Check Point 156-315.81.20 Practice Exams
Last updated on Apr 03,2025- Exam Code: 156-315.81.20
- Exam Name: Check Point Certified Security Expert - R81.20
- Certification Provider: Check Point
- Latest update: Apr 03,2025
What are the different command sources that allow you to communicate with the API server?
- A . SmartView Monitor, API_cli Tool, Gaia CLI, Web Services
- B . SmartConsole GUI Console, mgmt_cli Tool, Gaia CLI, Web Services
- C . SmartConsole GUI Console, API_cli Tool, Gaia CLI, Web Services
- D . API_cli Tool, Gaia CLI, Web Services
The CPD daemon is a Firewall Kernel Process that does NOT do which of the following?
- A . Secure Internal Communication (SIC)
- B . Restart Daemons if they fail
- C . Transfers messages between Firewall processes
- D . Pulls application monitoring status
What has to be taken into consideration when configuring Management HA?
- A . The Database revisions will not be synchronized between the management servers
- B . SmartConsole must be closed prior to synchronized changes in the objects database
- C . If you wanted to use Full Connectivity Upgrade, you must change the Implied Rules to allow FW1_cpredundant to pass before the Firewall Control Connections.
- D . For Management Server synchronization, only External Virtual Switches are supported. So, if you wanted to employ Virtual Routers instead, you have to reconsider your design.
To fully enable Dynamic Dispatcher on a Security Gateway:
- A . run fw ctl multik set_mode 9 in Expert mode and then Reboot.
- B . Using cpconfig, update the Dynamic Dispatcher value to “full” under the CoreXL menu.
- C . Edit/proc/interrupts to include multik set_mode 1 at the bottom of the file, save, and reboot.
- D . run fw multik set_mode 1 in Expert mode and then reboot.
You can select the file types that are sent for emulation for all the Threat Prevention profiles. Each profile defines a(n) _____ or _____ action for the file types.
- A . Inspect/Bypass
- B . Inspect/Prevent
- C . Prevent/Bypass
- D . Detect/Bypass
The Firewall kernel is replicated multiple times, therefore:
- A . The Firewall kernel only touches the packet if the connection is accelerated
- B . The Firewall can run different policies per core
- C . The Firewall kernel is replicated only with new connections and deletes itself once the connection times out
- D . The Firewall can run the same policy on all cores.
What is not a component of Check Point SandBlast?
- A . Threat Emulation
- B . Threat Simulator
- C . Threat Extraction
- D . Threat Cloud
Which command shows actual allowed connections in state table?
- A . fw tab Ct StateTable
- B . fw tab Ct connections
- C . fw tab Ct connection
- D . fw tab connections
Which command can you use to enable or disable multi-queue per interface?
- A . cpmq set
- B . Cpmqueue set
- C . Cpmq config
- D . St cpmq enable
Check Point Management (cpm) is the main management process in that it provides the architecture for a consolidated management console. It empowers the migration from legacy Client-side logic to Server-side logic.
The cpm process:
- A . Allow GUI Client and management server to communicate via TCP Port 19001
- B . Allow GUI Client and management server to communicate via TCP Port 18191
- C . Performs database tasks such as creating, deleting, and modifying objects and compiling policy.
- D . Performs database tasks such as creating, deleting, and modifying objects and compiling as well as policy code generation.