Check Point 156-215.81.20 Check Point Certified Security Administrator R81.20 Online Training
Check Point 156-215.81.20 Online Training
The questions for 156-215.81.20 were last updated at Aug 13,2025.
- Exam Code: 156-215.81.20
- Exam Name: Check Point Certified Security Administrator R81.20
- Certification Provider: Check Point
- Latest update: Aug 13,2025
Of all the Check Point components in your network, which one changes most often and should be backed up most frequently?
- A . SmartManager
- B . SmartConsole
- C . Security Gateway
- D . Security Management Server
Which option would allow you to make a backup copy of the OS and Check Point configuration, without stopping Check Point processes?
- A . All options stop Check Point processes
- B . backup
- C . migrate export
- D . snapshot
What is the Transport layer of the TCP/IP model responsible for?
- A . It transports packets as datagrams along different routes to reach their destination.
- B . It manages the flow of data between two hosts to ensure that the packets are correctly assembled and delivered to the target application.
- C . It defines the protocols that are used to exchange data between networks and how host programs interact with the Application layer.
- D . It deals with all aspects of the physical components of network connectivity and connects with different network types.
What needs to be configured if the NAT property ‘Translate destination on client side’ is not enabled in Global properties?
- A . A host route to route to the destination IP
- B . Use the file local.arp to add the ARP entries for NAT to work
- C . Nothing, the Gateway takes care of all details necessary
- D . Enabling ‘Allow bi-directional NAT’ for NAT to work correctly
In the Check Point Security Management Architecture, which component(s) can store logs?
- A . SmartConsole
- B . Security Management Server and Security Gateway
- C . Security Management Server
- D . SmartConsole and Security Management Server
Fill in the blank: In order to install a license, it must first be added to the ____________.
- A . User Center
- B . Package repository
- C . Download Center Web site
- D . License and Contract repository
When logging in for the first time to a Security management Server through SmartConsole, a fingerprint is saved to the:
- A . Security Management Server’s /home/.fgpt file and is available for future SmartConsole authentications.
- B . Windows registry is available for future Security Management Server authentications.
- C . There is no memory used for saving a fingerprint anyway.
- D . SmartConsole cache is available for future Security Management Server authentications.
Fill in the blank: By default, the SIC certificates issued by R80 Management Server are based on the ____________ algorithm.
- A . SHA-256
- B . SHA-200
- C . MD5
- D . SHA-128
Which message indicates IKE Phase 2 has completed successfully?
- A . Quick Mode Complete
- B . Aggressive Mode Complete
- C . Main Mode Complete
- D . IKE Mode Complete
Administrator Dave logs into R80 Management Server to review and makes some rule changes. He notices that there is a padlock sign next to the DNS rule in the Rule Base.
What is the possible explanation for this?
- A . DNS Rule is using one of the new feature of R80 where an administrator can mark a rule with the padlock icon to let other administrators know it is important.
- B . Another administrator is logged into the Management and currently editing the DNS Rule.
- C . DNS Rule is a placeholder rule for a rule that existed in the past but was deleted.
- D . This is normal behavior in R80 when there are duplicate rules in the Rule Base.