ExamGecko
Question list
Search
Search

Question 362 - PCNSA discussion

Report
Export

Which CLI command will help confirm if FQDN objects are resolved in the event there is a shadow rule?

A.
>show system fqdn
Answers
A.
>show system fqdn
B.
>request fqdn show system
Answers
B.
>request fqdn show system
C.
>request show system fqdn
Answers
C.
>request show system fqdn
D.
>request system fqdn show
Answers
D.
>request system fqdn show
Suggested answer: A

Explanation:

The show system fqdn command displays the FQDN objects configured on the firewall and their resolved IP addresses. This can help confirm if the FQDN objects are resolved correctly and if they match the expected traffic. A shadow rule is a rule that is never matched because a preceding rule covers the same traffic. If a shadow rule uses FQDN objects, it is possible that the FQDN objects are not resolved or have different IP addresses than the traffic, causing the rule to be ineffective.

asked 23/09/2024
Arthur Khaha
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first