Palo Alto Networks PCNSA Practice Test - Questions Answers, Page 35
List of questions
Question 341
Where in Panorama Would Zone Protection profiles be configured?
Question 342
Based on the image provided, which two statements apply to the Security policy rules? (Choose two.)
Question 343
How would a Security policy need to be written to allow outbound traffic using Secure Shell (SSH) to destination ports tcp/22 and tcp/4422?
Question 344
Which feature must be configured to enable a data plane interface to submit DNS queries originated from the firewall on behalf of the control plane?
Question 345
An administrator creates a new Security policy rule to allow DNS traffic from the LAN to the DMZ zones. The administrator does not change the rule type from its default value.
What type of Security policy rule is created?
Question 346
When HTTPS for management and GlobalProtect are enabled on the same data plane interface, which TCP port is used for management access?
Question 347
An administrator manages a network with 300 addresses that require translation. The administrator configured NAT with an address pool of 240 addresses and found that connections from addresses that needed new translations were being dropped.
Which type of NAT was configured?
Question 348
What are the two main reasons a custom application is created? (Choose two.)
Question 349
What Policy Optimizer policy view differ from the Security policy do?
Question 350
How does the Policy Optimizer policy view differ from the Security policy view?
Question