ExamGecko
Question list
Search
Search

Related questions











Question 194 - PCNSE discussion

Report
Export

Review the images.

A firewall policy that permits web traffic includes the What is the result of traffic that matches the "Alert - Threats" Profile Match List?

A.
The source address of SMTP traffic that matches a threat is automatically blocked as BadGuys for 180 minutes.
Answers
A.
The source address of SMTP traffic that matches a threat is automatically blocked as BadGuys for 180 minutes.
B.
The source address of traffic that matches a threat is automatically blocked as BadGuys for 180 minutes.
Answers
B.
The source address of traffic that matches a threat is automatically blocked as BadGuys for 180 minutes.
C.
The source address of traffic that matches a threat is automatically tagged as BadGuys for 180 minutes.
Answers
C.
The source address of traffic that matches a threat is automatically tagged as BadGuys for 180 minutes.
D.
The source address of SMTP traffic that matches a threat is automatically tagged as BadGuys for 180 minutes.
Answers
D.
The source address of SMTP traffic that matches a threat is automatically tagged as BadGuys for 180 minutes.
Suggested answer: C

Explanation:

The threat profile has the action set to "alert" which means that the traffic is allowed but logged. The profile also has the "Tag Source IP" option enabled with the tag name "BadGuys" and the timeout value of 180 minutes. This means that any source IP address that matches a threat signature will be tagged with "BadGuys" for 180 minutes. The tag can be used for dynamic address groups or external dynamic lists to enforce policy actions based on the tag. Reference: :https:// docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/threat-prevention/set-up-antivirus- anti-spyware-and-vulnerability-protection/tag-source-ip-addresses-that-trigger-threat-signatures

asked 23/09/2024
Kash Rx
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first