Check Point Certified Security Administrator (CCSA) R82 Exam Materials-Question 39 Discussion
Comment Image Comment Image Comment Image

Select the most correct statement about policy types. (Choose one answer)

  • A. IPS Threat Cloud Protections are included in Access Control Policy.
    Anti-Virus, Anti-Bot and SandBlast are included in the Threat Prevention Policy
  • B. Access Control Policy includes features like Firewall, Application Control and URL Filtering, IPS Threat Cloud Protections
  • C. NAT policy is a subset of Access Control Policy
  • D. Application Control is included in Access Control Policy.
    URL Filtering is included in the Threat Prevention Policy
Correct Answer: C

Brave-Dump Clients Votes

C 100%

Comments



Anonymous User 2026-09-13 21:57:10

Selected Answers: C


The correct answer is C. NAT policy is a subset of Access Control Policy
Technical Breakdown:
Check Point Unified Policy Architecture categorizes network security capabilities into distinct primary policy types:

1. Access Control Policy: Combines Firewall, NAT, Application Control, URL Filtering, and Content Awareness.
2. Threat Prevention Policy: Houses IPS, Anti-Virus, Anti-Bot, and SandBlast (Threat Emulation).

Why the other options are technically incorrect:

* Options A & B are incorrect: Both incorrectly place IPS Threat Cloud Protections under the Access Control Policy, whereas IPS belongs entirely within the Threat Prevention Policy.
* Option D is incorrect: It wrongly assigns URL Filtering to the Threat Prevention Policy, when it belongs to Access Control.
*

Therefore, C is the only flawless architectural statement since [NAT rules](https://sc1.checkpoint.com/documents/R82.10/WebAdminGuides/EN/CP_R82.10_SecurityManagement_AdminGuide/Content/Topics-SECMG/Working_with_Automatic_NAT_Rules.htm) are managed as a specialized component inside the Access Control policy suite.