Checkpoint 156-215-70: Practice Exam
QUESTION NO: 1
 
 
 
 
 
QUESTION NO: 2
 
You run a standalone deployment with a machine that runs SecurePlatform NGX R60. You now
want to change the configuration to distributed deployment. You get a new machine with high
specification in order to implement Security Gateway R70 in a distributed deployment. How would
you use these two machines to successfully migrate the NGX R60 configuration?
 
A. (A) Run R70 CDROM in the old machine to upgrade the existing SecurePlatform R60 to R70
and install the R70 Security Gateway. (B) Run sysconfig to complete configuration. (C) On the
new machine, install SecurePlatform as the primary Security Management Server only. (D)
Transfer the exported .tgz file into the new machine, import the configuration, and then reboot. (E)
Go to the SmartDashboard, change the Gateway object to the new version, and reset SIC for the
Gateway object.
B. (A)On the existing machine, export the NGX R60 configuration to a network share.
(B) Run R70 CDROM in the old machine to upgrade the existing SecurePlatform R60 to R70 and
install the R70 Security Gateway. (C) Run cpconfig to complete configuration.
(D) On the new machine, install SecurePlatform as the primary Security Management Server only.
(E) Transfer the exported .tgz file into the new machine, import the configuration, and then reboot.
(F) Go to the SmartDashboard, change the Gateway object to the new version, and reset SIC for
the Gateway object.
C. (A)On the existing machine, export the NGX R60 configuration to a network share.
(B) Run R70 CDROM in the old machine to upgrade the existing SecurePlatform R60 to R70 and
install the R70 Security Gateway. (C) Run sysconfig to complete configuration.
(D) On the new machine, install SecurePlatform as the primary Security Management Server only.
(E) Transfer the exported .tgz file into the new machine, import the configuration, and then reboot.
(F) Go to the SmartDashboard, change the Gateway object to the new version, and reset SIC for
the Gateway object.
D. (A) Run R70 CDROM in the old machine to upgrade the existing SecurePlatform R60 to R70
and install the R70 Security Gateway. (B) Run cpconfig to complete configuration. (C) On the new
machine, install SecurePlatform as the primary Security Management Server only. (D) Transfer
the exported .tgz file into the new machine, import the configuration, and then reboot. E. Go to the
SmartDashboard, change the Gateway object to the new version, and reset SIC for the Gateway
object.
E. (A)On the existing machine, export the NGX R60 configuration to a network share. (B) Uninstall
the R70 Security Gateway. (C) Run sysconfig to complete configuration.
(D) On the new machine, install SecurePlatform as the primary Security Management Server only.
(E) Transfer the exported .tgz file into the new machine, import the configuration, and then reboot.
(F) Go to the SmartDashboard, change the Gateway object to the new version, and reset SIC for
the Gateway object.


 

 
"Pass Any Exam. Any Time." - http://www.passallexam.com

2

 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
Answer: C
 
 
 
 
QUESTION NO: 3
 
Examine the diagram and answer the question. What do you think is missing from the rule?
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
A. Implicit rule
B. Stealth rule
C. Anti-spoofing rule
D. Pseudo rule
E. Cleanup rule
 
Answer: E
 
 
 
 
QUESTION NO: 4
 
Which of the following would you not test if SIC fails to initialize?
 
A. Check the date and time at the operating systems and make sure the time is accurate
B. Ensure connectivity between the gateway and Security Management server
C. Verify that Security Management server and SmartDashboard use the different SIC activation
key
D. Ensure the Security Management server's IP address andname are in the /etc/hosts file on the
gateway
E. On the gateway, type fw unloadlocal to remove the security policy so that all traffic is allowed
through


 

"Pass Any Exam. Any Time." - http://www.passallexam.com

3

 
 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
Answer: C
 
 
 
 
QUESTION NO: 5
 
What Dashboard will you go to in Network Voyager in order to get information regarding CPU
Utilization and memory Utilization when performing Performance Monitoring?
 
A. System Dashboard
B. Traffic Dashboard
C. Connection Dashboard
D. Connection Map Dashboard
E. Forwarding Dashboard
 
Answer: A
 
 
 
 
QUESTION NO: 6
 
The diagram shows sample configuration for Anti-Virus Checking for Incoming Email. Which one
of the following is not a step to configure Anti-Virus checking for incoming email?
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
A. Define rules that use the resource
B. Create a gateway object to represent the Security Gateway
C. Create an OPSEC Application object to represent the OPSEC Application server, and associate
it with the host object


 

 
 
 
"Pass Any Exam. Any Time." - http://www.passallexam.com

 
 

4

 
 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
D. Define an SMTP resource that uses the OPSEC Application object, and associate it with the
OPSEC Application object
E. Create a host object for the machine on which the third-party, OPSEC server application is
installed
 
Answer: B
 
 
 
 
QUESTION NO: 7
 
You execute series of command in Transaction Mode (Check Point IPSO command-line interface
(CLI)), and you see lots of errors. What command will you use to undo the all the changes?
 
A. set
B. commit
C. undo
D. ignore
E. rollback
 
Answer: E
 
 
 
 
QUESTION NO: 8
 
SmartUpdate installs two repositories on the Security Management server. What folder does
Package repository use a storage on Unix platform?
 
A. C:\Suroot
B. /var/log
C. /var/suroot
D. /var/etc
E. /var/bin
 
Answer: C
 
 
 
 
QUESTION NO: 9
 
Which of the following are limitations of a Bridge Mode?


 

 
 
 
 
 
 
 
 
 
 
 
"Pass Any Exam. Any Time." - http://www.passallexam.com

 
 
 
 
 
 
 
 
 
 

5

 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
A. Cluster configurations are not supported


 

 
 
 
"Pass Any Exam. Any Time." - http://www.passallexam.com

 
 

6

 
 
 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
B. Bridge mode is only supported on the Nokia platforms
C. Clustering has to be in place prior to the deployment of bridge mode
D. Network Address Translation is not supported
E. A bridge must be configured with a pair of interfaces
 
Answer: A,D,E
 
 
 
 
QUESTION NO: 10
 
What does the command ipscti allows you to do?
 
A. Allows you modify the stored configuration
B. Allows you modify the running configuration
C. Allows you to reboot your Nokia device
D. Allows you monitor system status
E. Allows you save delete the running configuration
 
Answer: B
 
 
 
 
QUESTION NO: 11
 
To hide a data field in the SmartView Tracker, what would you do?
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
A. You will choose Select menu, then select Hide Column option from the data field sub menu
B. Left-click the data field (column) that you are hiding and select Hide Columnoption from the
emerging menu
C. There is now way you can do this


 

 
 
"Pass Any Exam. Any Time." - http://www.passallexam.com

 

7

 
 
 
 
 
 
 
 
 
 


 

 
 
Checkpoint 156-215-70: Practice Exam
D. You will choose Select menu and choose Hide option
E. Right-click the data field (column) that you are hiding and select Hide Columnoption from the
emerging menu
 
Answer: E
 
 
 
 
QUESTION NO: 12
 
When dealing with IP Appliances, where would you go to check information regarding: File system
mounts and unmount; upgrade; reboot, backup etc..?
 
A. log under logfile
B. log under audit
C. log under system
D. log under logSystem
E. log under syslog
 
Answer: E
 
 
 
 
QUESTION NO: 13
 
Study the diagram and answer the question below. Which rule will prevent a user from performing
Client Authentication?
 
 
 
 
 
 
 
 
 
 
 
 
 
 
A. Rule 3
B. Rule 2
C. Rule 6
D. Rule 1
E. Rule 5
 
Answer: D
 
 
 
 
QUESTION NO: 14


 
 
 
"Pass Any Exam. Any Time." - http://www.passallexam.com

 
 

8