Free Palo Alto Networks NetSec-Analyst Exam Questions (page: 2)

DRAG DROP (Drag and Drop is not supported)

Match the Palo Alto Networks Security Operating Platform architecture to its description.

  1. See Explanation for the Answer.

Answer(s): A

Explanation:

Threat Intelligence Cloud ­ Gathers, analyzes, correlates, and disseminates threats to and from the network and endpoints located within the network.

Next-Generation Firewall ­ Identifies and inspects all traffic to block known threats

Advanced Endpoint Protection - Inspects processes and files to prevent known and unknown exploits



Which firewall plane provides configuration, logging, and reporting functions on a separate processor?

  1. control
  2. network processing
  3. data
  4. security processing

Answer(s): A



A security administrator has configured App-ID updates to be automatically downloaded and installed. The company is currently using an application identified by App-ID as SuperApp_base.

On a content update notice, Palo Alto Networks is adding new app signatures labeled SuperApp_chat and SuperApp_download, which will be deployed in 30 days.

Based on the information, how is the SuperApp traffic affected after the 30 days have passed?

  1. All traffic matching the SuperApp_chat, and SuperApp_download is denied because it no longer matches the SuperApp-base application
  2. No impact because the apps were automatically downloaded and installed
  3. No impact because the firewall automatically adds the rules to the App-ID interface
  4. All traffic matching the SuperApp_base, SuperApp_chat, and SuperApp_download is denied until the security administrator approves the applications

Answer(s): A

Explanation:

https://docs.paloaltonetworks.com/pan-os/9-0/pan-os-admin/app-id/manage-new-app-ids- introduced-in-content-releases/review-new-app-id-impact-on-existing-policy-rules



How many zones can an interface be assigned with a Palo Alto Networks firewall?

  1. two
  2. three
  3. four
  4. one

Answer(s): D



Which two configuration settings shown are not the default? (Choose two.)

  1. Enable Security Log
  2. Server Log Monitor Frequency (sec)
  3. Enable Session
  4. Enable Probing

Answer(s): B,C



Which data-plane processor layer of the graphic shown provides uniform matching for spyware and vulnerability exploits on a Palo Alto Networks Firewall?

  1. Signature Matching
  2. Network Processing
  3. Security Processing
  4. Security Matching

Answer(s): A



Which option lists the attributes that are selectable when setting up an Application filters?

  1. Category, Subcategory, Technology, and Characteristic
  2. Category, Subcategory, Technology, Risk, and Characteristic
  3. Name, Category, Technology, Risk, and Characteristic
  4. Category, Subcategory, Risk, Standard Ports, and Technology

Answer(s): B


Reference:

https://docs.paloaltonetworks.com/pan-os/7-1/pan-os-web-interface-help/objects/objects- application- filters



Actions can be set for which two items in a URL filtering security profile? (Choose two.)

  1. Block List
  2. Custom URL Categories
  3. PAN-DB URL Categories
  4. Allow List

Answer(s): A,D

Explanation:

https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-admin/url-filtering/url-filtering-concepts/url- filtering-profile-actions



Viewing page 2 of 48
Viewing questions 9 - 16 out of 372 questions



Post your Comments and Discuss Palo Alto Networks NetSec-Analyst exam prep with other Community members:

NetSec-Analyst Exam Discussions & Posts