Free ACE Exam Braindumps (page: 17)

Page 17 of 56

In PANOS 6.0, rule numbers are:

  1. Numbers that specify the order in which security policies are evaluated.
  2. Numbers created to be unique identifiers in each firewall's policy database.
  3. Numbers on a scale of 0 to 99 that specify priorities when two or more rules are in conflict.
  4. Numbers created to make it easier for users to discuss a complicated or difficult sequence of rules.

Answer(s): A



Which of the following statements is NOT True regarding a Decryption Mirror interface?

  1. Requires superuser privilege
  2. Supports SSL outbound
  3. Can be a member of any VSYS
  4. Supports SSL inbound

Answer(s): C



What is the correct policy to most effectively block Skype?

  1. Allow Skype, block Skype-probe
  2. Allow Skype-probe, block Skype
  3. Block Skype-probe, block Skype
  4. Block Skype

Answer(s): A



To properly configure DOS protection to limit the number of sessions individually from specific source IPs you would configure a DOS Protection rule with the following characteristics:

  1. Action: Protect, Classified Profile with "Resources Protection" configured, and Classified Address with "source-ip-only" configured
  2. Action: Deny, Aggregate Profile with "Resources Protection" configured
  3. Action: Protect, Aggregate Profile with "Resources Protection" configured
  4. Action: Deny, Classified Profile with "Resources Protection" configured, and Classified Address with "source-ip-only" configured

Answer(s): A



Page 17 of 56



Post your Comments and Discuss Palo Alto Networks ACE exam with other Community members:

Anonimous commented on December 01, 2023
No experience yet
SPAIN
upvote

Paulie D commented on November 05, 2018
Access to the test materials was simple and fast! Thanks Braindumps.com!
UNITED STATES
upvote