Official Bank 0/503

Check Point Certified Security Expert Update – R80.10 (156-915.80) - Checkpoint Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
503 Total Questions
1
Question
What are the steps to configure the HTTPS Inspection Policy?
Options
A Go to Manage&Settings>Blades>HTTPS Inspection>Policy
B Go to Application&url filtering blade>Advanced>Https Inspection>Policy
C Go to Manage&Settings>Blades>HTTPS Inspection>Configure In SmartDashboard
D Go to Application&url filtering blade>Https Inspection>Policy
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
CORRECT TEXT Fill in the blank. To enter the router shell, use command . __________
Reveal Only
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
You want to implement Static Destination NAT in order to provide external, Internet users access to an internal Web Server that has a reserved (RFC 1918) IP address. You have an unused valid IP address on the network between your Security Gateway and ISP router. You control the router that sits between the firewall external interface and the Internet.

What is an alternative configuration if proxy ARP cannot be used on your Security Gateway?
Options
A Publish a proxy ARP entry on the internal Web server instead of the firewall for the valid IP address.
B Place a static ARP entry on the ISP router for the valid IP address to the firewall's external address.
C Publish a proxy ARP entry on the ISP router instead of the firewall for the valid IP address.
D Place a static host route on the firewall for the valid IP address to the internal Web server.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
On R80.10 the IPS Blade is managed by:
Options
A Threat Prevention policy
B Anti-Bot Blade
C Threat Protection policy
D Layers on Firewall policy
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
You have three servers located in a DMZ, using private IP addresses. You want internal users from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10.x is configured for Hide NAT behind the Security Gateway’s external interface.

Exhibit

What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ servers’
public IP addresses?
Options
A When connecting to the Internet, configure manual Static NAT rules to translate the DMZ servers.
B When the source is the internal network 10.10.10.x, configure manual static NAT rules to translate the DMZ servers.
C When connecting to internal network 10.10.10.x, configure Hide NAT for the DMZ network behind the Security Gateway DMZ interface.
D When trying to access DMZ servers, configure Hide NAT for 10.10.10.x behind the DMZ’s interface.
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.