A web server is hosted in the DMZ, and the server is configured to listen for incoming connections only on TCP port 8080. A Security policy rule allowing access from the Trust zone to the DMZ zone need to be configured to enable we browsing access to the server.
A web server is hosted in the DMZ, and the server is configured to listen for incoming connections only on TCP port 8080. A Security policy rule allowing access from the Trust zone to the DMZ zone need to be configured to enable we browsing access to the server. Which...
How does Panorama prompt VMWare NSX to quarantine an infected VM?
How does Panorama prompt VMWare NSX to quarantine an infected VM?A . HTTP Server ProfileB . Syslog Server ProfileC . Email Server ProfileD . SNMP Server ProfileView AnswerAnswer: A
In the following image from Panorama, why are some values shown in red?
In the following image from Panorama, why are some values shown in red? A . sg2 session count is the lowest compared to the other managed devices.B . us3 has a logging rate that deviates from the administrator-configured thresholds.C . uk3 has a logging rate that deviates from the seven-day...
To connect the Palo Alto Networks firewall to AutoFocus, which setting must be enabled?
To connect the Palo Alto Networks firewall to AutoFocus, which setting must be enabled?A . Device>Setup>Services>AutoFocusB . Device> Setup>Management >AutoFocusC . AutoFocus is enabled by default on the Palo Alto Networks NGFWD . Device>Setup>WildFire>AutoFocusE . Device>Setup> Management> Logging and Reporting SettingsView AnswerAnswer: B Explanation: Reference: https://www.paloaHYPERLINK "https://www.paloaltonetworks.com/documentation/71/pan-os/pan-os/getting-started/enable-autofocus-threat-intelligence"ltonetworks.com/documentation/71/pan-os/pan-os/getting-started/enable-autofocus-threat-intelligence
Based on the information shown in the image, which NAT rule will forward web-browsing traffic correctly?
An administrator wants multiple web servers in the DMZ to receive connections initiated from the internet. Traffic destined for 206.15.22.9 port 80/TCP needs to be forwarded to the server at 10.1.1.22. Based on the information shown in the image, which NAT rule will forward web-browsing traffic correctly? A) B) C)...
Which will be the egress interface if the traffic’s ingress interface is ethernet 1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?
Refer to the exhibit. Which will be the egress interface if the traffic’s ingress interface is ethernet 1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?A . ethernet1/6B . ethernet1/3C . ethernet1/7D . ethernet1/5View AnswerAnswer: D
Which three functions are performed by the dataplane?
An administrator has left a firewall to use the default port for all management services. Which three functions are performed by the dataplane? (Choose three.)A . WildFire updatesB . NATC . NTPD . antivirusE . File blockingView AnswerAnswer: ABC
Which option is part of the content inspection process?
Which option is part of the content inspection process?A . Packet forwarding processB . SSL Proxy re-encryptC . IPsec tunnel encryptionD . Packet egress processView AnswerAnswer: A
Which three split tunnel methods are supported by a globalProtect gateway? (Choose three.)
Which three split tunnel methods are supported by a globalProtect gateway? (Choose three.)A . video streaming applicationB . Client Application ProcessC . Destination DomainD . Source DomainE . Destination user/groupF . URL CategoryView AnswerAnswer: A,B,C
How could the Palo Alto Networks NGFW administrator reduce WAN traffic while maintaining support for all existing monitoring/ security platforms?
Refer to exhibit. An organization has Palo Alto Networks NGFWs that send logs to remote monitoring and security management platforms. The network team has reported excessive traffic on the corporate WAN. How could the Palo Alto Networks NGFW administrator reduce WAN traffic while maintaining support for all existing monitoring/ security...