Month End Special Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: scxmas70

Note! Following 156-215.80 Exam is Retired now. Please select the alternative replacement for your Exam Certification.

156-215.80 Exam Dumps - Check Point Certified Security Administrator R80

Go to page:
Question # 17

Which limitation of CoreXL is overcome by using (mitigated by) Multi-Queue?

A.

There is no traffic queue to be handled

B.

Several NICs can use one traffic queue by one CPU

C.

Each NIC has several traffic queues that are handled by multiple CPU cores

D.

Each NIC has one traffic queue that is handled by one CPU

Full Access
Question # 18

Your boss wants you to closely monitor an employee suspected of transferring company secrets to the competition. The IT department discovered the suspect installed a WinSCP client in order to use encrypted communication. Which of the following methods is BEST to accomplish this task?

A.

Use SmartView Tracker to follow his actions by filtering log entries that feature the WinSCP destination port. Then, export the corresponding entries to a separate log file for documentation.

B.

Use SmartDashboard to add a rule in the firewall Rule Base that matches his IP address, and those of potential targets and suspicious protocols. Apply the alert action or customized messaging.

C.

Watch his IP in SmartView Monitor by setting an alert action to any packet that matches your Rule Base and his IP address for inbound and outbound traffic.

D.

Send the suspect an email with a keylogging Trojan attached, to get direct information about his wrongdoings.

Full Access
Question # 19

The CPD daemon is a Firewall Kernel Process that does NOT do which of the following?

A.

Secure Internal Communication (SIC)

B.

Restart Daemons if they fail

C.

Transfer messages between Firewall processes

D.

Pulls application monitoring status

Full Access
Question # 20

Vanessa is attempting to log into the Gaia Web Portal. She is able to login successfully. Then she tries the same username and password for SmartConsole but gets the message in the screenshot image below. She has checked that the IP address of the Server is correct and the username and password she used to login into Gaia is also correct.

What is the most likely reason?

A.

Check Point R80 SmartConsole authentication is more secure than in previous versions and Vanessa requires a special authentication key for R80 SmartConsole. Check that the correct key details are used.

B.

Check Point Management software authentication details are not automatically the same as the Operating System authentication details. Check that she is using the correct details.

C.

SmartConsole Authentication is not allowed for Vanessa until a Super administrator has logged in first and cleared any other administrator sessions.

D.

Authentication failed because Vanessa’s username is not allowed in the new Threat Prevention console update checks even though these checks passed with Gaia.

Full Access
Question # 21

SmartEvent does NOT use which of the following procedures to identity events:

A.

Matching a log against each event definition

B.

Create an event candidate

C.

Matching a log against local exclusions

D.

Matching a log against global exclusions

Full Access
Question # 22

Where is the “Hit Count” feature enabled or disabled in SmartConsole?

A.

On the Policy Package

B.

On each Security Gateway

C.

On the Policy layer

D.

In Global Properties for the Security Management Server

Full Access
Question # 23

What is the purpose of Priority Delta in VRRP?

A.

When a box is up, Effective Priority = Priority + Priority Delta

B.

When an Interface is up, Effective Priority = Priority + Priority Delta

C.

When an Interface fails, Effective Priority = Priority - Priority Delta

D.

When a box fails, Effective Priority = Priority - Priority Delta

Full Access
Question # 24

Fill in the bank: In Office mode, a Security Gateway assigns a remote client to an IP address once___________.

A.

the user connects and authenticates

B.

office mode is initiated

C.

the user requests a connection

D.

the user connects

Full Access
Go to page: