CheckPoint Check Point Certified Security Administrator R71 認定 156-215.71 試験問題:
1. All R71 Security Servers can perform authentication with the exception of one. Which of the Security Servers cannot perform authentication?
A) SMTP
B) FTP
C) HTTP
D) RLOGIN
2. Assume an intruder has compromised your current IKE Phase 1 and Phase 2 keys. Which of the following options will end the intruder's access after the next Phase 2 exchange occurs?
A) Perfect Forward Secrecy
B) M05 Hash Completion
C) Phase 3 Key Revocation
D) SHA1 Hash Completion
3. Of the following VPN Community options, which is most likely to provide a balance between IKE compatibility to VPN-capable devices (Check Point and non-Check Point) and preserving resources on the R71 Gateway? VPN tunnel sharing per:
A) subnet, no permanent tunnels, Diffie-Hellman Group 2 for Phase 1.
B) pair of hosts, permanent tunnels, Diffie-Hellman Group 2 for Phase 1.
C) subnet, permanent tunnels, Diffie-Hellman Group 1 for Phase 1.
D) pair of hosts, no permanent tunnels, Diffie-Hellman Group 1 for Phase 1.
4. You are installing your R71Security Gateway. Which is NOT a valid option for the hardware platform?
A) Solaris
B) Crossbeam
C) IPSO
D) Windows
5. Where can an administrator configure the notification action in the event of a policy install time change?
A) SmartView Tracker / Audit Log
B) SmartDashboard / Security Gateway Object / Advanced Properties Tab
C) SmartDashboard / Policy Package Manager
D) SmartView Monitor / Gateways / Thresholds Settings
質問と回答:
質問 # 1 正解: A | 質問 # 2 正解: A | 質問 # 3 正解: A | 質問 # 4 正解: A | 質問 # 5 正解: D |