Sopadecenoura12fwer
|
|
Title of test:
![]() Sopadecenoura12fwer Description: Teste para fazer uma sopa |



| New Comment |
|---|
NO RECORDS |
|
Palo Alto Networks firewall architecture accelerates content inspection performance while minimizing latency using which two components? (Choose two.). Single Stream-based Engine. Parallel Processing Hardware. Policy Engine. Network Processing Engine. Which two components are utilized within the Single-Pass Parallel Processing architecture on a Palo Alto Networks Firewall? (Choose two.). App-ID. Layer-ID. QoS-ID. User-ID. Your company has 10 Active Directory domain controllers spread across multiple WAN links. All users authenticate to Active Directory. Each link has substantial network bandwidth to support all mission-critical applications. The firewall’s management plane is highly utilized. Given the scenario, which type of User-ID agent is considered a best practice by Palo Alto Networks?. PAN-OS integrated agent. Windows-based agent on a domain controller. Captive Portal. Citrix terminal server agent with adequate data-plane resources. Refer to the exhibit. A web server in the DMZ is being mapped to a public address through DNAT. Which Security policy rule will allow traffic to flow to the web server?. Untrust (any) to DMZ (10.1.1.100), web-browsing - Allow. Untrust (any) to DMZ (1.1.1.100), web-browsing - Allow. Untrust (any) to Untrust (1.1.1.100), web-browsing - Allow. Untrust (any) to Untrust (10.1.1.100), web-browsing - Allow. What are two differences between an implicit dependency and an explicit dependency in App-ID? (Choose two.). An implicit dependency requires the dependent application to be added in the security policy. An explicit dependency requires the dependent application to be added in the security policy. An explicit dependency does not require the dependent application to be added in the security policy. An implicit dependency does not require the dependent application to be added in the security policy. Which Palo Alto Networks firewall security platform provides network security for mobile endpoints by inspecting traffic deployed as internet gateways?. AutoFocus. Panorama. Aperture. GlobalProtect. Which link in the web interface enables a security administrator to view the Security policy rules that match new application signatures?. Review App Matches. Pre-analyze. Review Apps. Review Policies. All users from the internal zone must be allowed only Telnet access to a server in the DMZ zone. Complete the two empty fields in the Security policy rules that permits only this type of access. Source Zone: Internal. Destination Zone: DMZ Zone. Application: ________? Service: ________? Action: allow. Service= "application-default". Application = "telnet". Application = "any". Service = "service-telnet". What is a recommended consideration when deploying content updates to the firewall from Panorama? (Choose One Aswer). before deployung content updates, always check content release version compatibility. Content updates for firewall A/A HA pairs need a degined master device. Content updates for firewall A/P HA pairs can only be pushed to the active Firewall. After deploying content updates, perform a commit and push to Panorama. Which type of administrator account cannot be used to authenticate user traffic flowing through the firewall’s data plane?. Local database user. SAML user. Local user. Kerberos user. Which two firewall components enable you to configure SYN flood protection thresholds? (aswer one). DoS Protection policy. DoS Protection profile. Zone Protection profile. QoS profile. Which two statements are true for the DNS Security service introduced in PAN-OS version 9.0? (Choose two.). Its removes the 100k limit for DNS entries for the downloaded DNS updates. Its functions like PAN-DB and requires activation through the app portal. It is automatically enabled and configured. It eliminates the need for dynamic DNS updates. Which object would an administrator create to block access to all high-risk applications?. HIP Profile. application group. application filter. Vulnerability Protection profile. Given the screenshot, what two types of route is the administrator configuring? (Choose two.). BGP. Static route. OSPF. Default route. Which Security Profile mitigates attacks based on packet count?. URL filtering profile. vulnerability profile. antivirus profile. zone protection profile. Which objects would be useful for combining several services that are often defined together?. service groups. application filters. shared service objects. application groups. Which data flow direction is protected in a zero-trust firewall deployment that is not protected in a perimeter-only firewall deployment? (choose one). Outbound. East-west. North-south. inbound. Which action results in the firewall blocking network traffic without notifying the sender?. Deny. Reset Server. Drop. Reset Client. Based on the security policy rules shown, ssh will be allowed on which port? (Aswer one). 53. 80. 22. 23. Which path is used to save and load a configuration with a Palo Alto Networks firewall?. Device > Setup > Interfaces. Device > Setup > Management. Device > Setup > Operations. Device > Setup > Services. Which five Zero Trust concepts does a Palo Alto Networks firewall apply to achieve an integrated approach to prevent threats? (Choose five.). Vulnerability protection. Filtration protection. Anti-Spyware. Application Identification. Antivirus. User identification. Which option shows the attributes that are selectable when setting up application filters?. Name, Category, Technology, Risk, and Chraracteristic. Category, Subcategory, Risk, Standar Ports, and Technology. Category, Subcategory, Technology, Risk, and Characteristic. Category, Subcategory, Technology and Characteristic. When is the content inspection performed in the packet flow process?. After the SSL Proxy re-encrypts the packet. After the application has been identified. before the packet forwarding process. before session lookup. An administrator would like to silently drop traffic from the internet to a FTP server. Which Security policy action should the administrator select?. Drop. Block. Reset-server. Deny. How frequently can WildFire updates be made available to firewalls?. Every 15 minutes. Every 5 minutes. Every 60 minutes. Every 30 minutes. At which stage of the Cyber-Attack Lifecycle would the attacker attach an infected PDF file to an email?. Delivery. Reconnaissance. Exploitation. Command and Control. At which point in the App-ID update process can you determine if an existing policy rule is affected by an App-ID update?. After downloading the update. after committing the firewall configuration. after clicking check now in the dynamic Update window. after installing the update. Which update option is not available to administrators?. New URLs. New Spyware Notifications. New Malicious Domains. New Antivirus Signatures. New Application Signatures. Based on the screenshot presented, which column the link when clicked, opens a window to display all applications matched to the policy rule?. Service. Apps Seen. Name. Apps Allowed. Refer to the exhibit. An administrator is using DNAT to map two servers to a single public IP address. Traffic will be steered to the specific server based on the application, where Host A (10.1.1.100) receives HTTP traffic and Host B (10.1.1.101) receives SSH traffic. Which two Security policy rules will accomplish this configuration? (Choose two). Untrust (Any) to DMZ (10.1.1.100, 10.1.1.101), ssh, web-browsing - Allow. Untrust (Any) to DMZ (10.1.1.100) web-browsing - Allow. Untrust (Any) to Untrust (10.1.1.100), ssh - Allow. Untrust (Any) to DMZ (1.1.1.100), ssh - Allow. Untrust (Any) to Untrust (10.1.1.1), web-browsing - Allow. An administrator would like to use App-ID’s deny action for an application and would like that action updated with dynamic updates as new content becomes available. Which security policy action causes this?. Reset Both. Reset Server. Drop. Deny. An administrator wants to prevent access to media content websites that are risky. Which two URL categories should be combined in a custom URL category to accomplish this goal? (Choose two.). Known-risk. Streaming-media. recreation-and-hobbies. high-risk. Which User-ID mapping method should be used for an environment with users that do not authenticate to Active Directory?. Captive Portal. passive server monitoring using a PAN-OS integrated User-ID agent. passive server monitoring using the Windows-based-agent. Windows session monitoring. An administrator wishes to follow best practices for logging traffic that traverses the firewall. Which log setting is correct?. Disable all logging. Enable log at session start. Enable log at both Session Start and End. Enable log at Session End. Based on the screenshot, what is the purpose of the group in User labelled “it”?. Allows "any" users to access servers in the DMZ zone. Allows users to access IT application on all ports. Allow users in group "it" to access IT applications. Allow users in group "DMZ" to access IT applications. Which license is required to use the Palo Alto Networks built-in IP address EDLs?. Threat Prevention. DNS Security. WildFire. SD-Wan. Which interface type is part of a Layer 3 zone with a Palo Alto Networks firewall?. Aggregation. High Availability. Management. Aggregate. Which type of firewall configuration contains in-progress configuration changes?. running. candidate. committed. backup. Which Security policy match condition would an administrator use to block traffic from IP addresses on the Palo Alto Networks EDL of Known Malicious IP Addresses list?. source zone. destination zone. source address. destination address. What is an advantage for using application tags?. They help with the design of IP address allocations in DHCP. They help with the creation of interfaces. They help content updates automate policy updates. They are helpful during the creation of new zones. A company moved its old port-based firewall to a new Palo Alto Networks NGFW 60 days ago. Which utility should the company use to identify out-of-date or unused rules on the firewall?. Rule Usage Filter > No App Specified. Rule Usage Filter > Hit Count > Unused in 90 days. Rule Usage Filter > Hit Count > Unused in 30 days. Rule Usage Filter > Unused Apps. Four configuration choices are listed, and each could be used to block access to a specific URL. If you configured each choice to block the same URL, then which choice would be the last to block access to the URL?. PAN-DB URL category in URL Filtering Profile. EDL in URL Filtering Profile. Custom URL category in Security policy rule. Custom URL category in URL Filtering Profile. Which Palo Alto Networks service protects cloud-based applications such as Dropbox and Salesforce by monitoring permissions and shares and scanning files for sensitive information?. Panorama. Auto Focus. Global Protect. Prisma SaaS. You receive notification about a new malware that infects hosts. An infection results in the infected host attempting to contact a command-and-control server. Which Security Profile detects and prevents this threat from establishing a command-and-control connection?. Data Filtering Profile applied to outbound Security policy rules. Anti-spyware Profileaaplied to outboung security policies. Antivirus Profile applied to outbound Security policy rules. Vulnerability Protection Profile applied to outbound Seucirty policy rules. An administrator would like to see the traffic that matches the interzone-default rule in the traffic logs. What is the correct process to enable this logging?. This rule has traffic logging enabled by default; no further action is required. Select the interzone-default rule and edit the rule;on the Actions tab, select Log at Session Start and click OK. Select the interzone-default rule and edit the rule; on the actions tab, select Log at Session End and click OK. Select the interzone-default rule and click Override; on the Actions tab, select Log at Session End and click OK. A Security Profile can block or allow traffic at which point?. before it is matched to a Security policy rule. after it is matched to a security policy rule that allows traffic. on either the data plane or the management plane. after it is matched to a Security policy rule that allows or blocks traffic. Which definition describes the guiding principle of the zero-trust architecture?. trust, but verify. always connect and verify. never trust, never connect. never trust, always verify. In which profile should you configure the DNS Security feature?. Anti-spyware Profile. Zone Protection Profile. URL Filtering Profile. Antivirus Profile. An administrator is troubleshooting an issue with traffic that matches the intrazone-default rule, which is set to default configuration. What should the administrator do?. change the logging action on the rule. review the System Log. tune yout Traffic Log Filter to include the dates. refresh the Traffic Log. Given the topology, which zone type should you configure for firewall interface E1/1?. Virtua Wire. Tunnel. Tap. Layer3. |





