A user’s traffic traversing a Palo Alto Networks NGFW sometimes can reach http://www.company.com. At other times the session times out. The NGFW has been configured with a PBF rule that the user’s traffic matches when it goes to http://www.company.com.
How can the firewall be configured automatically disable the PBF rule if the next hop goes down?
- Create and add a Monitor Profile with an action of Wait Recover in the PBF rule in question.
- Create and add a Monitor Profile with an action of Fail Over in the PBF rule in question.
- Enable and configure a Link Monitoring Profile for the external interface of the firewall.
- Configure path monitoring for the next hop gateway on the default route in the virtual router.
Answer(s): B
Reference:
https://docs.paloaltonetworks.com/pan-os/8-0/pan-os-web-interface-help/network/network-network-profiles-monitor#
Reveal Solution Next Question