Free 156-215.81 Exam Braindumps (page: 36)

Page 36 of 102

Which icon in the WebUI indicates that read/write access is enabled?

  1. Pencil
  2. Padlock
  3. Book
  4. Eyeglasses

Answer(s): A

Explanation:

The icon in the WebUI that indicates that read/write access is enabled is the Pencil icon . The Pencil icon appears next to the name of the device when it is in Read/Write mode, which allows making changes to the configuration. The Padlock icon indicates that read-only access is enabled, which prevents making changes to the configuration. The Book icon indicates that online help is available, which provides information and guidance on using the WebUI. The Eyeglasses icon indicates that a view-only mode is enabled, which allows viewing the configuration without logging in.


Reference:

Gaia R81.10 Administration Guide, WebUI Overview



What is NOT an advantage of Stateful Inspection?

  1. High Performance
  2. Good Security
  3. No Screening above Network layer
  4. Transparency

Answer(s): C

Explanation:

The option that is NOT an advantage of Stateful Inspection is No Screening above Network layer. Stateful Inspection is a firewall technology that inspects packets at all layers of the OSI model, from layer 3 (Network) to layer 7 (Application). Stateful Inspection provides screening above Network layer, such as checking TCP flags, sequence numbers, ports, and application protocols . The other options are advantages of Stateful Inspection, as it provides high performance, good security, and transparency for legitimate traffic.


Reference:

Stateful Inspection Technology, Firewall Administration Guide



Which of the following Windows Security Events will NOT map a username to an IP address in Identity Awareness?

  1. Kerberos Ticket Renewed
  2. Kerberos Ticket Requested
  3. Account Logon
  4. Kerberos Ticket Timed Out

Answer(s): D

Explanation:

The Windows Security Event that will NOT map a username to an IP address in Identity Awareness is Kerberos Ticket Timed Out. This event occurs when a Kerberos ticket expires and is not renewed, which means that the user is no longer active on the network. Identity Awareness does not use this event to map a username to an IP address, as it does not indicate a valid user session. The other events are used by Identity Awareness to map a username to an IP address, as they indicate a successful user authentication or activity on the network.


Reference:

[Kerberos Ticket Expiration and Renewal], [Identity Awareness AD Query]



Fill in the blank: Permanent VPN tunnels can be set on all tunnels in the community, on all tunnels for specific gateways, or__________.

  1. On all satellite gateway to satellite gateway tunnels
  2. On specific tunnels for specific gateways
  3. On specific tunnels in the community
  4. On specific satellite gateway to central gateway tunnels

Answer(s): C

Explanation:

Permanent VPN tunnels can be set on all tunnels in the community, on all tunnels for specific gateways, or on specific tunnels in the community. This option allows the administrator to select which tunnels should be permanent and which should be established on demand. The other options are not valid, as they do not match the available choices in the VPN community settings.


Reference:

[VPN Administration Guide], [Check Point R81.10]



Page 36 of 102



Post your Comments and Discuss Checkpoint 156-215.81 exam with other Community members:

Pooja commented on September 08, 2024
Nice info ok I will do the same
Anonymous
upvote

IPR commented on October 05, 2023
q:124 is wrong - the correct answer is b but the syntax is: ip-address
Anonymous
upvote

IPR commented on October 05, 2023
Q:124 is wrong - the correct answer is B but the syntax is: ip-address
Anonymous
upvote