156-315.81.20 ClusterXL and VRRP High Availability Practice Question
A security administrator manages a two-member ClusterXL High Availability cluster running R81.10. The primary member fails and the secondary takes over. After the primary is repaired and rejoins, the administrator wants to verify which member is currently active and which is standby, and confirm that the failover completed cleanly. Which command should be run on either member to display the current cluster state and member roles?
⚠ Common exam trap
Many exam-takers confuse statistics-gathering commands like cpstat ha or fw ctl pstat with state-display commands, when only cphaprob stat reports the live Active/Standby role of the cluster members.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
cphaprob stat
To confirm the current ClusterXL role of each member after a failover, the administrator needs a command that reports live cluster state. cphaprob stat outputs the local member's state (Active/Standby), the cluster mode, and the identity of the active member, providing exactly the post-failover confirmation required.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
cpstat ha
Why it's wrong here
cpstat ha reports high availability statistics such as failover counters and sync rates, but it does not clearly display the current Active/Standby role of each member. It is useful for trend analysis, not for confirming which gateway is currently active after a failover event in this scenario.
- ✓
cphaprob stat
Why this is correct
cphaprob stat displays the current ClusterXL state of the local member, including whether it is Active or Standby, the cluster mode, and the active member's name. This directly answers which member holds the active role after failover and confirms the cluster is operating normally, making it the correct verification command in this scenario.
- ✗
fw ctl pstat
Why it's wrong here
fw ctl pstat shows kernel-level statistics including connection and sync counters, but it does not report cluster member roles or which gateway is Active. It cannot confirm the post-failover state of the ClusterXL members in this scenario.
- ✗
cpconfig
Why it's wrong here
cpconfig is a configuration utility used to enable cluster membership, set licenses, and configure other product settings. It does not display live cluster state or member roles, so it is the wrong tool to verify which member is active after a failover.
About these practice questions
One of 210 original 156-315.81.20 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Check Point exam blueprint
This 156-315.81.20 practice question is part of Courseiva's free Check Point certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 156-315.81.20 exam.