Free ACE Exam Braindumps (page: 25)

Page 24 of 56

After the installation of a new version of PANOS, the firewall must be rebooted.

  1. True
  2. False

Answer(s): A



A user complains that they are no longer able to access a needed work application after you have implemented vulnerability and anti-spyware profiles. The user's application uses a unique port. What is the most efficient way to allow the user access to this application?

  1. Utilize an Application Override Rule, referencing the custom port utilzed by this application. Application Override rules bypass all Layer 7 inspection, thereby allowing access to this application.
  2. In the Threat log, locate the event which is blocking access to the user's application and
    create a IP-based exemption for this user.
  3. In the vulnerability and anti-spyware profiles, create an application exemption for the user's application.
  4. Create a custom Security rule for this user to access the required application. Do not apply vulnerability and anti-spyware profiles to this rule.

Answer(s): B



Taking into account only the information in the screenshot above, answer the following question:
A span port or a switch is connected to e1/4, but there are no traffic logs.
Which of the following conditions most likely explains this behavior?

  1. The interface is not assigned a virtual router.
  2. The interface is not assigned an IP address.
  3. The interface is not up.
  4. There is no zone assigned to the interface.

Answer(s): D



WildFire analyzes files to determine whether or not they are malicious. When doing so, WildFire will classify the file with an official verdict. This verdict is known as the WildFire Analysis verdict. Choose the three correct classifications as a result of this analysis and classification?

  1. Benign
  2. Adware
  3. Spyware
  4. Malware detection
  5. Safeware
  6. Grayware

Answer(s): A,D,F






Post your Comments and Discuss Palo Alto Networks ACE exam with other Community members:

ACE Discussions & Posts