156-215.80 Exam Question 241

John Adams is an HR partner in the ACME organization. ACME IT wants to limit access to HR servers to designated IP addresses to minimize malware infection and unauthorized access risks. Thus, gateway policy permits access only from Join's desktop which is assigned an IP address 10.0.0.19 via DHCP.
John received a laptop and wants to access the HR Web Server from anywhere in the organization. The IT department gave the laptop a static IP address, but the limits him to operating it only from his desk.
The current Rule Base contains a rule that lets John Adams access the HR Web Server from his laptop.
He wants to move around the organization and continue to have access to the HR Web Server.
To make this scenario work, the IT administrator:
1) Enables Identity Awareness on a gateway, selects AD Query as one of the Identity Sources.
2) Adds an access role object to the Firewall Rule Base that lets John Adams PC access the HR Web Server from any machine and from any location.
John plugged in his laptop to the network on a different network segment and he is not able to connect.
How does he solve this problem?
  • 156-215.80 Exam Question 242

    Fill in the blanks: VPN gateways authenticate using ___________ and ___________ .
  • 156-215.80 Exam Question 243

    Fill in the blank: The IPS policy for pre-R80 gateways is installed during the _______ .
  • 156-215.80 Exam Question 244

    In which deployment is the security management server and Security Gateway installed on the same appliance?
  • 156-215.80 Exam Question 245

    CPU-level of your Security gateway is peaking to 100% causing problems with traffic. You suspect that the problem might be the Threat Prevention settings.
    The following Threat Prevention Profile has been created.

    How could you tune the profile in order to lower the CPU load still maintaining security at good level? Select the BEST answer.