An administrator has a requirement to export decrypted traffic from the Palo Alto Networks NGFW to a third- party, deep-level packet inspection appliance.
Which interface type and license feature are necessary to meet the requirement?
- Decryption Mirror interface with the Threat Analysis license
- Virtual Wire interface with the Decryption Port Export license
- Tap interface with the Decryption Port Mirror license
- Decryption Mirror interface with the associated Decryption Port Mirror license
Answer(s): D
Reference:
https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/decryption/decryption-concepts/decryption-mirroring
Reveal Solution Next Question