Which solution in PAN-OS® software would help in this case?
A global corporate office has a large-scale network with only one User-ID agent, which creates a bottleneck near the User-ID agent server. Which solution in PAN-OS® software would help in this case?A . Application overrideB . Redistribution of user mappingsC . Virtual Wire modeD . Content inspectionView AnswerAnswer: B
When platform utilization is considered, which steps must the administrator take to configure and apply packet buffer protection?
An administrator is defining protection settings on the Palo Alto Networks NGFW to guard against resource exhaustion. When platform utilization is considered, which steps must the administrator take to configure and apply packet buffer protection?A . Enable and configure the Packet Buffer protection thresholds. Enable Packet Buffer Protection per ingress...
A web server is hosted in the DMZ, and the server is configured to listen for incoming connections only on TCP port 8080. A Security policy rule allowing access from the Trust zone to the DMZ zone need to be configured to enable we browsing access to the server.
A web server is hosted in the DMZ, and the server is configured to listen for incoming connections only on TCP port 8080. A Security policy rule allowing access from the Trust zone to the DMZ zone need to be configured to enable we browsing access to the server. Which...
How does Panorama prompt VMWare NSX to quarantine an infected VM?
How does Panorama prompt VMWare NSX to quarantine an infected VM?A . HTTP Server ProfileB . Syslog Server ProfileC . Email Server ProfileD . SNMP Server ProfileView AnswerAnswer: A
In the following image from Panorama, why are some values shown in red?
In the following image from Panorama, why are some values shown in red? A . sg2 session count is the lowest compared to the other managed devices.B . us3 has a logging rate that deviates from the administrator-configured thresholds.C . uk3 has a logging rate that deviates from the seven-day...
To connect the Palo Alto Networks firewall to AutoFocus, which setting must be enabled?
To connect the Palo Alto Networks firewall to AutoFocus, which setting must be enabled?A . Device>Setup>Services>AutoFocusB . Device> Setup>Management >AutoFocusC . AutoFocus is enabled by default on the Palo Alto Networks NGFWD . Device>Setup>WildFire>AutoFocusE . Device>Setup> Management> Logging and Reporting SettingsView AnswerAnswer: B Explanation: Reference: https://www.paloaHYPERLINK "https://www.paloaltonetworks.com/documentation/71/pan-os/pan-os/getting-started/enable-autofocus-threat-intelligence"ltonetworks.com/documentation/71/pan-os/pan-os/getting-started/enable-autofocus-threat-intelligence
Based on the information shown in the image, which NAT rule will forward web-browsing traffic correctly?
An administrator wants multiple web servers in the DMZ to receive connections initiated from the internet. Traffic destined for 206.15.22.9 port 80/TCP needs to be forwarded to the server at 10.1.1.22. Based on the information shown in the image, which NAT rule will forward web-browsing traffic correctly? A) B) C)...
Which will be the egress interface if the traffic’s ingress interface is ethernet 1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?
Refer to the exhibit. Which will be the egress interface if the traffic’s ingress interface is ethernet 1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?A . ethernet1/6B . ethernet1/3C . ethernet1/7D . ethernet1/5View AnswerAnswer: D
Which three functions are performed by the dataplane?
An administrator has left a firewall to use the default port for all management services. Which three functions are performed by the dataplane? (Choose three.)A . WildFire updatesB . NATC . NTPD . antivirusE . File blockingView AnswerAnswer: ABC
Which option is part of the content inspection process?
Which option is part of the content inspection process?A . Packet forwarding processB . SSL Proxy re-encryptC . IPsec tunnel encryptionD . Packet egress processView AnswerAnswer: A