Check Point Certified Security Administrator (CCSA) R82 Exam Materials-Question 153 Discussion
Comment Image Comment Image Comment Image

An administrator has assigned an ExternalZone object to the external interface of the Security Gateway and InternalZone object to the internal interfaces. To enforce security based on these Security Zones, what must the administrator do next? (Choose one answer)

  • A. Security Zones are only used by Threat Prevention policy to identify incoming or outgoing attacks and take necessary action
  • B. In the Advanced Properties of each Security Zone object, the administrator must set a Permit or Deny action
  • C. Assigning the appropriate Security Zone to each interface on the Security Gateway will automatically enforce zone based security by restricting any traffic from an ExternalZone to an InternalZone
  • D. Add Rules in Security Policy including the Security Zone(s) in the Source and/or Destination columns
Correct Answer: D

Brave-Dump Clients Votes

D 100%

Comments



Anonymous User 2026-09-12 05:00:43

Selected Answers: D


D. Add Rules in Security Policy including the Security Zone(s) in the Source and/or Destination columns

Simply assigning Security Zone objects to interfaces doesn't enforce anything by itself — the administrator still needs to create explicit rules in the Security Policy rule base that reference those zone objects (InternalZone, ExternalZone) in the Source and/or Destination columns, so the gateway actually matches and enforces traffic based on the zones.