Free PCNSE Exam Braindumps (page: 12)

Page 12 of 152

Refer to the exhibit.


Which will be the egress interface if the traffic’s ingress interface is ethernet1/7 sourcing from 192.168.111.3 and to the destination 10.46.41.113?

  1. ethernet1/6
  2. ethernet1/3
  3. ethernet1/7
  4. ethernet1/5

Answer(s): D



Which three authentication services can an administrator use to authenticate admins into the Palo Alto Networks NGFW without defining a corresponding admin account on the local firewall? (Choose three.)

  1. Kerberos
  2. PAP
  3. SAML
  4. TACACS+
  5. RADIUS
  6. LDAP

Answer(s): C,D,E



Which event will happen if an administrator uses an Application Override Policy?

  1. Threat-ID processing time is decreased.
  2. The Palo Alto Networks NGFW stops App-ID processing at Layer 4.
  3. The application name assigned to the traffic by the security rule is written to the Traffic log.
  4. App-ID processing time is increased.

Answer(s): B


Reference:

https://live.paloaltonetworks.com/t5/Learning-Articles/Tips-amp-Tricks-How-to-Create-an-Application-Override/ta-p/65513



Which Security policy rule will allow an admin to block facebook chat but allow Facebook in general?

  1. Deny application facebook-chat before allowing application facebook
  2. Deny application facebook on top
  3. Allow application facebook on top
  4. Allow application facebook before denying application facebook-chat

Answer(s): A


Reference:

https://live.paloaltonetworks.com/t5/Configuration-Articles/Failed-to-Block-Facebook-Chat-Consistently/ta-p/115673



Page 12 of 152



Post your Comments and Discuss Palo Alto Networks PCNSE exam with other Community members:

Lee commented on November 27, 2024
So far so good
UNITED STATES
upvote

Naredn commented on November 22, 2024
Best practices at one place
Anonymous
upvote

Dan commented on September 08, 2024
So far so good
Anonymous
upvote

Eric commented on December 13, 2023
Works great
Anonymous
upvote