Free PCNSE Exam Braindumps (page: 57)

Page 56 of 152

DRAG DROP (Drag and Drop is not supported)
Match each type of DoS attack to an example of that type of attack.
Select and Place:

  1. See Explanation section for answer.

Answer(s): A

Explanation:


Reference:

https://www.hackingarticles.in/dos-penetration-testing-part-1/#:~:text=Protocol%2DBased%20Attack%3A%20This%20kind,unresponsive%20to%20other%20legitimate%20requests



Using multiple templates in a stack to manage many firewalls provides which two advantages? (Choose two.)

  1. inherit address-objects from templates
  2. define a common standard template configuration for firewalls
  3. standardize server profiles and authentication configuration across all stacks
  4. standardize log-forwarding profiles for security polices across all stacks

Answer(s): B,C



The SSL Forward Proxy decryption policy is configured. The following four certificate authority (CA) certificates are installed on the firewall.



An end-user visits the untrusted website https://www.firewall-do-not-trust-website.com.
Which certificate authority (CA) certificate will be used to sign the untrusted webserver certificate?

  1. Forward-Untrust-Certificate
  2. Forward-Trust-Certificate
  3. Firewall-CA
  4. Firewall-Trusted-Root-CA

Answer(s): B



A company needs to preconfigure firewalls to be sent to remote sites with the least amount of preconfiguration. Once deployed, each firewall must establish secure tunnels back to multiple regional data centers to include the future regional data centers.

Which VPN preconfigured configuration would adapt to changes when deployed to the future site?

  1. GlobalProtect client
  2. PPTP tunnels
  3. IPsec tunnels using IKEv2
  4. GlobalProtect satellite

Answer(s): D


Reference:

https://knowledgebase.paloaltonetworks.com/kCSArticleDetail?id=kA10g000000ClEQ






Post your Comments and Discuss Palo Alto Networks PCNSE exam with other Community members:

PCNSE Exam Discussions & Posts