Exam Details

  • Exam Code
    :PSE-STRATADC
  • Exam Name
    :Palo Alto Networks System Engineer Professional - Strata Data Center
  • Certification
    :PSE-DataCenter Professional
  • Vendor
    :Palo Alto Networks
  • Total Questions
    :60 Q&As
  • Last Updated
    :Apr 17, 2024

Palo Alto Networks PSE-DataCenter Professional PSE-STRATADC Questions & Answers

  • Question 1:

    What are the differences between Prisma Cloud Enterprise and Prisma Cloud Compute?

    A. The only difference is in the architecture - where the Console is hosted.

    B. Prisma Cloud Compute offers lowered runtime defensive capabilities because there is no PANW cloud hosted component.

    C. Prisma Cloud Enterprise does not offer workload protection.

    D. Only Prisma Cloud Compute offers API based cloud protection.

  • Question 2:

    In an overlay network model of an ACI architecture, which statement is correct?

    A. The Top of Rack (TOR) switch must be able to understand both the overlay and the underlay network.

    B. All forwarding lookups are done at the network controller.

    C. The network controller is responsible for setting up the overlay paths

    D. The underlay network must be Layer 3 only.

  • Question 3:

    Which is not a SaaS product?

    A. Yahoo Maps

    B. Microsoft Office 365

    C. Microsoft Azure

    D. Google Docs

  • Question 4:

    Which VM-Series can be deployed on VMware NSX?

    A. VM-100, VM-200, VM-300. VM-500. VM-1000-HV

    B. VM-50r VM-100, VM-200, VM-300, VM-500

    C. VM-100, VM-200, VM-300, VM-500, VM-700

    D. All VM Series Models can be deployed on VMware NSX

  • Question 5:

    When would a PA-7000 Series NPC GQXM Card be preferable to a PA-7000 Series NPC GQ Card?

    A. When the organization requires a greater number of sessions.

    B. When the environment has a need for more SFP+ interfaces.

    C. When the organization requires gear with a smaller slot size.

    D. When the environment has a need for more policy rules.

  • Question 6:

    How does the Palo Alto Networks NGFW integrate with Arista Networks Macro-Segmentation Service?

    A. Arista supports all hardware models of the Palo Alto Networks NGFW natively.

    B. Arista allows standalone non-HA firewalls to be attached to a service leaf switch. You must configure an Elastic Load Balancer to obtain fault tolerance.

    C. Arista CloudVision obtains relevant rules from Panorama through API and programs the Arista switches to steer intercepted east-west traffic to the Palo Alto Networks NGFW.

    D. Arista owns the Security policy. It can extend the concept of fine-grained intra-hypervisor security for VMs by enabling dynamic insertion of services for virtualized devices such as firewalls.

  • Question 7:

    Which features are included in the less-expensive license bundle meant for NSX?

    A. capacity license, premium support, a threat prevention subscription. and GlobalProtect

    B. capacity license and premium support

    C. capacity license, premium support and a threat prevention subscription

    D. capacity license and a threat prevention subscription

  • Question 8:

    For which two reasons would an administrator have to install NGFW automatically in a cloud environment? (Choose two)

    A. reduce capital expenses

    B. performance, to be able to install a new firewall when the demand exceeds the ability of the existing environments to service C. integrity, to ensure that data is not changed illicitly

    D. resiliency and availability, to be able to install a new firewall as part of a new environment if an existing environment fails

    E. security, to automatically install a firewall when a security threat is detected

  • Question 9:

    A customer in a non-NSX VMware environment wantsto add a VM-Series firewall and to partition an existing group of VMs in the same subnet into two groups. One group needs no additional security, but the second group requires substantially more security.

    How can this partition be accomplished without editing the IP addresses or the default gateways of any of the guest VMs?

    A. Create a new virtual switch and use the VM-Series firewall to separate virtual switches using Virtual Wire mode Then move the guests that require more security into the new virtual switch.

    B. Edit the IP address of all of the affected VMs.

    C. Send the VLAN out of the virtual environment into a hardware Palo Alto Networks firewall in Layer 3 mode. Use the same IP address as the old default gateway, then delete the old default gateway.

    D. Create a Layer 3 interface in the same subnet as the VMs and configure proxy ARP.

  • Question 10:

    Which interface mode do you use to generate the statdump file that can be converted into an SLR?

    A. Virtual Wire

    B. Layer 2

    C. TAP

    D. Layer 3

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Palo Alto Networks exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PSE-STRATADC exam preparations and Palo Alto Networks certification application, do not hesitate to visit our Vcedump.com to find your solutions here.