Free PCNSE Exam Braindumps (page: 11)

Page 11 of 152

Which Palo Alto Networks VM-Series firewall is valid?

  1. VM-25
  2. VM-800
  3. VM-50
  4. VM-400

Answer(s): C


Reference:

https://www.paloaltonetworks.com/products/secure-the-network/virtualized-next-generation-firewall/vm-series



An administrator wants multiple web servers in the DMZ to receive connections initiated from the internet. Traffic destined for 206.15.22.9 port 80/TCP needs to be forwarded to the server at 10.1.1.22

Based on the information shown in the image, which NAT rule will forward web-browsing traffic correctly?





Answer(s): C



An administrator creates a custom application containing Layer 7 signatures. The latest application and threat dynamic update is downloaded to the same NGFW. The update contains an application that matches the same traffic signatures as the custom application.

Which application should be used to identify traffic traversing the NGFW?

  1. Custom application
  2. System logs show an application error and neither signature is used.
  3. Downloaded application
  4. Custom and downloaded application signature files are merged and both are used

Answer(s): A



Starting with PAN-OS version 9.1, GlobalProtect logging information is now recorded in which firewall log?

  1. GlobalProtect
  2. System
  3. Authentication
  4. Configuration

Answer(s): A


Reference:

https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-new-features/globalprotect-features/enhanced-logging-for-globalprotect.html



Page 11 of 152



Post your Comments and Discuss Palo Alto Networks PCNSE exam with other Community members:

Lee commented on November 27, 2024
So far so good
UNITED STATES
upvote

Naredn commented on November 22, 2024
Best practices at one place
Anonymous
upvote

Dan commented on September 08, 2024
So far so good
Anonymous
upvote

Eric commented on December 13, 2023
Works great
Anonymous
upvote