ExamGecko
Home / Palo Alto Networks / PCNSA / List of questions
Ask Question

Palo Alto Networks PCNSA Practice Test - Questions Answers, Page 13

List of questions

Question 121

Report
Export
Collapse

Which statement is true about Panorama managed devices?

Panorama automatically removes local configuration locks after a commit from Panorama
Panorama automatically removes local configuration locks after a commit from Panorama
Local configuration locks prohibit Security policy changes for a Panorama managed device
Local configuration locks prohibit Security policy changes for a Panorama managed device
Security policy rules configured on local firewalls always take precedence
Security policy rules configured on local firewalls always take precedence
Local configuration locks can be manually unlocked from Panorama
Local configuration locks can be manually unlocked from Panorama
Suggested answer: C

Explanation:

Reference:

https://docs.paloaltonetworks.com/panorama/9-1/panorama-admin/administerpanorama/manage-locks-forrestricting-configuration-changes.html

Palo Alto Networks PCNSA image Question 121 explanation 53936 09232024001155000000

asked 23/09/2024
Danilo Ferrareis
34 questions

Question 122

Report
Export
Collapse

What can be achieved by selecting a policy target prior to pushing policy rules from Panorama?

Doing so limits the templates that receive the policy rules
Doing so limits the templates that receive the policy rules
Doing so provides audit information prior to making changes for selected policy rules
Doing so provides audit information prior to making changes for selected policy rules
You can specify the firewalls m a device group to which to push policy rules
You can specify the firewalls m a device group to which to push policy rules
You specify the location as pre can - or post-rules to push policy rules
You specify the location as pre can - or post-rules to push policy rules
Suggested answer: C
asked 23/09/2024
Paul LOUIS DIT PICARD
36 questions

Question 123

Report
Export
Collapse

An administrator would like to see the traffic that matches the interzone-default rule in the traffic logs.

What is the correct process to enable this logging1?

Select the interzone-default rule and edit the rule on the Actions tab select Log at Session Start and click OK
Select the interzone-default rule and edit the rule on the Actions tab select Log at Session Start and click OK
Select the interzone-default rule and edit the rule on the Actions tab select Log at Session End and click OK
Select the interzone-default rule and edit the rule on the Actions tab select Log at Session End and click OK
This rule has traffic logging enabled by default no further action is required
This rule has traffic logging enabled by default no further action is required
Select the interzone-default rule and click Override on the Actions tab select Log at Session End and click OK
Select the interzone-default rule and click Override on the Actions tab select Log at Session End and click OK
Suggested answer: D
asked 23/09/2024
Luis Gerardo Collazos Castro
38 questions

Question 124

Report
Export
Collapse

What is the correct process tor creating a custom URL category?

Objects > Security Profiles > URL Category > Add
Objects > Security Profiles > URL Category > Add
Objects > Custom Objects > URL Filtering > Add
Objects > Custom Objects > URL Filtering > Add
Objects > Security Profiles > URL Filtering > Add
Objects > Security Profiles > URL Filtering > Add
Objects > Custom Objects > URL Category > Add
Objects > Custom Objects > URL Category > Add
Suggested answer: D
asked 23/09/2024
Liam Harris
51 questions

Question 125

Report
Export
Collapse

Which tab would an administrator click to create an address object?

Device
Device
Policies
Policies
Monitor
Monitor
Objects
Objects
Suggested answer: D
asked 23/09/2024
Michael Serda
36 questions

Question 126

Report
Export
Collapse

An administrator would like to silently drop traffic from the internet to a ftp server.

Which Security policy action should the administrator select?

Reset-server
Reset-server
Block
Block
Deny
Deny
Drop
Drop
Suggested answer: D
asked 23/09/2024
Victor Avila
29 questions

Question 127

Report
Export
Collapse

The Palo Alto Networks NGFW was configured with a single virtual router named VR-1 What changes are required on VR-1 to route traffic between two interfaces on the NGFW?

Add zones attached to interfaces to the virtual router
Add zones attached to interfaces to the virtual router
Add interfaces to the virtual router
Add interfaces to the virtual router
Enable the redistribution profile to redistribute connected routes
Enable the redistribution profile to redistribute connected routes
Add a static routes to route between the two interfaces
Add a static routes to route between the two interfaces
Suggested answer: D
asked 23/09/2024
Vaibhav Somani
34 questions

Question 128

Report
Export
Collapse

What is the main function of the Test Policy Match function?

verify that policy rules from Expedition are valid
verify that policy rules from Expedition are valid
confirm that rules meet or exceed the Best Practice Assessment recommendations
confirm that rules meet or exceed the Best Practice Assessment recommendations
confirm that policy rules in the configuration are allowing/denying the correct traffic
confirm that policy rules in the configuration are allowing/denying the correct traffic
ensure that policy rules are not shadowing other policy rules
ensure that policy rules are not shadowing other policy rules
Suggested answer: D
asked 23/09/2024
M Kumar
40 questions

Question 129

Report
Export
Collapse

Which option is part of the content inspection process?

IPsec tunnel encryption
IPsec tunnel encryption
Packet egress process
Packet egress process
SSL Proxy re-encrypt
SSL Proxy re-encrypt
Packet forwarding process
Packet forwarding process
Suggested answer: C
asked 23/09/2024
Balanavaneethan Nitharsan
29 questions

Question 130

Report
Export
Collapse

Which objects would be useful for combining several services that are often defined together?

shared service objects
shared service objects
service groups
service groups
application groups
application groups
application filters
application filters
Suggested answer: B

Explanation:

Reference:

https://docs.paloaltonetworks.com/pan-os/8-1/pan-os-web-interface-help/objects/objectsservices.html

asked 23/09/2024
Jose Rodrigues
38 questions
Total 362 questions
Go to page: of 37

Related questions