Exam Details

  • Exam Code
    :156-915.65
  • Exam Name
    :Accelerated CCSE NGX R65
  • Certification
    :CheckPoint Certification
  • Vendor
    :CheckPoint
  • Total Questions
    :204 Q&As
  • Last Updated
    :Mar 10, 2025

CheckPoint CheckPoint Certification 156-915.65 Questions & Answers

  • Question 191:

    The Web Filtering Policy can be configured to monitor URLs in order to:

    A. Log sites that are currently being blocked.

    B. Log sites from blocked categories.

    C. Alert the Administrator to block a suspicious site.

    D. Block sites only once.

  • Question 192:

    When configuring VPN High Availability (HA) with MEP, which of the following is correct?

    A. The decision on which MEP Security Gateway to use is made on the remote gateway's side (non-MEP side).

    B. MEP Gateways must be managed by the same SmartCenter Server.

    C. MEP VPN Gateways cannot be geographically separated machines.

    D. If one Gateway fails, the synchronized connection fails over to another Gateway and the connection continues

  • Question 193:

    A marketing firm's networking team is trying to troubleshoot user complaints regarding access to audio-streaming material from the Internet. The networking team asks you to check the object and rule configuration settings for the perimeter Security Gateway. Which SmartConsole application should you use to check these objects and rules?

    A. SmartViewTracker

    B. SmartView Status

    C. SmartView Monitor

    D. SmartDashboard

  • Question 194:

    Which of the following is the most critical step in a SmartCenter Server NGX R65 backup strategy?

    A. Perform a full system tape backup of both the SmartCenter and Security Gateway machines.

    B. Run the cpstop command prior to running the upgrade_export command

    C. Using the upgradejmport command, attempt to restore the SmartCenter Server to a non- production system

    D. Move the *.tgz upgrade_export file to an off site location via ftp.

  • Question 195:

    An NGXR65 HA cluster contains two members with external interfaces 172.28.108.1 and 172.28.108.2. The internal interfaces are 10.4.8.1 and 10.4.8.2. The external cluster VIP address is 172.28.108.3 and the internal cluster VIP address is 10.4.8.3. The synchronization interfaces are 192.168.1.1 and 192.168.1.2. The Security Administrator discovers State Synchronization is not working properly. The cphaprob if command output displays shows:What is causing the State Synchronization problem?

    A. The synchronization network has been defined as "Network Objective: Cluster + 1st sync" with an IP address 192.168.1.3 defined in the NGX cluster object's topology. This configuration is supported in NGX and therefore the above screenshot is not relevant to the sync problem.

    B. The synchronization interface on the individual NGX cluster member object's Topology tab is enabled with "Cluster Interface". Disable this setting.

    C. The synchronization network has a cluster VIP address (192.168.1.3) defined in the NGX cluster object's topology. Remove the 192.168.1.3 VIP interface from the cluster topology.

    D. Another cluster is using 192.168.1.3 as one of the unprotected interfaces.

  • Question 196:

    A marketing firm's networking team is trying to troubleshoot user complaints regarding access to audio-streaming material from the Internet. The networking team asks you to check the object and rule configuration settings for the perimeter Security Gateway. Which SmartConsole application should you use to check these objects and rules?

    A. SmartViewTracker

    B. SmartView Status

    C. SmartView Monitor

    D. SmartDashboard

  • Question 197:

    When configuring site-to-site VPN High Availability (HA) with MEP, which of the following is correct?

    A. MEP Gateways cannot be geographically separated machines.

    B. MEP Gateways must be managed by the same SmartCenter Server.

    C. The decision on which MEP Gateway to use is made on the MEP Gateway's side of the tunnel.

    D. If one MEP Security Gateway fails, the connection is lost and the backup Gateway picks up the next connection.

  • Question 198:

    How do you verify a VPN Tunnel Interface (VTI) is configured properly?

    A. vpn shell display interface detailed

    B. vpn shell show interface detailed

    C. vpn shell display detailed

    D. vpn shell show detailed

  • Question 199:

    A VPN Tunnel Interface (VTI) is defined on SecurePlatform Pro as: vpn shell interface add numbered

    10.10.0.1 10.10.0.2 madrid.cp What do you know about this VTI?

    A. The VTI name is "madrid.cp".

    B. The peer Security Gateway's name is "madrid.cp"

    C. 10.10.0.1 is the local Gateway's internal interface, and 10.10.0.2 is the internal interface of the remote Gateway

    D. The local Gateway's object name is "madrid.cp".

  • Question 200:

    What physical machine must have access to the User Center public IP when checking for new packages with SmartUpdate?

    A. SmartUpdate installed SmartCenter Server PC

    B. SmartUpdate GUI PC

    C. VPN.1 Security Gateway getting the new upgrade package

    D. SmartUpdate Repository SQL database Server

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-915.65 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.