Checkpoint 156-915.80 Exam Questions
Check Point Certified Security Expert Update - R80.10 (Page 16 )

Updated On: 17-Feb-2026

In SPLAT the command to set the timeout was idle. In order to achieve this and increase the timeout for Gaia, what command do you use?

  1. set idle <value>
  2. set inactivity­timeout <value>
  3. set timeout <value>
  4. set inactivity <value>

Answer(s): B



What makes Anti-Bot unique compared to other Threat Prevention mechanisms, such as URL Filtering, Anti-Virus, IPS, and Threat Emulation?

  1. Anti-Bot is the only countermeasure against unknown malware
  2. Anti-Bot is the only protection mechanism which starts a counter-attack against known Command & Control Centers
  3. Anti-Bot is the only signature-based method of malware protection
  4. Anti-Bot is a post-infection malware protection to prevent a host from establishing a connection to a Command & Control Center

Answer(s): D



SmartEvent does NOT use which of the following procedures to identify events?

  1. Matching a log against each event definition
  2. Create an event candidate
  3. Matching a log against local exclusions
  4. Matching a log against global exclusions

Answer(s): C

Explanation:

Events are detected by the SmartEvent Correlation Unit. The Correlation Unit task is to scan logs for criteria that match an Event Definition. SmartEvent uses these procedures to identify events:
Matching a Log Against Global Exclusions
Matching a Log Against Each Event Definition
Creating an Event Candidate
When a Candidate Becomes an Event


Reference:

https://sc1.checkpoint.com/documents/R76/CP_R76_SmartEvent_AdminGuide/17401.htm



In Gaia, if one is unsure about a possible command, what command lists all possible commands.

  1. show all |grep commands
  2. show configuration
  3. show commands
  4. get all commands

Answer(s): C



In which case is a Sticky Decision Function relevant?

  1. Load Sharing ­ Multicast
  2. Load Balancing ­ Forward
  3. High Availability
  4. Load Sharing ­ Unicast

Answer(s): C






Post your Comments and Discuss Checkpoint 156-915.80 exam dumps with other Community members:

Join the 156-915.80 Discussion