Which of the following is NOT a benefit of using App-ID?
Reveal answer details Close answer details
Correct answerD
Palo Alto Networks · PCNSC
Preview real exam questions, verified answers and available explanations before choosing a study plan.
|
Single choice
Which of the following is NOT a benefit of using App-ID? Reveal answer details Close answer detailsCorrect answerD
Single choice
Which Captive Portal mode must be contoured to support MFA authentication? Reveal answer details Close answer detailsCorrect answerB
Multiple choice
Winch three steps will reduce the CPU utilization on the management plane? (Choose three. ) Reveal answer details Close answer detailsCorrect answersA, B, C
Single choice
If the firewall is configured for credential phishing prevention using the "Domain Credential Filter" method, which login will be detected as credential theft? Reveal answer details Close answer detailsCorrect answerD
Single choice
An existing customer who has deployed several Palo Alto Networks Next-Generation Firewalls would like to start using Device-ID to obtain policy rule recommendations. What additional license do they need to purchase"? Reveal answer details Close answer detailsCorrect answerA Explanation To start using Device-ID to obtain policy rule recommendations, the customer needs to purchase: a Cortex Data Lake license The Cortex Data Lake is a cloud-based logging service that aggregates data from all Palo Alto Networks products and services. Device-ID uses this data to provide insights and recommendations for policy rules based on the identities of devices on the network. References:
Single choice
Which command would you use to view the current sessions on a Palo Alto firewall? Reveal answer details Close answer detailsCorrect answerB
Single choice
What is the default port used by the Terminal Services agent to communicate with a firewall? Reveal answer details Close answer detailsCorrect answerA Explanation The default port used by the Terminal Services agent to communicate with a Palo Alto Networks firewall is5007. The Terminal Services agent (TS agent) integrates with Microsoft Terminal Services to associate user information with sessions, enabling User-ID to accurately map user identities to security policies.
Single choice
A session in the Traffic log is reporting the application as "incomplete" What does "incomplete" mean? Reveal answer details Close answer detailsCorrect answerA
Single choice
Which prerequisite must be satisfied before creating an SSH proxy Decryption policy? Reveal answer details Close answer detailsCorrect answerA
Single choice
An administrator using an enterprise PKI needs to establish a unique chain of trust to ensure mutual authentication between panorama and the managed firewall and Log Collectors. How would the administrator establish the chain of trust? Reveal answer details Close answer detailsCorrect answerC
Single choice
How would an administrator monitor/capture traffic on the management interface of the Palo Alto Networks NGFW? Reveal answer details Close answer detailsCorrect answerA
Single choice
Which of the following WildFire action settings will ensure that a malicious file is quarantined and prevented from spreading? Reveal answer details Close answer detailsCorrect answerC
Drag & drop
DRAG DROP Match the task for server settings in group mapping with its order in the process. ![]() Reveal answer details Close answer details![]() Explanation To configure group mapping on a Palo Alto Networks firewall, follow these steps in order: Navigate to Device > User Identification > Group Mapping: Enter a unique name to identify the group mapping configuration: Provide a unique and descriptive name for the new group mapping configuration to easily identify it. Order in Process: References:
Single choice
What command can you use to check the status of GlobalProtect clients connected to the firewall? Reveal answer details Close answer detailsCorrect answerB
Multiple choice
Which three user authentication services can be modified in to provide the Palo Alto Networks NGFW with both username and role names? (Choose three.) Reveal answer details Close answer detailsCorrect answersC, D, E
Single choice
Which administrative authentication method supports authorization by an external service? Reveal answer details Close answer detailsCorrect answerB
Single choice
Which GlobalProtect feature ensures that only trusted endpoints can connect to the network? Reveal answer details Close answer detailsCorrect answerA
Multiple choice
Which two action would be part of an automatic solution that would block sites with untrusted certificates without enabling SSL forward proxy? (Choose two.) Reveal answer details Close answer detailsCorrect answersB, D
Single choice
A client has a sensitive application server in their data center and is particularly concerned about resource exhaustion because of distributed denial-of-service attacks. How can the Palo Alto Networks NGFW be configured to specifically protect tins server against resource exhaustion originating from multiple IP address (DDoS attack)? Reveal answer details Close answer detailsCorrect answerB
Single choice
Which touting configuration should you recommend lo a customer who wishes lo actively use multiple pathways to the same destination? Reveal answer details Close answer detailsCorrect answerB Explanation For a customer who wishes to actively use multiple pathways to the same destination, the recommended routing configuration is: ECMP (Equal-Cost Multi-Path) ECMP allows the use of multiple paths to the same destination with equal cost metrics, enabling load balancing and redundancy. It is suitable for scenarios where multiple pathways are desired for traffic distribution and fault tolerance. References:
Single choice
When a malware-infected host attempts to resolve a known command-and-control server, the traffic matches a security policy with DNS sinhole enabled, generating a traffic log. What will be the destination IP Address in that log entry? Reveal answer details Close answer detailsCorrect answerC Explanation https://live.paloaltonetworks.com/t5/Management-Articles/How-to-Verify-DNS-Sinkhole-Function-is-Working/ta-p/65864
Multiple choice
An administrator has left a firewall to used default port for all management services. Which three function performed by the dataplane? (Choose three.) Reveal answer details Close answer detailsCorrect answersA, C, D |