Check Point Certified Security Administrator R81.20 CCSA (156-215.81.20) Questions and Answers
Question 77
Using R80 Smart Console, what does a “pencil icon” in a rule mean?
Options:
A.
I have changed this rule
B.
Someone else has changed this rule
C.
This rule is managed by check point’s SOC
D.
This rule can’t be changed as it’s an implied rule
Answer:
A
Explanation:
The correct answer is A because a pencil icon in a rule means that you have changed this rule3. The pencil icon indicates that the rule has been modified but not published yet. You can hover over the pencil icon to see who made the change and when3. The other options are not related to the pencil icon. References: Check Point Learning and Training Frequently Asked Questions (FAQs)
Question 78
What Check Point technologies deny or permit network traffic?
Check Point technologies that deny or permit network traffic are packet filtering, stateful inspection, and application layer firewall1, p. 15-16. Packet filtering is a basic firewall technique that examines packets based on their source and destination addresses and ports2, p. 13. Stateful inspection is an advanced firewall technique that tracks the state and context of network connections and inspects packets based on their content and sequence2, p. 13. Application layer firewall is a firewall technique that operates at the application layer of the OSI model and inspects packets based on their application protocols and data2, p. 14. References: Check Point CCSA - R81: Practice Test & Explanation, 156-315.81 Checkpoint Exam Info and Free Practice Test
Question 79
Which statement is NOT TRUE about Delta synchronization?
Options:
A.
Using UDP Multicast or Broadcast on port 8161
B.
Using UDP Multicast or Broadcast on port 8116
C.
Quicker than Full sync
D.
Transfers changes in the Kernel tables between cluster members
Answer:
A
Explanation:
The statement that is not true about Delta synchronization is that it uses UDP Multicast or Broadcast on port 8161. The correct port number for Delta synchronization is 811612. The other statements are true about Delta synchronization. References: ClusterXL Administration Guide R81, Check Point CCSA - R81: Practice Test & Explanation
Question 80
What is the SOLR database for?
Options:
A.
Used for full text search and enables powerful matching capabilities
B.
Writes data to the database and full text search
C.
Serves GUI responsible to transfer request to the DLE server
D.
Enables powerful matching capabilities and writes data to the database
Answer:
A
Explanation:
The SOLR database is used for full text search and enables powerful matching capabilities3 . SOLR is an open source enterprise search platform that provides fast and scalable indexing and searching of data. It supports advanced features such as faceting, highlighting, spell checking, synonyms, etc. The SOLR database is used by Check Point products such as SmartLog and SmartEvent to store and query logs and events3 . The other options are incorrect. Option B is false, as SOLR does not write data to the database, but only reads data from it. Option C is false, as SOLR does not serve GUI, but only provides a RESTful API for queries. Option D is false, as SOLR does not enable powerful matching capabilities and write data to the database, but only enables powerful matching capabilities. References: SOLR - Check Point Software, [Apache Solr]