aiotestking uk

156-215.77 Exam Questions - Online Test


156-215.77 Premium VCE File

Learn More 100% Pass Guarantee - Dumps Verified - Instant Download
150 Lectures, 20 Hours

Q1. - (Topic 3) 

You have just installed your Gateway and want to analyze the packet size distribution of your traffic with SmartView Monitor. Unfortunately, you get the message. 

"There are no machines that contain Firewall Blade and SmartView Monitor." What should you do to analyze the packet size distribution of your traffic? 

Give the BEST answer. 

A. Enable Monitoring on your Security Management Server. 

B. Purchase the SmartView Monitor license for your Security Gateway. 

C. Purchase the SmartView Monitor license for your Security Management Server. 

D. Enable Monitoring on your Security Gateway. 

Answer:

Q2. - (Topic 3) 

An advantage of using central instead of local licensing is: 

A. The license must be renewed when changing the IP address of a Security Gateway. Each module's license has a unique IP address. 

B. A license can be taken from one Security Management Server and given to another Security Management Server. 

C. Licenses are automatically attached to their respective Security Gateways. 

D. Only one IP address is used for all licenses. 

Answer:

Q3. - (Topic 1) 

ALL of the following options are provided by the SecurePlatform sysconfig utility, EXCEPT: 

A. Export setup 

B. Time & Date 

C. DHCP Server configuration 

D. GUI Clients 

Answer:

Q4. - (Topic 3) 

How many packets are required for IKE Phase 2? 

A. 12 B. 2 

C. 6 

D. 3 

Answer:

Q5. - (Topic 3) 

Which authentication type permits five different sign-on methods in the authentication properties window? 

A. Manual Authentication 

B. Client Authentication 

C. Session Authentication 

D. User Authentication 

Answer:

Q6. - (Topic 3) 

Reviewing the Rule Base, you see that ________ is responsible for the client authentication failure. 

Exhibit: 

Exhibit: 

A. Rule 4 

B. Rule 7 

C. Rule 8 

D. Rule 5 

Answer:

Q7. - (Topic 2) 

You have configured Automatic Static NAT on an internal host-node object. You clear the box Translate destination on client site from Global Properties > NAT. Assuming all other NAT settings in Global Properties are selected, what else must be configured so that a host on the Internet can initiate an inbound connection to this host? 

A. A proxy ARP entry, to ensure packets destined for the public IP address will reach the Security Gateway's external interface. 

B. No extra configuration is needed. 

C. The NAT IP address must be added to the external Gateway interface anti-spoofing group. 

D. A static route, to ensure packets destined for the public NAT IP address will reach the Gateway's internal interface. 

Answer:

Q8. - (Topic 2) 

Which of the following is a viable consideration when determining Rule Base order? 

A. Adding SAM rules at the top of the Rule Base 

B. Placing frequently accessed rules before less frequently accessed rules 

C. Grouping rules by date of creation 

D. Grouping IPS rules with dynamic drop rules 

Answer:

Q9. - (Topic 1) 

The Security Gateway is installed on SecurePlatform R77. The default port for the Web User Interface is ____________. 

A. TCP 443 

B. TCP 4433 

C. TCP 18211 

D. TCP 257 

Answer:

Topic 2, Volume B 

Q10. - (Topic 3) 

Which command gives an overview of your installed licenses? 

A. cplic print 

B. cplicense 

C. fw lic print 

D. showlic 

Answer: