Which priority is correct for the passive firewall?

An administrator has been asked to configure active/passive HA for a pair of Palo Alto Networks NGFWs. The administrator assigns priority 100 to the active firewall. Which priority is correct for the passive firewall?A . 0B . 99C . 1D . 255View AnswerAnswer: D Explanation: Reference: https://www.paloaltonetworks.com/content/dam/pan/en_US/assets/pdf/framemaker/71/pan-os/pan-os/section_5.pdf (page 9)

October 28, 2019 No Comments READ MORE +

What are the two behavior differences between Highlight Unused Rules and the Rule Usage Hit counter when a firewall is rebooted? (Choose two.)

What are the two behavior differences between Highlight Unused Rules and the Rule Usage Hit counter when a firewall is rebooted? (Choose two.)A . Rule Usage Hit counter will not be resetB . Highlight Unused Rules will highlight all rules.C . Highlight Unused Rules will highlight zero rules.D . Rule...

October 27, 2019 No Comments READ MORE +

If the firewall has the link monitoring configuration, what will cause a failover?

If the firewall has the link monitoring configuration, what will cause a failover? A . ethernet1/3 and ethernet1/6 going downB . ethernet1/3 going downC . ethernet1/3 or Ethernet1/6 going downD . ethernet1/6 going downView AnswerAnswer: A

October 27, 2019 No Comments READ MORE +

How does an administrator schedule an Applications and Threats dynamic update while delaying installation of the update for a certain amount of time?

How does an administrator schedule an Applications and Threats dynamic update while delaying installation of the update for a certain amount of time?A . Configure the option for “Threshold”.B . Disable automatic updates during weekdays.C . Automatically “download only” and then install Applications and Threats later, after the administrator approves...

October 26, 2019 No Comments READ MORE +

Which action will stop the second and subsequent encrypted BitTorrent connections from being allowed as SSL?

An administrator creates an SSL decryption rule decrypting traffic on all ports. The administrator also creates a Security policy rule allowing only the applications DNS, SSL, and web-browsing. The administrator generates three encrypted BitTorrent connections and checks the Traffic logs. There are three entries. The first entry shows traffic dropped...

October 26, 2019 No Comments READ MORE +

How quickly will the firewall receive back a verdict?

A Palo Alto Networks NGFW just submitted a file to WildFire for analysis. Assume a 5-minute window for analysis. The firewall is configured to check for verdicts every 5 minutes. How quickly will the firewall receive back a verdict?A . More than 15 minutesB . 5 minutesC . 10 to...

October 25, 2019 No Comments READ MORE +

Which Palo Alto Networks VM-Series firewall is valid?

Which Palo Alto Networks VM-Series firewall is valid?A . VM-25B . VM-800C . VM-50D . VM-400View AnswerAnswer: C Explanation: Reference: https://www.paloaltonetworks.com/products/secure-the-network/virtualized-next-generation-firewall/vm-series

October 25, 2019 No Comments READ MORE +

QoS natively integrates with which feature to provide service quality?

An administrator needs to optimize traffic to prefer business-critical applications over non-critical applications. QoS natively integrates with which feature to provide service quality?A . Port InspectionB . Certificate revocationC . Content-IDD . App-IDView AnswerAnswer: D Explanation: Reference: https://www.paloaltonetworks.com/documentation/71/pan-os/pan-os/quality-of-service/qos-for-applications-and-users

October 25, 2019 No Comments READ MORE +

Which interface type would support this business requirement?

An administrator needs to implement an NGFW between their DMZ and Core network. EIGRP Routing between the two environments is required. Which interface type would support this business requirement?A . Virtual Wire interfaces to permit EIGRP routing to remain between the Core and DMZB . Layer 3 or Aggregate Ethernet...

October 25, 2019 1 Comment READ MORE +

Which action would enable the firewalls to send their pre-existing logs to Panorama?

An administrator is using Panorama and multiple Palo Alto Networks NGFWs. After upgrading all devices to the latest PAN-OS® software, the administrator enables log forwarding from the firewalls to Panoram A. Pre-existing logs from the firewalls are not appearing in PanoramA. Which action would enable the firewalls to send their...

October 25, 2019 No Comments READ MORE +