Free PCNSE Exam Braindumps (page: 15)

Page 14 of 152

Which feature prevents the submission of corporate login information into website forms?

  1. Data filtering
  2. User-ID
  3. File blocking
  4. Credential phishing prevention

Answer(s): D


Reference:

https://www.paloaltonetworks.com/cyberpedia/how-the-next-generation-security-platform-contributes-to-gdpr-compliance



Which option is part of the content inspection process?

  1. Packet forwarding process
  2. SSL Proxy re-encrypt
  3. IPsec tunnel encryption
  4. Packet egress process

Answer(s): B



In a virtual router, which object contains all potential routes?

  1. MIB
  2. RIB
  3. SIP
  4. FIB

Answer(s): B


Reference:

https://www.paloaltonetworks.com/documentation/80/pan-os/pan-os/networking/virtual-routers



An administrator creates an SSL decryption rule decrypting traffic on all ports. The administrator also creates a Security policy rule allowing only the applications DNS, SSL, and web-browsing.

The administrator generates three encrypted BitTorrent connections and checks the Traffic logs. There are three entries. The first entry shows traffic dropped as application Unknown. The next two entries show traffic allowed as application SSL.

Which action will stop the second and subsequent encrypted BitTorrent connections from being allowed as SSL?

  1. Create a decryption rule matching the encrypted BitTorrent traffic with action “No-Decrypt,” and place the rule at the top of the Decryption policy.
  2. Create a Security policy rule that matches application “encrypted BitTorrent” and place the rule at the top of the Security policy.
  3. Disable the exclude cache option for the firewall.
  4. Create a Decryption Profile to block traffic using unsupported cyphers, and attach the profile to the decryption rule.

Answer(s): D


Reference:

https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClRtCAK






Post your Comments and Discuss Palo Alto Networks PCNSE exam with other Community members:

PCNSE Discussions & Posts