  • Basic Understanding of VPN;

 

New 156-215.80 Exam Questions| Real 156-215.80 Dumps: https://www.testvalid.com/156-215.80-exam-collection.html