![]() |
| |||
| Checkpoint 156-215.65 Exam - Certifyme.com Free 156-215.65 Sample Questions: Q: 1 You are Security Administrator for a large call center. The management team is concerned that employees may be installing and attempting to use peer-to-peer file-sharing utilities, during their lunch breaks. The call center's network is protected by an internal Security Gateway, configured to drop peer-to-peer file-sharing traffic. How do you determine the number of packets dropped by each Gateway? A. SmartDashboard B. SmartView Status C. SmartView Tracker D. SmartView Monitor Answer: D Q: 2 Which of the following statements BEST describes Hide Mode Translation? A. Allows you to hide any entire network or IP range behind one routable IP address only B. Allows you to hide an entire network behind a pool of IP addresses, selected randomly C. Translates non-routable internal IP addresses to one routable IP address only D. Allows you to hide any entire network or IP range behind one IP address Answer: D Q: 3 Which option or utility includes only Security and NAT, QoS, and Desktop Security settings? A. Policy Package Management B. File > Save from SmartDashboard C. Database Revision Control D. Backup Answer: A Q: 4 It is possible to configure Network Address Translation in all of the following areas, EXCEPT: A. Global Properties B. Dynamic Object Properties C. Object Properties D. Address-translation rules Answer: B Q: 5 Which of the following statements about the Port Scanning feature of SmartDefense is TRUE? A. A typical scan detection is when more than 500 open inactive ports are open for a period of 120 seconds. B. Port Scanning does not block scanning, it detects port scans with one of three levels of detection sensitivity. C. The Port Scanning feature actively blocks the scanning, and sends an alert to SmartView Monitor. D. When a port scan is detected, only a log is issued ?never an alert. Answer: B Q: 6 The customer has a small Check Point installation which includes one Window 2003 server working as SmartConsole and SmartCenter with a second server running SecurePlatform working as Security Gateway. This is an example of: A. Hybrid Installation B. Stand-Alone Installation C. Distributed Installation D. Unsupported configuration Answer: C Q: 7 A ______ rule is used to prevent all traffic going to the VPN-1 NGX Security Gateway A. Reject B. Cleanup C. Stealth D. SmartDefense Answer: C Q: 8 When troubleshooting the behavior of Check Point Stateful Inspection, it is important to consider "inbound" vs "outbound" packet inspection from the point of view of the ______. A. Logical Topology B. Administrator C. Security Gateway D. Internet Answer: C Q: 9 Which of the below is the MOST correct process to reset SIC? A. Run cpconfig, and select "Secure Internal Communication > Change One Time Password". B. Run cpconfig, and click Reset. C. Click Reset in the Communication window of the Gateway object, and type a new activation key. D. Click the Communication button for the firewall object, then click Reset. Run cpconfig and type a new activation key. Answer: D Q: 10 What information is found in the SmartView Tracker audit log? A. ClusterXL sync failure B. Policy Package rule modification date/time stamp C. Historical reports log D. Destination IP address Answer: B PDF VERSION OF THE EXAM http://www.certifyme.com/demos/156-215.65.zip Official Page for the Exam http://www.certifyme.com/156-215.65.htm |
![]() |
| Thread Tools | |
| Display Modes | |
| |