  Edina  09-25-2019

156-215.80 Check Point Certified Security Administrator R80 exam is the new CCSA R80 Certification test, previous exam 156-215.77 will be retired on Sep.30.2019.

CCSA R80 156-215.80 Exam Overview - Check Point Certified Security Administrator R80

Check Point Certified Security Administrator R80 provides an exam overview of the core troubleshooting and advanced configuration skills, the Certified Security Administrator is expected to demonstrate. CCSA R80 156-215.80 exam offered through Pearson VUE is multiple choice. You will have 90 minutes to answer up to 90 questions.

Notice: Since R80 is a completely new product version with many new features, only the CCSA R80 certification provides the background necessary to be a prerequisite to CCSE R80 certification.

Check Point CCSA R80 156-215.80 Exam Objectives

Check Point technology is designed to address network exploitation, administrative flexibility and critical accessibility. This Section introduces the basic concepts of network security and management based on Check Point’s three-tier structure, and provides the foundation for technologies involved in the Check Point Architecture. These objectives and study questions provide a review of important concepts, but are not all inclusive.
Topic: Introduction to Check Point Architecture
Topic: Security Policy Management
Topic: Check Point Security Solutions
Topic: Traffic Visibility
Topic: Basic Concepts of VPN
Topic: Managing User’s Access
Topic: Working with Cluster XL
Topic: Administrator Task Implementation
Topic: SmartEvent Reports

Download CCSA R80 156-215.80 Practice Test Questions:

1.Which of the following is NOT an integral part of VPN communication within a network?
A. VPN key
B. VPN community
C. VPN trust entities
D. VPN domain
Answer: A

2.Vanessa is firewall administrator in her company; her company is using Check Point firewalls on central and remote locations, which are managed centrally by R80 Security Management Server. One central location has an installed R77.30 Gateway on Open server. Remote location is using Check Point UTM-1 570 series appliance with R71.
Which encryption is used in Secure Internal Communication (SIC) between central management and firewall on each location?
A. On central firewall AES128 encryption is used for SIC, on Remote firewall 3DES encryption is used for SIC.
B. On both firewalls, the same encryption is used for SIC. This is AES-GCM-256.
C. The Firewall Administrator can choose which encryption suite will be used by SIC.
D. On central firewall AES256 encryption is used for SIC, on Remote firewall AES128 encryption is used for SIC.
Answer: A

3.Which of the following is NOT a SecureXL traffic flow?
A. Medium Path
B. Accelerated Path
C. Fast Path
D. Slow Path
Answer: C

4.Which of the following Automatically Generated Rules NAT rules have the lowest implementation priority?
A. Machine Hide NAT
B. Address Range Hide NAT
C. Network Hide NAT
D. Machine Static NAT
Answer: B,C

5.Fill in the blanks: VPN gateways authenticate using ___________ and ___________ .
A. Passwords; tokens
B. Certificates; pre-shared secrets
C. Certificates; passwords
D. Tokens; pre-shared secrets
Answer: B

6.In R80 spoofing is defined as a method of:
A. Disguising an illegal IP address behind an authorized IP address through Port Address Translation.
B. Hiding your firewall from unauthorized users.
C. Detecting people using false or wrong authentication logins
D. Making packets appear as if they come from an authorized IP address.
Answer: D

