Free ACE Exam Braindumps (page: 20)

Page 20 of 56

The "Drive-By Download" protection feature, under File Blocking profiles in Content-ID, provides:

  1. Increased speed on downloads of file types that are explicitly enabled.
  2. The ability to use Authentication Profiles, in order to protect against unwanted downloads.
  3. Password-protected access to specific file downloads for authorized users.
  4. Protection against unwanted downloads by showing the user a response page indicating that a file is going to be downloaded.

Answer(s): D



Taking into account only the information in the screenshot above, answer the following question. In order for ping traffic to traverse this device from e1/2 to e1/1, what else needs to be configured? Select all that apply.

  1. Security policy from trust zone to Internet zone that allows ping
  2. Create the appropriate routes in the default virtual router
  3. Security policy from Internet zone to trust zone that allows ping
  4. Create a Management profile that allows ping. Assign that management profile to e1/1 and e1/2

Answer(s): A,D



The following can be configured as a next hop in a Static Route:

  1. A Policy-Based Forwarding Rule
  2. Virtual System
  3. A Dynamic Routing Protocol
  4. Virtual Router

Answer(s): D



What are two sources of information for determining if the firewall has been successful in communicating with an external User-ID Agent?

  1. System Logs and the indicator light under the User-ID Agent settings in the firewall
  2. There's only one location - System Logs
  3. There's only one location - Traffic Logs
  4. System Logs and indicator light on the chassis

Answer(s): A



Page 20 of 56



Post your Comments and Discuss Palo Alto Networks ACE exam with other Community members:

Anonimous commented on December 01, 2023
No experience yet
SPAIN
upvote

Paulie D commented on November 05, 2018
Access to the test materials was simple and fast! Thanks Braindumps.com!
UNITED STATES
upvote