View all questions & answers for the Check Point Certified Security Administrator (CCSA) R82 Exam Materials exam
Check Point Certified Security Administrator (CCSA) R82 Exam Materials-Question 113 Discussion
Comments
Selected Answers: B
Audit Logs specifically record administrative actions performed in SmartConsole — including who made changes to the security policy, what was changed, and when — making them the correct log type to review for tracking policy modification history during an audit.
Why the others are wrong:
A. Security Logs — Security Logs record traffic/security events (connections, threats, blocks, etc.) generated by the Security Gateway's enforcement — not administrative changes made to the policy itself.
C. Traffic Logs — Traffic Logs are a subset of security logs showing network connection activity — they reflect what traffic passed through the gateway, not who edited the policy.
D. Compliance Logs — "Compliance Logs" isn't a standard Check Point log type for tracking policy edits — compliance-related data is typically handled through the Compliance Blade's monitoring/scoring, not a dedicated administrative change log.
During a routine audit, an administrator needs to review which users made changes to the security policy. Which log type should be reviewed? (Choose one answer)
Brave-Dump Clients Votes