Palo Alto Networks PCCSE Practice Test - Questions Answers, Page 10

List of questions
Question 91

A customer has a requirement to restrict any container from resolving the name www.evil-url.com.
How should the administrator configure Prisma Cloud Compute to satisfy this requirement?
Question 92

Which API calls can scan an image named myimage: latest with twistcli and then retrieve the results from Console?
Question 93

Given the following RQL:
event from cloud.audit_logs where operation IN ('CreateCryptoKey', 'DestroyCryptoKeyVersion', 'v1.compute.disks.createSnapshot')
Which audit event snippet is identified?
A)
B)
C)
D)
Question 94

Which two of the following are required to be entered on the IdP side when setting up SSO in Prisma Cloud? (Choose two.)
Question 95

An administrator sees that a runtime audit has been generated for a container.
The audit message is:
''/bin/ls launched and is explicitly blocked in the runtime rule. Full command: ls -latr''
Which protection in the runtime rule would cause this audit?
Question 96

Which data security default policy is able to scan for vulnerabilities?
Question 97

Which three fields are mandatory when authenticating the Prisma Cloud plugin in the IntelliJ application? (Choose three.)
Question 98

Which of the following are correct statements regarding the use of access keys? (Choose two.)
Question 99

The development team is building pods to host a web front end, and they want to protect these pods with an application firewall.
Which type of policy should be created to protect this pod from Layer7 attacks?
Question 100

A manager informs the SOC that one or more RDS instances have been compromised and the SOC needs to make sure production RDS instances are NOT publicly accessible.
Which action should the SOC take to follow security best practices?
Question