Exam Details

  • Exam Code
    :156-915.65
  • Exam Name
    :Accelerated CCSE NGX R65
  • Certification
    :CheckPoint Certification
  • Vendor
    :CheckPoint
  • Total Questions
    :204 Q&As
  • Last Updated
    :Mar 10, 2025

CheckPoint CheckPoint Certification 156-915.65 Questions & Answers

  • Question 41:

    Which of these components does NOT require a VPN-1 NGX R65 license?

    A. Check Point Gateway

    B. SmartCenterServer

    C. SmartConsole

    D. SmartUpdate upgrading/patching

  • Question 42:

    What is a Consolidation Policy?

    A. A global Policy used to share a common enforcement policy for multiple similar Security Gateways

    B. The collective name of the logs generated by Eventia Reporter

    C. The collective name of the Security Policy, Address Translation, and SmartDefense Policies

    D. The specific Policy written in SmartDashboard to configure which log data is stored in the Eventia Reporter database

  • Question 43:

    What information is found in the SmartView Tracker audit log?

    A. SIC revoke certificate event

    B. Number of concurrent IKE negotiations

    C. Destination IP address

    D. Most accessed Rule Base rule

  • Question 44:

    How do you view a Security Administrator's activities, using SmartConsole tools?

    A. SmartView Tracker in Log mode

    B. Eventia Suite

    C. SmartView Monitor using the Administrator Activity filter

    D. SmartView Tracker in Audit mode

  • Question 45:

    Users are not prompted for authentication when they access their Web servers, even though you ave created an HTTP rule via User Authentication. Why?

    A. Users must use the SecuRemote Client, to use the User Authentication Rule.

    B. YU have forgotten to place the User Authentication Rule before the Stealth Rule.

    C. You checked the "cache password on desktop" option in Global Properties.

    D. Another rule that accepts HTTP without authentication exists in the Rule Base.

  • Question 46:

    Which of the following is TRUE concerning numbered VPN Tunnel Interfaces (VTIs)?

    A. VTIS are supported on SecurePlatform

    B. VTIS cannot share IP addresses

    C. VTIs can use an already existing physical.interface IP address

    D. VTIS are assigned only local addresses, not remote addresses

  • Question 47:

    Which of the following statements about the Port Scanning feature of SmartDefense is TRUE?

    A. When a port scan is detected, only a log is issued ?never an alert.

    B. The Port Scanning feature actively blocks the scanning, and sends an alert to SmartView Monitor.

    C. A typical scan detection is when more than 500 open inactive ports are open for a period of 120 seconds.

    D. Port Scanning does not block scanning, it detects port scans with one of three levels of detection sensitivity

  • Question 48:

    An NGXR65 HA cluster contains two members with external interfaces 172.28.108.1 and 172.28.108.2. The internal interfaces are 10.4.8.1 and 10.4.8.2. The external cluster VIP address is 172.28.108.3 and the internal cluster VIP address is 10.4.8.3. The synchronization interfaces are 192.168.1.1 and 192.168.1.2. The Security Administrator discovers State Synchronization is not working properly. The cphaprob if command output displays shows:What is causing the State Synchronization problem?

    A. The synchronization network has been defined as "Network Objective: Cluster + 1st sync" with an IP address 192.168.1.3 defined in the NGX cluster object's topology. This configuration is supported in NGX and therefore the above screenshot is not relevant to the sync problem.

    B. The synchronization interface on the individual NGX cluster member object's Topology tab is enabled with "Cluster Interface". Disable this setting.

    C. The synchronization network has a cluster VIP address (192.168.1.3) defined in the NGX cluster object's topology. Remove the 192.168.1.3 VIP interface from the cluster topology.

    D. Another cluster is using 192.168.1.3 as one of the unprotected interfaces.

  • Question 49:

    Match the ClusterXL Modes with their configurations

    A. A2.B3.C4.D 1

    B. A2.B3.C 1.D4

    C. A3,B2,C4,D 1

    D. A3.B2.C 1.D4

  • Question 50:

    You are preparing computers for a new ClusterXL deployment. For your cluster, you plan to use three machines with the following configurations: Cluster Member 1: OS: SecurePlatform, NICs: QuadCard, memory: 512 MB, Security Gateway, version: VPN-1 NGX R65 and primary SmartCenter Server installed, version: VPN-1 NGX R65 Cluster Member 2: OS: SecurePlatform, NICs: 4 Intel 3Com, memory: 512 MB, Security Gateway only, and version: VPN-1 NGX R65 Cluster Member 3: OS: SecurePlatform, NICs: 4 other manufacturers, memory: 256 MB, Security Gateway only, and version: VPN-1 NGX R65

    A. No, the Security Gateway cannot be installed on the SmartCenter Pro Server.

    B. No, the SmartCenter Pro Server is not running the same operating system as the cluster members.

    C. Yes, these machines are configured correctly for a ClusterXL deployment.

    D. No, Cluster Member 3 does not have the required memory.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CheckPoint exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 156-915.65 exam preparations and CheckPoint certification application, do not hesitate to visit our Vcedump.com to find your solutions here.