Exam Details

  • Exam Code
    :156-215.81.20
  • Exam Name
    :Check Point Certified Security Administrator - R81.20 (CCSA)
  • Certification
    :Checkpoint Certifications
  • Vendor
    :CheckPoint
  • Total Questions
    :677 Q&As
  • Last Updated
    :Mar 06, 2025

CheckPoint Checkpoint Certifications 156-215.81.20 Questions & Answers

  • Question 21:

    Which of the following is NOT a valid application navigation tab in SmartConsole?

    A. WEBUI and COMMAND LINE

    B. SECURITY POLICIES

    C. GATEWAYS and SERVERS

    D. LOGS and MONITOR

  • Question 22:

    What are two basic rules Check Point recommends for building an effective security policy?

    A. Accept Rule and Drop Rule

    B. Explicit Rule and Implied Rule

    C. Cleanup Rule and Stealth Rule

    D. NAT Rule and Reject Rule

  • Question 23:

    When dealing with policy layers, what two layer types can be utilized?

    A. Inbound Layers and Outbound Layers

    B. Ordered Layers and Inline Layers

    C. Structured Layers and Overlap Layers

    D. R81.X does not support Layers

  • Question 24:

    What are the three main components of Check Point security management architecture?

    A. Smart Console, Standalone, Security Management Server

    B. Policy-Client, Security Management Server, Security Gateway

    C. SmartConsole, Security Policy Server, Logs and Monitoring

    D. SmartConsole, Security Management Server, Security Gateway

  • Question 25:

    Which Check Point software blade provides protection from zero-day and undiscovered threats?

    A. Threat Extraction

    B. Threat Emulation

    C. Firewall

    D. Application Control

  • Question 26:

    What are the three types of UserCheck messages?

    A. ask, block, and notify

    B. block, action, and warn

    C. action, inform, and ask

    D. inform, ask, and drop

  • Question 27:

    By default, which port is used to connect to the GAiA Portal?

    A. 4434

    B. 80

    C. 8080

    D. 443

  • Question 28:

    Choose what BEST describes a Session.

    A. Sessions ends when policy is pushed to the Security Gateway.

    B. Sessions locks the policy package for editing.

    C. Starts when an Administrator logs in through SmartConsole and ends when the Administrator logs out.

    D. Starts when an Administrator publishes all the changes made on SmartConsole.

  • Question 29:

    Which command shows detailed information about VPN tunnels?

    A. cat $FWDIR/conf/vpn.conf

    B. vpn tu tlist

    C. vpn tu

    D. cpview

  • Question 30:

    After a new Log Server is added to the environment and the SIC trust has been established with the SMS what will the gateways do?

    A. Gateways will send new firewall logs to the new Log Server as soon as the SIC trust is set up between the SMS and the new Log Server.

    B. Logs are not automatically forwarded to a new Log Server. SmartConsole must be used to manually configure each gateway to send its logs to the server.

    C. The firewalls will detect the new Log Server after the next policy install and redirect the new logs to the new Log Server.

    D. The gateways can only send logs to an SMS and cannot send logs to a Log Server. Log Servers are proprietary log archive servers.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-215.81.20 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.