Exam 156-215.80 All QuestionsBrowse all questions from this exam
Question 140

You have configured SNX on the Security Gateway. The client connects to the Security Gateway and the user enters the authentication credentials. What must happen after authentication that allows the client to connect to the Security Gateway's VPN domain?

    Correct Answer: B

    After authentication, the client needs to obtain an office mode address to connect to the Security Gateway's VPN domain. Office Mode assigns a remote client an IP address for secure, encapsulated communication with the home network. This address is essential for routing the VPN traffic properly to the Security Gateway.

Discussion
chstOption: C

The correct is C https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_MobileAccess_AdminGuide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_MobileAccess_AdminGuide/131215

AychiOption: A

the key word here is "after authentication" ! A could be correct

babajana

why question from CCSE?

Nikolas

because SNX is discussed in the CCSE R80 guide. i think A is correct, because SNX is SSL VPN client, it does not install virtual adapter with IP address for VPN connection

4zhOption: C

C is correct becouse in reality snx-client must be installed and D is correct, and A is correct also. its another incorrect quastion

pepso100Option: B

Office Mode Office Mode is a Check Point remote access VPN solution feature. It enables a Security Gateway to assign a remote client an IP address. This IP address is used only internally for secure encapsulated communication with the home network, and therefore is not visible in the public network. The assignment takes place once the user connects and authenticates. The assignment lease is renewed as long as the user is connected. The address may be taken either from a general IP address pool, or from an IP address pool specified per user group, using a configuration file. https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_RemoteAccessVPN_AdminGuide/Topics-VPNRG/SSL-Network-Extender.htm?TocPath=SSL%20Network%20Extender%7C_____4

pepso100Option: B

I think first should be B. How can you setup routes/routing (on VPN client PC) without IP from VPN GW/SSL virtual interface.? 1st you have to interface with IP and DG 2nd you can setup routes via this IP Am I wrong ?

dguskovOption: A

I think is not correct. https://sc1.checkpoint.com/documents/R80.30/WebAdminGuides/EN/CP_R80.30_MobileAccess_AdminGuide/html_frameset.htm?topic=documents/R80.30/WebAdminGuides/EN/CP_R80.30_MobileAccess_AdminGuide/131215 "SSL Network Extender is downloaded automatically from the Mobile Access portal to the endpoint machines, so that client software does not have to be pre-installed and configured on users' PCs and laptops. SSL Network Extender tunnels application traffic using a secure, encrypted and authenticated SSL tunnel to the Mobile Access gateway."

dguskov

"C" is not correct I meen.

ShabVjOption: D

Correct answer is D. Active-X must be allowed by user.

NikolasOption: C

i think answer is C from CCSE R80 guide: SSL Network Extender (SNX) is a thin SSL VPN on-demand client that is automatically installed on the remote user's machine through a web browser. This VPN client is installed as a browser plug-in. Once installed, it enables a secured connection using the SSL VPN tunnel to link users to the corporate resources. SSL Network Extender requires Mobile Access and IPSec VPN Software Blade licenses on the Security Gateway