ExamGecko
Home / Palo Alto Networks / PCNSA / List of questions
Ask Question

Palo Alto Networks PCNSA Practice Test - Questions Answers, Page 21

List of questions

Question 201

Report Export Collapse

You receive notification about a new malware that infects hosts An infection results in the infected host attempting to contact a command-and-control server Which Security Profile when applied to outbound Security policy rules detects and prevents this threat from establishing a command-andcontrol connection?

Become a Premium Member for full access
  Unlock Premium Member

Question 202

Report Export Collapse

Which built-in IP address EDL would be useful for preventing traffic from IP addresses that are verified as unsafe based on WildFire analysis Unit 42 research and data gathered from telemetry?

Become a Premium Member for full access
  Unlock Premium Member

Question 203

Report Export Collapse

The compliance officer requests that all evasive applications need to be blocked on all perimeter firewalls out to the internet The firewall is configured with two zones; 1. trust for internal networks 2. untrust to the internet Based on the capabilities of the Palo Alto Networks NGFW, what are two ways to configure a security policy using App-ID to comply with this request? (Choose two )

Become a Premium Member for full access
  Unlock Premium Member

Question 204

Report Export Collapse

What must be configured before setting up Credential Phishing Prevention?

Become a Premium Member for full access
  Unlock Premium Member

Question 205

Report Export Collapse

What allows a security administrator to preview the Security policy rules that match new application signatures?

Become a Premium Member for full access
  Unlock Premium Member

Question 206

Report Export Collapse

Which statement best describes the use of Policy Optimizer?

Become a Premium Member for full access
  Unlock Premium Member

Question 207

Report Export Collapse

An address object of type IP Wildcard Mask can be referenced in which part of the configuration?

Become a Premium Member for full access
  Unlock Premium Member

Question 208

Report Export Collapse

An administrator would like to determine the default deny action for the application dns-over-httpsWhich action would yield the information?

Become a Premium Member for full access
  Unlock Premium Member

Question 209

Report Export Collapse

An administrator needs to create a Security policy rule that matches DNS traffic within the LAN zone, and also needs to match DNS traffic within the DMZ zone The administrator does not want to allow traffic between the DMZ and LAN zones.

Which Security policy rule type should they use?

Become a Premium Member for full access
  Unlock Premium Member

Question 210

Report Export Collapse

DRAG DROP

Match the Palo Alto Networks Security Operating Platform architecture to its description.


Become a Premium Member for full access
  Unlock Premium Member
Total 362 questions
Go to page: of 37
Search

Related questions