ExamGecko
Question list
Search
Search

List of questions

Search

Question 214 - PCCSE discussion

Report
Export

Which policy type provides information about connections from suspicious IPs in a customer database?

A.
Anomaly
Answers
A.
Anomaly
B.
Threat detection
Answers
B.
Threat detection
C.
Network
Answers
C.
Network
D.
AutoFocus
Answers
D.
AutoFocus
Suggested answer: A

Explanation:

https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin/prisma-cloud-policies/anomaly-policies

AnAnomalypolicy in Prisma Cloud is designed to provide information about connections from suspicious IPs in a customer database. Anomaly policies are used to detect and alert on unusual activities that deviate from the norm, which can include traffic from known malicious or suspicious IP addresses. These policies help in identifying potential security threats by monitoring for activities that are out of the ordinary, such as unexpected access to a database from an IP address that has not been seen before or is known to be associated with malicious activities.

The documentation link you provided offers detailed guidance on how to configure and manage anomaly policies in Prisma Cloud, ensuring that users can effectively monitor their environments for potential security incidents.

asked 23/09/2024
Tracy Sampson
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first