ExamGecko

Palo Alto Networks PCNSE Practice Test - Questions Answers, Page 16

Question list
Search
Search

List of questions

Search

Related questions











A Panorama administrator configures a new zone and uses the zone in a new Security policy.

After the administrator commits the configuration to Panorama, which device-group commit push operation should the administrator use to ensure that the push is successful?

A.
force template values
A.
force template values
Answers
B.
merge with candidate config
B.
merge with candidate config
Answers
C.
specify the template as a reference template
C.
specify the template as a reference template
Answers
D.
include device and network templates
D.
include device and network templates
Answers
Suggested answer: D

An administrator cannot see any Traffic logs from the Palo Alto Networks NGFW in Panorama reports.

The configuration problem seems to be on the firewall. Which settings if configured incorrectly most likely would stop only Traffic logs from being sent from the NGFW to Panorama?

A.
A.
Answers
B.
B.
Answers
C.
C.
Answers
D.
D.
Answers
Suggested answer: B

A network administrator configured a site-to-site VPN tunnel where the peer device will act as initiator None of the peer addresses are known What can the administrator configure to establish the VPN connection1?

A.
Set up certificate authentication
A.
Set up certificate authentication
Answers
B.
Enable Passive Mode
B.
Enable Passive Mode
Answers
C.
Use the Dynamic IP address type
C.
Use the Dynamic IP address type
Answers
D.
Configure the peer address as an FQDN
D.
Configure the peer address as an FQDN
Answers
Suggested answer: C

DRAG DROP

Place the steps to onboard a ZTP firewall into Panorama/CSP/ZTP-Service in the correct order.


Question 154
Correct answer: Question 154

Explanation:

Reference: https://docs.paloaltonetworks.com/panorama/9-1/panorama-admin/manage-firewalls/set-up-zero-touchprovisioning/ztp-overview/ztp-configuration-elements.html

DRAG DROP

Match each GlobalProtect component to the purpose of that component.


Question 155
Correct answer: Question 155

Explanation:

Reference: https://docs.paloaltonetworks.com/globalprotect/8-1/globalprotect-admin/globalprotect-overview/about-theglobalprotect-components.html

DRAG DROP

Match each SD-WAN configuration element to the description of that element.


Question 156
Correct answer: Question 156

DRAG DROP

Place the steps in the WildFire process workflow in their correct order.


Question 157
Correct answer: Question 157

Explanation:

Reference: https://docs.paloaltonetworks.com/wildfire/9-1/wildfire-admin/wildfire-overview/about-wildfire.html

DRAG DROP

Please match the terms to their corresponding definitions.


Question 158
Correct answer: Question 158

DRAG DROP

When using the predefined default profile, the policy will inspect for viruses on the decoders. Match each decoder with its default action.

Answer options may be used more than once or not at all.


Question 159
Correct answer: Question 159

A user at an external system with the IP address 65.124 57 5 quenes the DNS server at 4 2 2 2 for the IP address of the web server www xyz com The DNS server returns an address of 172 16 151 In order to reach the web server, which

Security rule and NAT rule must be configured on the firewall?

A.
A.
Answers
B.
B.
Answers
C.
C.
Answers
D.
D.
Answers
Suggested answer: D
Total 426 questions
Go to page: of 43