Free Cheat-test Samples and Demo Questions Download
Adobe exams Adobe
Apple exams Apple
Avaya exams Avaya
Check Point exams Check Point
Cisco exams Cisco
Citrix exams Citrix
CIW exams CIW
CompTIA exams CompTIA
CWNP exams CWNP
EC-Council exams EC-Council
EMC exams EMC
Exin exams Exin
Fortinet exams Fortinet
GIAC exams GIAC
Hitachi exams Hitachi
HP exams HP
IBM exams IBM
Isaca exams Isaca
ISC exams ISC
ISEB exams ISEB
Juniper exams Juniper
LPI exams LPI
McAfee exams McAfee
Microsoft exams Microsoft
Oracle exams Oracle
PMI exams PMI
Riverbed exams Riverbed
SNIA exams SAP
Sun exams SAS
Symantec exams Symantec
VMware exams VMware
All certification exams

Checkpoint 156-816 Exam - Cheat-Test.com

Free 156-816 Sample Questions:

Q: 1 Which of the following can function as a Management Server for a VSX Gateway?

A. Check Point Integrity
B. SiteManager-1 NGX: Multi-Domain Server
C. Security Management Portal
D. VPN-1/FireWall-1 Small Office
E. Provider-1 NGX: Multi-Domain Server

Answer: E

Q: 2 You are configuring source-based routing in a VSX Gateway deployment with both External and Internal Virtual Routers. Which of the following functions cannot be configured for the Virtual Systems?

A. Virtual System clustering
B. Anti-spoofing measures
C. Network Address Translation
D. Remote access VPNs
E. Intranet VPNs

Answer: B

Q: 3 During MDS installation, you must configure at least one VSX Administrator. After creating the Administrator, you are prompted to perform which task?

A. Grant VSX-specific privileges to the Administrator
B. Assign the Administrator to manage a specific Virtual System
C. Add the Administrator to a group
D. Assign the Administrator to manage a specific interface on the VSX Gateway
E. Assign the Administrator to manage a specific CMA

Answer: C

Q: 4 In a VSX Gateway cluster, which of the following objects are available by default as installation targets for the Management Virtual System?

A. Individual Management Virtual Systems (MVS) for each cluster member
B. MVS cluster object
C. Individual External Virtual Routers for each cluster member
D. Virtual Switch cluster object
E. Individual Virtual Switch Members

Answer: B

Q: 5 Which of the following MDS types allows you to create and manage a VSX Gateway?

A. MDS CLM
B. MDS Manager station
C. MDS VSX Integrator
D. MDS MLM
E. MDS Manager + Container station

Answer: E

Q: 6 What are the two levels of VSX Gateway clustering?

A. INSPECT and database level
B. Database and VSX Gateway levels
C. Virtual device and database levels
D. INSPECT and configuration levels
E. Virtual device and VSX Gateway levels

Answer: E

Q: 7 When deploying a VSX Gateway managed by a SmartCenter Server, which of the following statements is TRUE?

A. VSX Administrators can configure different domains for each Virtual System.
B. Multiple Administrators can simultaneously connect to the same database, to manage multiple Customers.
C. All Customer objects, rules, and users are shared in a single database.
D. Each Virtual System has its own unique Certificate Authority.
E. VSX superuser Administrators can configure granular permissions for each Customer Administrator.

Answer: C

Q: 8 What is the difference between Single-Context and Multi-Context processes?

A. Single-Context processes are implemented in standard firewall deployments, while only Multi-Context processes are implemented in VSX Gateway deployments.
B. Single-Context processes are shared between VSX Gateways in an HA configuration, while Multi-Context processes are shared between VSX Gateways in a Load Sharing environment.
C. Single-Context processes are ones in which all Virtual Systems share, while Multi-Context processes are unique to each Virtual System.
D. Single-Context processes are implemented in a single VSX Gateway environment, while Multi-Context processes are only implemented in VSX Gateway High Availability (HA).
E. Single-Context processes are unique to each Virtual System on a Gateway, while Multi-Context processes are ones in which all Virtual Systems share.

Answer: E

Q: 9 A Warp Link is a virtual point-to-point connection between a:

A. Virtual Router and Virtual System.
B. Virtual Router and Virtual Switch.
C. Virtual System and the management interface.
D. Virtual Router and a physical interface.
E. Virtual System and another Virtual System.

Answer: A

Q: 10 Which of the following statements is true concerning the default Security Policy of the External Virtual Router?

A. The External Virtual Router automatically performs Hide NAT behind its external interface for all Virtual Systems connected to it.
B. The default Policy of the External Virtual Router denies all traffic going to or coming from it.
C. The default policy of the External Virtual Router cannot be changed.
D. All traffic coming from networks protected by a VSX Gateway is accepted. All other traffic is dropped.
E. The External Virtual Router always enforces the same Policy as the Management Virtual System.

Answer: B

Q: 11 How many Management Virtual System instances does each member of a VSX Gateway cluster run?

A. One for each physical interface on the Gateway
B. One for each cluster member
C. Only one
D. Two, the cluster MVS and the unique Gateway MVS
E. One for each Virtual System configured on the Gateway

Answer: C

Q: 12 Which of the following items is most commonly configured as the default Gateway for a Management Virtual System?

A. Interface leading to the management network
B. Same setting as the default Gateway of the External Virtual Router; typically this is a perimeter router.
C. External Virtual Router
D. Internal Virtual Router
E. Interface leading to the synchronization network

Answer: C

Q: 13 Which of the following is NOT a type of physical interface seen in a VSX Gateway?

A. Warp
B. Internal
C. Dedicated management
D. External
E. Synchronization

Answer: A

Q: 14 A ______ is a virtual security device configured on a VSX Gateway, which operates as a complete routing and security domain, with firewall and VPN capabilities.

A. Virtual Switch
B. Context Identification Module
C. Virtual System Extension
D. Virtual System
E. External Virtual Router

Answer: D

Q: 15 When deploying a VSX Gateway managed by a Provider-1 MDS, how many Administrators can connect in Read/Write mode to the MDS database simultaneously?

A. One for each CMA
B. No more than 250
C. One
D. No more than 25
E. Two; one can connect to the Management Virtual System database, while the other connects to the Virtual System database.

Answer: A

Q: 16 Consider the following scenario: You have two VSX Gateways configured for High Availability. Each has one dedicated management interface, one synchronization interface, one external interface, and two interfaces used to connect to protected customer networks. How many cluster interfaces do you have in this configuration?

A. Three; one Management Virtual System cluster, one External Virtual Router cluster, and one Virtual System cluster containing both customer Virtual Systems
B. Five; one VSX Gateway cluster, one Management Virtual System Cluster, one External Virtual Router cluster, and two Virtual System clusters
C. Two; one External Virtual Router cluster, and one cluster containing all Virtual Systems
D. One; one VSX cluster containing all components
E. Four; one Management Virtual System cluster, one External Virtual Router cluster, and two Virtual System clusters

Answer: B

Q: 17 When configuring Virtual Systems with overlapping IP addressing, the Virtual Systems must:

A. Be included in a VPN.
B. Be on the same network.
C. Perform Network Address Translation.
D. Perform in Bridge mode.
E. Define VLAN Tags.

Answer: C

Q: 18 When configuring a Provider-1 management solution for your VSX Gateway, what is the fewest number of CMAs that must be licensed, for VSX management functionality?

A. 50
B. 25
C. 5
D. 10
E. 1

Answer: D

Q: 19 If you want your customer's Virtual Systems to give protected hosts access to and from the Internet, which of the following must be configured as a public IP address?

A. Default Gateway IP address of the Virtual Switch
B. Main IP of the customer's Virtual System
C. Main IP of the Virtual Switch
D. Default Gateway IP address of the Management Virtual System
E. Main IP of the Management Virtual System

Answer: B

Q: 20 TRUE or FALSE. A Virtual System in Bridge mode can enforce anti-spoofing definitions.

A. True, anti-spoofing must be manually defined in bridge mode.
B. True, as long as the Virtual System has more than two interfaces defined.
C. True, as long as Network Address Translation is performed.
D. True, anti-spoofing measures are defined automatically in Bridge mode.
E. False, anti-spoofing cannot be configured for Virtual Systems in Bridge mode.

Answer: A

Q: 21 The VSX Management Server uses which of the following channels to communicate with components of the VSX Gateway?

A. Security Management
B. Gateway Management Configuration
C. Context Identification
D. VSX Inspection Verification
E. Forwarding Configuration

Answer: A

Q: 22 Which of the following is a type of VLAN membership?

A. Application-based
B. Session-based
C. Route-based
D. State-based
E. MAC address-based

Answer: E

Q: 23 Which of the following statements is TRUE concerning a VSX NGX deployment?

A. A separate management interface is required for a management network to access and control a VSX Gateway.
B. Multiple VSX Administrators can be configured with granular permission control in a SmartCenter Server management environment.
C. VSX Administrators can manage VSX Gateways and clusters through the Internet. No special management interface is required.
D. The functionality of VSX NGX is based on NG FP0.
E. All VSX virtual devices now share all functions of a standard NGX Security Gateway.

Answer: C

Q: 24 Which of the following elements is NOT maintained separately by each Virtual System on a VSX Gateway?

A. Configuration parameters
B. Management database
C. Logging parameters
D. Security Policies
E. State tables

Answer: B

Q: 25 When deploying a VSX Gateway managed by a SmartCenter Server, how many Certificate Authorities will the deployment have?

A. One for each Virtual System and Virtual Router configured on the VSX Gateway
B. One, shared by all components
C. Two; one for the SmartCenter Server, and one shared by all Virtual Systems and Virtual Routers
D. One for each Virtual System configured on the VSX Gateway
E. Three; one for the SmartCenter Server, one shared by all Virtual Systems, and one shared by the Virtual Routers

Answer: B

Q: 26 Delta Synchronization of VSX Gateways takes place through UDP broadcasts on which VSX Gateway port?

A. 18221
B. 18192
C. 18190
D. 18211
E. 8116

Answer: E

Q: 27 Which of the following objects allows you to configure resource settings, to limit the number of concurrent connections?

A. VSX Gateway
B. Virtual Router
C. Management Virtual System
D. Internal Virtual Switch
E. External Virtual Switch

Answer: C

Q: 28 Both SmartCenter Server and Provider-1 can be used for central configuration, management, and monitoring of multiple VSX Gateways and Virtual Systems. What criteria are used to decide which management model is used?

A. Licensing restrictions and costs, administrative requirements, and operation model
B. The size of the deployment and planned expansion, administrative requirements, and security model
C. The size of the deployment and planned expansion, end-user requirements, operation model, and licensing restrictions
D. The size of the deployment and planned expansion, administrative requirements, operation model, and licensing restrictions
E. The size of the deployment and planned expansion, end-user requirements, and security model

Answer: D

Q: 29 When Virtual Systems are deployed in Bridge mode, they use ______ to detect failures and forward traffic to another Virtual System in a cluster?

A. BPDU
B. MPLS
C. VRRP
D. OSPF
E. STP

Answer: E


© 2014 Cheat-Test.com, All Rights Reserved