View all questions & answers for the Check Point Certified Security Administrator (CCSA) R82 Exam Materials exam
Check Point Certified Security Administrator (CCSA) R82 Exam Materials-Question 39 Discussion
Comments
Selected Answers: C
Technical Breakdown:
Check Point Unified Policy Architecture categorizes network security capabilities into distinct primary policy types:
1. Access Control Policy: Combines Firewall, NAT, Application Control, URL Filtering, and Content Awareness.
2. Threat Prevention Policy: Houses IPS, Anti-Virus, Anti-Bot, and SandBlast (Threat Emulation).
Why the other options are technically incorrect:
* Options A & B are incorrect: Both incorrectly place IPS Threat Cloud Protections under the Access Control Policy, whereas IPS belongs entirely within the Threat Prevention Policy.
* Option D is incorrect: It wrongly assigns URL Filtering to the Threat Prevention Policy, when it belongs to Access Control.
*
Therefore, C is the only flawless architectural statement since [NAT rules](https://sc1.checkpoint.com/documents/R82.10/WebAdminGuides/EN/CP_R82.10_SecurityManagement_AdminGuide/Content/Topics-SECMG/Working_with_Automatic_NAT_Rules.htm) are managed as a specialized component inside the Access Control policy suite.
Select the most correct statement about policy types. (Choose one answer)
Anti-Virus, Anti-Bot and SandBlast are included in the Threat Prevention Policy
URL Filtering is included in the Threat Prevention Policy
Brave-Dump Clients Votes