CheckPoint 156-215.71 Exam Overview:
| Certification Vendor: | Check Point Software Technologies |
|---|---|
| Exam Name: | Check Point Certified Security Administrator R71 |
| Exam Number: | 156-215.71 |
| Available Languages: | English |
| Certificate Validity Period: | 2 years |
| Real Exam Qty: | 90-100 |
| Passing Score: | 70% |
| Related Certifications: | Check Point Certified Security Expert (CCSE) |
| Exam Duration: | 90 minutes |
| Exam Format: | Scenario-based, Multiple Choice |
| Recommended Training: | CCSA R71 Official Training Course |
| Exam Registration: | Pearson VUE Check Point Exams Check Point Certification Portal |
| Sample Questions: | CheckPoint 156-215.71 Sample Questions |
| Exam Way: | Delivered via Pearson VUE testing centers and online proctored exams |
| Pre Condition: | Recommended basic knowledge of TCP/IP networking and security fundamentals |
| Official Syllabus URL: | https://www.checkpoint.com/certification/ |
CheckPoint 156-215.71 Exam Syllabus Topics:
| Section | Objectives |
|---|---|
| Monitoring and Logging | - SmartConsole logging and event tracking - Traffic monitoring and troubleshooting tools |
| Security Policy Management | - Network Address Translation (NAT) - Access Control Policy rules and processing |
| System Administration | - Gateway deployment and management - Backup and restore procedures |
| VPN and Secure Connectivity | - Site-to-site VPN configuration concepts - IPSec VPN fundamentals |
| User Management and Authentication | - User authentication methods - Identity awareness concepts |
| Security Architecture Fundamentals | - Security gateway and management components - Check Point Security Management architecture overview |
CheckPoint Check Point Certified Security Administrator R71 Sample Questions:
Question 1
What is used to validate a digital certificate?
A. CRL
B. S/MIME
C. IPsec
D. PKCS
Question 2
You want to reset SIC between smberlin and sgosaka.
In SmartDashboard, you choose sgosaka, Communication, Reset. On sgosaka, you start cpconfig, choose Secure Internal Communication and enter the new SIC Activation Key. The screen reads The SIC was successfully initialized and jumps back to the cpconfig menu. When trying to establish a connection, instead of a working connection, you receive this error message:
What is the reason for this behavior?
A. You must first initialize the Gateway object in SmartDashboard (i.e., right-click on the object, choose Basic Setup / Initialize).
B. The activation key contains letters that are on different keys on localized keyboards. Therefore, the activation can not be typed in a matching fashion.
C. The Check Point services on the Gateway were not restarted because you are still in the cpconfig utility.
D. The Gateway was not rebooted, which is necessary to change the SIC key.
Question 3
Although SIC was already established and running, Joe reset SIC between the Security Management Server and a remote Gateway. He set a new activation key on the Gateway's side with the cpconfig command and put in the same activation key in the Gateway's object on the Security Management Server Unfortunately SIC cannot be established. What is a possible reason for the problem?
A. The old Gateway object should have been deleted and recreated.
B. Joe forgot to reboot the Gateway.
C. Joe forgot to exit from cpconfig.
D. The installed policy blocks the communication.
Question 4
Where is the best place to find information about connections between two machines?
A. On a Security Gateway using the command fw log.
B. On a Security Management Server, using SmartView Tracker
C. All options are valid.
D. On a Security Gateway Console interface; it gives you detailed access to log files and state table information
Question 5
What is the difference between Standard and Specific Sign On methods?
A. Standard Sign On allows the user to be automatically authorized for all services that the rule allows. Specific Sign On requires that the user re-authenticate for each service and each host to which he is trying to connect.
B. Standard Sign On allows the user to be automatically authorized for all services that the rule allows, but re-authenticate for each host to which he is trying to connect. Specific Sign On requires that the user re-authenticate for each service.
C. Standard Sign On allows the user to be automatically authorized for all services that the rule allows. Specific Sign On requires that the user re-authenticate for each service specifically defined in the window Specific Action Properties.
D. Standard Sign On requires the user to re-authenticate for each service and each host to which he is trying to connect. Specific Sign On allows the user to sign on only to a specific IP address.
Solutions:
| Question 1 Answer: A | Question 2 Answer: C | Question 3 Answer: C | Question 4 Answer: B | Question 5 Answer: A |

We're so confident of our products that we provide no hassle product exchange.


By Tony


