Courseiva
Identity Awareness →mediumMultiple Select

156-215.81.20 Identity Awareness Practice Question

An administrator is configuring Identity Awareness on a Check Point R81.20 Security Gateway using the Identity Collector. The administrator wants to ensure that the Identity Collector can retrieve user identity information from Active Directory. Which two components are required for the Identity Collector to function? (Choose two.)

⚠ Common exam trap

The trap here is assuming that the Security Gateway must be a domain member or that additional services like RADIUS are needed, when the Identity Collector operates independently.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

A dedicated server or virtual machine to run the Identity Collector

The two required components are a user account with read permissions to Active Directory and a dedicated server or virtual machine to run the Identity Collector. The Identity Collector uses the account to authenticate and retrieve identity events from domain controllers, and it must run on a separate server that has network connectivity to both Active Directory and the Security Gateway.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    The Terminal Server Agent installed on all domain controllers

    Why it's wrong here

    The Terminal Server Agent is used specifically for Terminal Server environments to track user sessions on Terminal Servers. It is not installed on domain controllers and is not part of the Identity Collector architecture. The Identity Collector retrieves identity information directly from Active Directory without needing Terminal Server Agents.

  • ✓

    A dedicated server or virtual machine to run the Identity Collector

    Why this is correct

    The Identity Collector is a separate component that must be installed on a dedicated server or virtual machine. It cannot run on the Security Gateway itself. This server requires network connectivity to both the Active Directory domain controllers and the Security Gateway. Therefore, a dedicated server or VM is a required component for the Identity Collector to function.

  • ✓

    A user account with read permissions to Active Directory

    Why this is correct

    The Identity Collector requires a user account with sufficient permissions to read the Active Directory security logs and query user information. This account is used to authenticate to the domain controllers and retrieve identity events. Without this account, the Identity Collector cannot access the necessary data, making it a required component.

  • ✗

    The Security Gateway must be a member of the Active Directory domain

    Why it's wrong here

    The Security Gateway does not need to be a domain member when using Identity Collector. The Identity Collector itself communicates with Active Directory and then forwards identity information to the Security Gateway. This decoupling allows the gateway to be in a different domain or workgroup, so domain membership is not required for the gateway.

  • ✗

    A RADIUS server configured for accounting

    Why it's wrong here

    RADIUS accounting is used for a different Identity Awareness method, where user identities are learned from RADIUS accounting packets. The Identity Collector does not use RADIUS; it directly queries Active Directory. Therefore, a RADIUS server is not required for the Identity Collector to function.

About these practice questions

This 156-215.81.20 question is part of Courseiva's 210-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Check Point exam blueprint

This 156-215.81.20 practice question is part of Courseiva's free Check Point certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 156-215.81.20 exam.